Commit graph

887 commits

Author SHA1 Message Date
Anders Nordby
4162850462 Add sshblock, a tool to block abusive SSH login attempts. 2006-12-03 22:25:18 +00:00
Martin Wilke
40786d825e A library for connecting to and sending commands to a local
ClamAV clamd service - an anti-virus daemon process.

You can find more information about clam anti-virus at
WWW: http://www.clamav.net/

File::Scan::ClamAV was originally based on the Clamd module

Submitted by:	Jan-Peter Koopmann <Jan-Peter.Koopmann at seceidos.de>
2006-11-23 23:08:30 +00:00
Martin Wilke
e56c8c72e0 Sguil (pronounced "sgweel") is a graphical interface to snort,
an open source intrusion detection system.
The actual interface and GUI server are written in tcl/tk.
Sguil also relies on other open source software
in order to function properly.

The client requires gpg, iwidgets and other tcl packages and may
also use wireshark, festival and tls depending on your selection
of options.  Run "make config" in the port to see what options
are available.

Sguil currently functions as an analysis interface and has
no snort sensor or rule management capabilities.

WWW: http://sguil.sourceforge.net/index.php
pauls@utdallas.edu

PR:		ports/105496
Submitted by:	Paul Schmehl <pauls at utdallas.edu>
2006-11-15 21:33:51 +00:00
Frank J. Laszlo
6ebfbc8583 New Port: security/osslsigncode
Platform-independent tool for Authenticode signing of EXE/CAB files - uses
OpenSSL and libcurl. It also supports timestamping.

PR:	ports/105353
Submitted By:	Nick Barkas <snb@threerings.net>
Approved By:	flz (mentor)
2006-11-11 13:55:05 +00:00
Alejandro Pulver
b529c1e197 Sguil is an open source tool to implement Network
Security Monitoring (NSM).  NSM is the collection,
analysis, and escalation of indications and warnings
to detect and respond to intrusions.  NSM tools are
used more for network audit and specialized
applications than traditional alert-centric "intrusion
detection" systems.

Want to learn more about Network Security Monitoring
(NSM)? Then check out Richard Bejtlich's recently
released book, The Tao of Network Security Monitoring:
Beyond Intrusion Detection. An excerpt reads:

"Network security monitoring (NSM) equips security
staff to deal with the inevitable consequences of too
few resources and too many responsibilities. NSM collects
the data needed to generate better assessment, detection,
and response processes--resulting in decreased impact from
unauthorized activities."

WWW: http://sguil.sourceforge.net/index.php
pauls@utdallas.edu

PR:		ports/104227
Submitted by:	Paul Schmehl <pauls at utdallas.edu>
2006-10-31 02:43:25 +00:00
Jeremy Messenger
70cd04b258 Simple commandline wrapper around gpg that makes it store its passphrase
in gnome-keyring.  It is a direct competitor to (the unmaintained)
quintuple-agent.

Submitted by:	ahze
Approved by:	portmgr (kris and marcus)
2006-10-14 09:10:57 +00:00
Boris Samorodov
800e4e5443 Sguil (pronounced "sgweel") is a graphical interface to snort
(www.snort.org), an open source intrusion detection system.
The actual interface and GUI server are written in tcl/tk
(www.tcl.tk). Sguil also relies on other open source software
in order to function properly.

The sensor list includes security/barnyard, security/snort,
security/sancp, tcpdump (a part of the OS) and devel/tcltls as
well as lang/tcl84 and lang/tclX.  Care has been taken to ensure
that everything you need to build a working sguil operation is
in the FreeBSD ports system or part of the OS already.

Sguil currently functions as an analysis interface and has
no snort sensor or rule management capabilities.

WWW: http://sguil.sourceforge.net/index.php
pauls@utdallas.edu

PR:		ports/95018
Submitted by:	Paul Schmehl <pauls at utdallas.edu>
2006-10-09 19:04:38 +00:00
Rong-En Fan
243c063a6a Add p5-openxpki-deployment 0.9.543, perl based enterprise class
trustcenter software for PKI.

PR:		ports/103949
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:32:19 +00:00
Rong-En Fan
0ffdd411b1 Add p5-openxpki-i18n 0.9.538, perl based trustcenter software for PKI:
i18n tools.

