View previous topic :: View next topic |
Author |
Message |
elv n00b
Joined: 08 Nov 2002 Posts: 4
|
Posted: Fri Nov 08, 2002 12:25 pm Post subject: Portage new feature request |
|
|
hi all,
looking at the portage system functionalities and its md5 checks i give up with a little idea .. why not integrating basic backup/restore functions of a centralized md5 db containing the system binaries informations for basic post-breakin analisys ?
.. excuse for the sometime-confusing english
elv |
|
Back to top |
|
|
klieber Bodhisattva
Joined: 17 Apr 2002 Posts: 3657 Location: San Francisco, CA
|
Posted: Fri Nov 08, 2002 12:55 pm Post subject: Re: Portage new feature request |
|
|
elv wrote: | why not integrating basic backup/restore functions of a centralized md5 db containing the system binaries informations for basic post-breakin analisys ? |
Not sure I understand your suggestion. Are you saying we should hash all compiled binaries and then store them in a central repository to be referenced at some later date?
Given the widely disparate USE flags and CFLAGS that people use, you could have thousands of different compiled binaries for a single application. Not sure how this would be a) scalable or b) effective.
--kurt _________________ The problem with political jokes is that they get elected |
|
Back to top |
|
|
elv n00b
Joined: 08 Nov 2002 Posts: 4
|
Posted: Fri Nov 08, 2002 1:11 pm Post subject: |
|
|
it is intended to be a simple and basic feature for use on small servers or similar, not aimed to build a db with thousand of entries.. in most installations binaries are not too much and a little integrated feature could be useful, dont u think ?
elv |
|
Back to top |
|
|
klieber Bodhisattva
Joined: 17 Apr 2002 Posts: 3657 Location: San Francisco, CA
|
Posted: Fri Nov 08, 2002 1:23 pm Post subject: |
|
|
elv wrote: | it is intended to be a simple and basic feature for use on small servers or similar, not aimed to build a db with thousand of entries.. in most installations binaries are not too much and a little integrated feature could be useful, dont u think ? |
So when you say "centralized md5 db" you mean centralized locally, rather than centralized globally?
OK, fair enough. However, I still think you're straying too far outside the core functionality of Portage. Why not use something purpose-built like Tripwire?
--kurt _________________ The problem with political jokes is that they get elected |
|
Back to top |
|
|
elv n00b
Joined: 08 Nov 2002 Posts: 4
|
Posted: Fri Nov 08, 2002 3:06 pm Post subject: |
|
|
yes, it's good for this but i think a built in feature without the need to install other packages would be nice especially on small servers/installations
elv |
|
Back to top |
|
|
|