PR:		ports/103948
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:31:50 +00:00
Rong-En Fan
ab27869dd7 Add p5-openxpki-client-soap-lite 0.9.421, SOAP-Lite toolkit for
openxpki.

PR:		ports/103947
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:31:24 +00:00
Rong-En Fan
e240e8975b Add p5-openxpki-client-scep 0.9.421, client for SCEP requests to
openxpki server.

PR:		ports/103946
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:30:55 +00:00
Rong-En Fan
2259b7c0e8 Add p5-openxpki-client-html-mason 0.9.546, web interface for local
openxpki daemon.

PR:		ports/103945
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:30:21 +00:00
Rong-En Fan
9f6ee59f79 Add p5-openxpki-client-cli 0.9.459, command line interface for local
openxpki daemon.

PR:		ports/103944
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:29:54 +00:00
Rong-En Fan
84542c0a32 Add p5-openxpki-client 0.9.450, perl based trustcenter software for PKI:
base class for actual clients.

PR:		ports/103943
Submitted by:	Sergei Vyshenski <svysh at cryptocom.ru>
2006-10-07 12:29:03 +00:00
Cheng-Lung Sung
281c4c0d24 Add p5-Crypt-GCrypt 1.15, perl interface to the GNU Cryptographic
library.

PR:		ports/103767
Submitted by:	TAKAHASHI Kaoru <kaoru at kaisei.org>
2006-10-06 04:58:39 +00:00
Alejandro Pulver
a37457ae0e The Metasploit Project
This is the Metasploit Project. The goal is to provide useful
information to people who perform penetration testing, IDS signature
development, and exploit research. This site was created to fill the
gaps in the information publicly available on various exploitation
techniques and to create a useful resource for exploit developers. The
tools and information on this site are provided for legal penetration
testing and research purposes only.

This port is an in-development version of the upcoming Metasploit Framework.
It is based on Ruby instead of perl, and has a different license.

WWW: http://www.metasploit.org

PR:		ports/101280
Submitted by:	Yonatan <onatan at gmail.com>
2006-10-05 00:05:52 +00:00
Andrew Pantyukhin
13656ce767 - Separate sinfp into library (p5-Net-SinFP) and binary+db (sinfp)
- Use latest db snapshot
2006-09-30 15:36:00 +00:00
Martin Wilke
acfcbd1c4c PBNJ is a network suite to monitor changes that occur on a network
over time. It does this by checking for changes on the target
machine(s), which includes the details about the services running on
them as well as the service state. PBNJ parses the data from a scan
and stores it in a database. PBNJ uses Nmap to perform scans.

WWW: http://www.sf.net/projects/pbnj

PR:		ports/100904
Submitted by:	Joshua D. Abraham <jabra(at)ccs.neu.edu>
2006-09-30 07:30:18 +00:00
Cheng-Lung Sung
eede56113d Add blocksshd 0.8, protects computers from SSH brute force attacks.
PR:		ports/102367
Submitted by:	Gea-Suan Lin <gslin at gslin.org>
2006-09-26 10:26:06 +00:00
Martin Wilke
141f8510d6 Fwipe is a secure file erasing program. fwipe0, which actually erases
your files, is immune to filenames containing spaces, carriage returns,
dashes, or any other special characters. You can use it in place of rm
in cron jobs, together with "find ... -print0". The output of fwipe0 is
specially designed to be parsed easily by machine, so it can be embedded
in other applications which need secure file erasure.

WWW: http://jeenyus.net/~budney/linux/software/fwipe.html

PR:		ports/103488
Submitted by:	David Thiel <lx(at)redundancy.redundancy.org>
2006-09-24 21:19:48 +00:00
Andrew Pantyukhin
35da930207 Add port security/shttpscanner:
Simple HTTP Scanner is a creation made for web site pen testing. You can
check for directories and files on the remote web server and get some
server information like the webserver running.

WWW: http://sourceforge.net/projects/shttpscanner/
Author: Paisterist <paisterist@users.sourceforge.net>
2006-09-24 20:18:15 +00:00
Jose Alonso Cardenas Marquez
bfc8d463f6 - Remove security/fpc-md5. It was renamed to security/fpc-hash
Approved by:	garga (mentor, implicit)
2006-09-07 21:40:37 +00:00
Jose Alonso Cardenas Marquez
13c8628fb5 - New port: 2006-09-07 21:09:28 +00:00
Roman Bogorodskiy
bb0e84c435 TLS Lite is a free python library that implements SSL 3.0, TLS 1.0, and TLS
1.1. TLS Lite supports non-traditional authentication methods such as SRP,
shared keys, and cryptoIDs in addition to X.509 certificates. TLS Lite is pure
Python, however it can access OpenSSL, cryptlib, pycrypto, and GMPY for faster
crypto operations. TLS Lite integrates with httplib, xmlrpclib, poplib,
imaplib, smtplib, SocketServer, asyncore, and Twisted.

WWW: http://trevp.net/tlslite/

PR:		ports/102923
Submitted by:	Alexander Botero-Lowry <alex at foxybanana.com>
2006-09-07 05:23:30 +00:00
Alex Dupre
bcfcdf474c Suhosin is an advanced protection system for PHP installations.
It was designed to protect servers and users from known and
unknown flaws in PHP applications and the PHP core.
Suhosin comes in two independent parts, that can be used
separately or in combination. The first part is a small patch
against the PHP core, that implements a few low-level
protections against bufferoverflows or format string
vulnerabilities and the second part is a powerful PHP extension
that implements all the other protections.

Suhosin is binary compatible to normal PHP installation,
which means it is compatible to 3rd party binary extension
like ZendOptimizer.

WWW: http://www.suhosin.org/
2006-09-04 08:02:04 +00:00
Kris Kennaway
0a6f04e280 Remove expired ports 2006-09-02 23:31:26 +00:00
Pav Lucistnik
bf663cc26b The pam_abl provides auto blacklisting of hosts and users
responsible for repeated failed authentication attempts.

WWW: http://www.hexten.net/pam_abl/

PR:		ports/100635
Submitted by:	Petr Rehor <prehor@gmail.com>
2006-09-01 18:34:03 +00:00
Roman Bogorodskiy
070fdc9acb GnuTLS is a portable ANSI C based library which implements the TLS 1.0 and
SSL 3.0 protocols. The library does not include any patented algorithms and
is available under the GNU Lesser GPL license.

Important features of the GnuTLS library include:
- Thread safety
- Support for both TLS 1.0 and SSL 3.0 protocols
- Support for both X.509 and OpenPGP certificates
- Support for basic parsing and verification of certificates
- Support for SRP for TLS authentication
- Support for TLS Extension mechanism
- Support for TLS Compression Methods

Additionaly GnuTLS provides an emulation API for the widely used
OpenSSL library, to ease integration with existing applications.

WWW:	http://www.gnutls.org/
2006-08-27 19:47:30 +00:00
Rong-En Fan
29ae2adb2a Add mosref 2.0.b3, a secure remote execution framework using a compact
Scheme-influenced VM.

PR:		ports/102238
Submitted by:	Piet Delport
2006-08-23 13:13:57 +00:00
Andrew Pantyukhin
c295728bd5 Add port security/sinfp:
SinFP is a new approach to OS fingerprinting, which bypasses
limitations that nmap has.

Nmap approaches to fingerprinting as shown to be efficient for years.
Nowadays, with the omni-presence of stateful filtering devices,
PAT/NAT configurations and emerging packet normalization technologies,
its approach to OS fingerprinting is becoming to be obsolete.

SinFP uses the aforementioned limitations as a basis for tests to be
obsolutely avoided in used frames to identify accurately the remote
operating system. That is, it only requires one open TCP port, sends
only fully standard TCP packets, and limits the number of tests to 2
or 3 (with only 1 test giving the OS reliably in most cases).

WWW: http://www.gomor.org/sinfp
2006-08-21 07:46:31 +00:00
Ion-Mihai Tetcu
cf787a73eb VNCcrack is a fast offline password cracker for VNC passwords.
By sniffing a VNC challenge-response sequence off the network
(typically when VNC is used without a decent cryptographic
wrapper like SSH or SSL), you can recover the password fairly
easily and quickly by letting VNCcrack pound on it.

WWW: http://www.randombit.net/projects/vnccrack/

PR:		ports/102279
Submitted by:	Pankov Pavel <pankov_p at mail.ru>
2006-08-20 12:09:31 +00:00
Shaun Amott
7b94055d70 Finish adding security/openvpn-devel after repocopy. 2006-08-19 15:15:27 +00:00
Rong-En Fan
93af334482 Add bruteblock 0.0.4, software for blocking bruteforce attacks with
ipfw.

PR:		ports/101254
Submitted by:	Dmitry Marakasov <amdmi3 at mail.ru>
2006-08-17 08:27:13 +00:00
Jose Alonso Cardenas Marquez
e00dd18649 - Remove security/linux-krb5-libs, it was integrated to linux_base-fc4.
Approved by:	garga (mentor)
2006-08-14 02:57:11 +00:00
Cheng-Lung Sung
a9fbcd3d1d - ruby-crypt is a pure-ruby implementation of a number of popular
encryption algorithms.
2006-08-10 15:47:15 +00:00
Cheng-Lung Sung
12079d2d9a Add p5-PerlCryptLib 1.03, perl interface to Peter Guttman cryptlib API.
PR:		ports/101658
Submitted by:	Gea-Suan Lin <gslin at gslin.org>
2006-08-09 03:51:27 +00:00
Ion-Mihai Tetcu
5a28389014 This library implements Blowfish, DES, and Triple-DES.
Author:	Gerd Stolpmann
WWW:	http://www.ocaml-programming.de/packages/

PR:		ports/101213
Submitted by:	Stanislav Sedov <ssedov at mbsd.msk.ru>
2006-08-04 16:25:22 +00:00
Jose Alonso Cardenas Marquez
dcac88c148 - New port: security/linux-krb5-libs
Kerberos V5 is an authentication system developed at MIT.

(Linux version)

WWW: http://web.mit.edu/kerberos/

- New port: security/linux-openssl

The OpenSSL Project is a collaborative effort to develop a robust,
commercial-grade, full-featured, and Open Source toolkit implementing
the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security
(TLS v1) protocols with full-strength cryptography world-wide. The
project is managed by a worldwide community of volunteers that use
the Internet to communicate, plan, and develop the OpenSSL tookit
and its related documentation.

OpenSSL is based on the excellent SSLeay library developed by Eric
A. Young and Tim J. Hudson. The OpenSSL toolkit is licensed under
an Apache-style licence, which basically means that you are free
to get and use it for commercial and non-commercial purposes subject
to some simple license conditions.

(Linux version)

WWW: http://www.openssl.org/

Approved by:	garga (mentor)
2006-08-04 15:03:55 +00:00
Rong-En Fan
92cdbfdf92 Add p5-Crypt-OICQ, cryptographic algorithm used by OICQ protocol.
This is for chinese/oicq.
2006-08-02 17:22:08 +00:00
Cheng-Lung Sung
b790572c0f Add pecl-tcpwrap 1.0, a PECL extension which provides tcpwrappers
binding.

PR:		ports/101136
Submitted by:	chinsan <chinsan.tw at gmail.com>
2006-08-01 13:42:17 +00:00
Rong-En Fan
e7ddca584f Add httprint 301, web server fingerprinting tool.
PR:		ports/101004
Submitted by:	Yonatan <onatan at gmail.com>
2006-08-01 13:06:55 +00:00
Jose Alonso Cardenas Marquez
b9c2bea73d New port: security/gpass
The GNOME Password Manager - GPass for short - is a simple
application, written for the GNOME 2 desktop, that lets you manage a
collection of passwords.  The password collection is stored in an
encrypted file, protected by a master-password.

GPass is released under the GNU GPL2 licence.

Features:

    * Clean and easy-to-use user interface.
    * Quick-search facility.
    * Username and password may easily be copied to the clipboard.
    * Encryption is done using the OpenSSL cryptographics library.
    * The built-in password generator helps you generate secure passwords.
    * You can launch a website and the associated username/passwords
      direct from GPass

Author: Kouji TAKAO <kouji -at- netlab.jp>
WWW:    http://projects.netlab.jp/gpass/

PR:		ports/100845
Submitted by:	ports_at_c0decafe.net <ports at c0decafe.net>
Approved by:	garga (mentor)
2006-08-01 11:12:26 +00:00
Rong-En Fan
21f7b02baa Add isnprober 1.02, penTest tool for TCP Initial Sequence Numbers
research.

PR:		ports/101005
Submitted by:	Yonatan <onatan at gmail.com>
2006-07-30 18:15:59 +00:00
Cheng-Lung Sung
c9c4d0a1c6 Add courieruserinfo 1.1.2, user account information retrieval utility.
PR:		ports/100900
Submitted by:	Andrew St. Jean <andrew at arda.homeunix.net>
2006-07-27 08:07:23 +00:00
Martin Wilke
3a02664880 Add trans-proxy-tor, transparent proxy used to redirect TCP
connections into Tor.

trans-proxy-tor is a transparent proxy
that uses PF to redirect TCP connections
through Tor (http://tor.eff.org/).

Programs that aren't aware of Tor
will use it without their knowledge,
and their traffic no longer leaves the
system unencrypted.

PR:		ports/99034
Submitted by:	Fabian Keil <fk at fabiankeil.de>
2006-07-22 09:56:26 +00:00
Martin Wilke
4fb2a83de5 Add dns-proxy-tor, resolves DNS requests through Tor.
dns-proxy-tor is a DNS server that stops
DNS leaks with applications that don't support
or aren't configured to use socks4a or Tor's DNS
resolution.

WWW: http://http://p56soo2ibjkx23xo.onion/

PR:		ports/99033
Submitted by:	Fabian Keil <fk at fabiankeil.de>
2006-07-22 09:47:54 +00:00
Cheng-Lung Sung
20937d1b03 Add p5-Data-Entropy 0.000, entropy (randomness) management.
PR:		ports/100547
Submitted by:	Gea-Suan Lin <gslin at gslin.org>
2006-07-20 01:21:50 +00:00
Erwin Lansing
63b87c5058 This is a pure perl implementation of the new AES Rijndael. You want
to use Crypt::Rijndael where available. This implementation is really
slow, but I am working on it.

WWW:	http://search.cpan.org/dist/Crypt-Rijndael_PP/

PR:		ports/100262
Submitted by:	Gea-Suan Lin <gslin at gslin.org>
2006-07-14 15:45:24 +00:00
Shaun Amott
a2aab3122c Add a port of "knock" - a flexible port-knocking server and client.
PR:		ports/94626
Submitted by:	shaun (me)
Approved by:	ahze (mentor, implicit)
2006-07-12 18:03:24 +00:00
Renato Botelho
d9bcb23339 This package provides an interface to the cracklib (libcrack) libraries that
come standard on most unix-like distributions. This allows you to check
passwords against dictionaries of words to ensure some minimal level of
password security.

From the cracklib README
CrackLib makes literally hundreds of tests to determine whether you've
chosen a bad password.

* It tries to generate words from your username and gecos entry to tries
to match them against what you've chosen.

* It checks for simplistic patterns.

* It then tries to reverse-engineer your password into a dictionary
word, and searches for it in your dictionary.

- after all that, it's PROBABLY a safe(-ish) password. 8-)

WWW: http://pecl.php.net/package/crack

PR:		ports/94244
Submitted by:	Bill Moran <wmoran at collaborativefusion.com>
2006-07-11 15:41:19 +00:00
Roman Bogorodskiy
053732df0e Remove gnutls-devel since the development version of gnutls is not
active yet.
2006-07-06 19:21:00 +00:00
Vasil Dimov
f4212e1cd8 Remove expired leaf ports:
2006-07-01 emulators/linux_base-fc3
2006-06-15 misc/linux-opengroupware
2006-07-01 net/opengk
2006-07-01 security/p5-Crypt-OpenPGP
2006-07-01 textproc/sed_inplace
2006-07-01 textproc/xml4j
2006-07-01 x11-wm/aewm++
2006-07-04 14:04:31 +00:00
Ion-Mihai Tetcu
76dc862617 Kovpn is a really simple OpenVPN GUI for everyday use. It is a client only GUI,
meaning that you cannot administrate an OpenVPN server with it (Look for kvpnc
if you want such a program). You can use it to connect and disconnect without
needing to open a console. You can also input username and/or password that
might be needed.
In Short: It can do everything an end-user want's for his everyday work with
OpenVPN.

WWW: http://www.enlighter.de/

--Anderson S. Ferreira <anderson@cnpm.embrapa.br>

PR:		ports/95709
Submitted by:	anderson@cnpm.embrapa.br
2006-07-03 21:08:02 +00:00
Erwin Lansing
d3de307fe3 Add p5-openxpki 0.9.342, perl based enterprise class trastcenter
software for PKI.

PR:		ports/99317
Submitted by:	Sergei Vyshenski <svysh@cryptocom.ru>
2006-06-28 12:52:48 +00:00
Aaron Dalton
2b2737e54b Adding port security/p5-Authen-PAAS, Perl Authentication & Authorization
Service

Approved by:	tobez (implicit)
2006-06-23 05:00:05 +00:00
Florent Thoumie
6ee2e58e9d Add OpenBSM 1.0a6, the Open Source Basic Security Module (BSM) Audit
Implementation.
2006-06-14 11:51:09 +00:00
Alex Dupre
6050f3251d Engine_pkcs11 is an implementation of an engine for OpenSSL.
It can be loaded using code, config file or command line and
will pass any function call by openssl to a PKCS#11 module.
Engine_pkcs11 is meant to be used with smart cards and software
for using smart cards in PKCS#11 format, such as OpenSC.

WWW:	http://www.opensc-project.org/engine_pkcs11/

Note: the port requires the OpenSSL installed from ports,
since dynamic engine loading is disabled in base system.
See PR bin/79570 for details.
2006-06-12 17:04:13 +00:00
Alex Dupre
acf7714db0 Pam_p11 is a plugable authentication module (pam) package
for using crpytographic tokens such as smart cards and
usb crypto tokens for authentication.

Pam_p11 uses libp11 to access any PKCS#11 module.
It should be compatible with any implementation, but it
is primarely developed using OpenSC.

Pam_p11 implements two authentication modules:
 * pam_p11_openssh authenticates the user using his
   openssh ~/.ssh/authorized_keys file.
 * pam_p11_opensc authenticates the user using
   certificates found in ~/.eid/authorized_certificates.

Pam_p11 is very simple, it has no config file, no options
other than the PKCS#11 module file, does not know about
certificate chains, certificate authorities, revocation
lists or OCSP. Perfect for the small installation with no
frills.

WWW:	http://www.opensc-project.org/pam_p11/
2006-06-12 17:00:25 +00:00
Alex Dupre
a8e121cb3c Libp11 is a library implementing a small layer
on top of PKCS#11 API to make using PKCS#11
implementations easier.

WWW:	http://www.opensc-project.org/libp11/
2006-06-12 16:58:38 +00:00
Erwin Lansing
9bf2eb4547 The NTLM (Windows NT LAN Manager) authentication scheme is the
authentication algorithm used by Microsoft.

NTLM authentication scheme is used in DCOM and HTTP environment. It is
used to authenticate DCE RPC packets in DCOM. It is also used to
authenticate HTTP packets to MS Web Proxy or MS Web Server.

Currently, it is the authentication scheme Internet Explorer chooses to
authenticate itself to proxies/web servers that supports NTLM.

WWW: http://search.cpan.org/dist/Authen-NTLM/

PR:		ports/98684
Submitted by:	James Thomason <james@divide.org>
2006-06-08 09:44:48 +00:00
Cheng-Lung Sung
6aa8cb1880 Add p5-Nmap-Parser 1.05, parse nmap scan data with perl.
PR:		ports/98576
Submitted by:	Joshua D. Abraham <jabra@ccs.neu.edu>
2006-06-06 08:49:36 +00:00
Renato Botelho
6721ecefac PAM module for TIS authsrv authentication
The pam_authsrv module provides TIS authsrv authentication to PAM-aware
applications. It has been tested under AIX 4.3.3 (using the Linux-PAM for
AIX patch) and 5.1, Solaris 8 and 9, RedHat Linux 7.2, and HP-UX 11.00.

The pam_authsrv source code is available from:

    ftp://ftp.feep.net/pub/software/PAM/pam_authsrv/pam_authsrv-1.0.2.tar.gz

Binaries of pam_authsrv are available as Encap packages for a variety of
platforms.

For further information, please see the enclosed README file.

WWW: http://www.feep.net/PAM/pam_authsrv/

PR:		ports/97157
Submitted by:	Jim Pirzyk <pirzyk@FreeBSD.org>
2006-06-05 13:00:31 +00:00
Ion-Mihai Tetcu
e7686467d4 Translated manual pages for security/nmap. Current list of
translations includes Spanish, French, Croatian, Japanese,
Polish, Portuguese, Romanian, Slovak and Chinese.

WWW: http://www.insecure.org/nmap/

PR:		ports/93598
Submitted by:	Daniel Roethlisberger <daniel@roe.ch>
Approved by:	lawrance (mentor, implicit)
2006-06-05 10:09:41 +00:00
Jean Milanez Melo
1d4970bb44 - Remove this port, the version was included in base system.
Approved by:	mnag (mentor)
2006-05-31 21:33:20 +00:00
Pav Lucistnik
5580b13f7d - Rename ports
security/gnomekeyring -> security/gnome-keyring
  security/gnomekeyringmanager -> security/gnome-keyring-manager
2006-05-28 15:22:13 +00:00
Johan van Selst
b5bd0897dd Let's not forget to update Makefile when adding new port (reminded by flz)
Approved by:	flz (mentor)
2006-05-26 14:26:36 +00:00
Aaron Dalton
e82e60987a Adding port security/p5-Crypt-Dining, The Dining Cryptographers' ProtocoAdding port security/p5-Crypt-Dining, The Dining Cryptographers' Protocoll
Approved by:	tobez (implicit)
2006-05-25 20:05:50 +00:00
Sergey Matveychuk
6bbfcfd62b A PAM module that allows you to require a special group or
user to access a service.

WWW: http://www.splitbrain.org/projects/pam_require/

PR:		ports/95187
Submitted by:	Chris Cowart <ccowart@rescomp.berkeley.edu>
2006-05-24 18:04:24 +00:00
Aaron Dalton
c8f0bc74a4 Adding port security/p5-Tree-Authz, a library implementing a Role-Based Access Control authorization scheme.
Approved by:	tobez (implicit)
2006-05-22 18:20:22 +00:00
Aaron Dalton
ed9a86da78 Adding port security/p5-Authen-Simple-RADIUS, RADIUS extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 17:30:35 +00:00
Aaron Dalton
378ea9059c Adding port security/p5-Authen-Simple-PAM, PAM extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 17:24:15 +00:00
Aaron Dalton
5d74ca5e78 Adding port security/p5-Authen-Simple-DBM, DBM extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 17:20:26 +00:00
Aaron Dalton
b21bd2820b Adding port security/p5-Authen-Simple-SMB, SMB extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 17:15:34 +00:00
Aaron Dalton
1760501dfa Adding port security/p5-Authen-Simple-SSH, SSH protocol extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 17:09:14 +00:00
Renato Botelho
895bfd837a PAM module for pseudouser authentication
PR:		ports/97159
Submitted by:	Jim Pirzyk <pirzyk@FreeBSD.org>
2006-05-22 11:50:04 +00:00
Aaron Dalton
ae50b32032 Adding port security/p5-Authen-Simple-Passwd, Passwd extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 05:37:30 +00:00
Aaron Dalton
87cb63c95e Adding port security/p5-Authen-Simple-HTTP, HTTP extension for security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 05:27:24 +00:00
Aaron Dalton
dff0afe74c Adding port security/p5-Authen-Simple-Net, extension for security/p5-Authen-Simple allowing authentication via FTP, POP3, or SMTP.
Approved by:	tobez (implicit)
2006-05-22 05:19:07 +00:00
Aaron Dalton
cbd52b8357 Adding port security/p5-Authen-Simple-DBI, DBI extension for security/p5-Authen-
Simple.

Approved by:	tobez (implicit)
2006-05-22 05:07:49 +00:00
Aaron Dalton
b521fbe031 Adding port security/p5-Authen-Simple-LDAP, LDAP and ActiveDirectory extension to security/p5-Authen-Simple.
Approved by:	tobez (implicit)
2006-05-22 01:10:14 +00:00
Aaron Dalton
c3c2cd4d14 Adding port security/p5-Authen-Simple, a consistent and simple framework for authentication.
Approved by:	tobez (implicit)
2006-05-22 00:52:28 +00:00
Andrew Pantyukhin
0852e66295 Add py-cerealizer: Secure pickle-like module
PR:		ports/96944
Submitted by:	Jose Alonso Cardenas Marquez <acardenas@bsd.org.pe>
Approved by:	krion (mentor)
2006-05-17 10:44:48 +00:00
Renato Botelho
52ba1c313f PAM module for per-user authentication
PR:		ports/97158
Submitted by:	Jim Pirzyk <pirzyk@freebsd.org>
2006-05-16 15:34:08 +00:00
Aaron Dalton
f339ced151 Add ipfwcount 0.2.1, summarise ipfw logs by counting and sorting the
fields.

PR:		ports/92454
Submitted by:	Robert Archer <freebsd@deathbeforedecaf.net>
Approved by:	tobez
2006-05-13 16:33:50 +00:00
James E. Housley
e4054d3289 Since the DAT files are so short lived on the server, have this port
automatically fetch the current DAT file.  The uvscan-dat port will
be removed shortly.
2006-05-09 12:08:51 +00:00
Ion-Mihai Tetcu
bdcd0201a6 TrustedPickle is a Python module that can save most any arbitrary Python object
in a signed pickle file. There are two big differences between this module and
the standard pickle module. First, TrustedPickle can pickle a module, but the
standard pickle module cannot. Second, TrustedPickle includes a signature that
can verify the data's origin before the data is unpickled.

WWW: http://trustedpickle.sourceforge.net/index.html

PR:		ports/96691
Submitted by:	Alexander Botero-Lowry <alex@foxybanana.com>
Approved by:	lawrance (mentor)
2006-05-09 11:46:02 +00:00
Andrew Pantyukhin
0922dea7a2 Add parano: A Gnome program to deal with hashfiles
PR:		ports/96710
Submitted by:	sat
Approved by:	krion (mentor)
2006-05-08 14:06:14 +00:00
Emanuel Haupt
c24ab61dd2 Add rainbowcrack 1.2, a hash cracker that precomputes plaintext -
ciphertext pairs in advance.

PR:		96664
Submitted by:	bryan@freshdns.net
2006-05-08 00:52:28 +00:00
Cheng-Lung Sung
54b2e35f60 Add medusa 1.0, a speedy, massively parallel, modular, login
brute-forcer.

PR:		ports/96641
Submitted by:	David Thiel <lx@redundancy.redundancy.org>
2006-05-02 07:36:47 +00:00
Pav Lucistnik
6a26ebefa7 courierpasswd is an authentication and password changing utility
that uses the courier-authlib authentication library to find user credentials.

Its interface follows that of Daniel J. Bernstein's checkpassword program.

WWW: http://www.arda.homeunix.net/store/

PR:		ports/96572
Submitted by:	Andrew St. Jean <andrew@arda.homeunix.net>
2006-05-01 20:46:26 +00:00
Ying-Chieh Liao
a8137202c2 add p5-Authen-TypeKey 0.05
TypeKey authentication verification

PR:		94679
Submitted by:	Gea-Suan Lin <gslin@gslin.org>
2006-05-01 04:04:11 +00:00
Pav Lucistnik
6fa6a66529 Tcl SASL provides a Tcl interface to the Cyrus SASLv2 library.
WWW: http://beepcore-tcl.sourceforge.net/tclsasl.html

PR:		ports/96359
Submitted by:	Denis Shaposhnikov <dsh@vlink.ru>
2006-04-29 15:55:15 +00:00
Pav Lucistnik
185fa8dd77 Password Manager helps to manage large numbers of passwords and related
information and simplifies the tasks of searching and entering password data.

KedPM is written as an extensible framework, which allows users to plug in
custom password database back-ends and custom user interface front-ends.
Currently, only the Figaro PM back-end supported. To control KedPM user can
choose between CLI and GTK2 based GUI front-ends.

WWW: http://kedpm.sourceforge.net

PR:		ports/96321
Submitted by:	Tim Welch <twelch@thepentagon.org>
2006-04-29 15:44:46 +00:00
Jean Milanez Melo
22e951ba0f - New port:
fswatch is a utility to guard changes in a file system. fswatch is composed
of three simple programs: fswbuild, fswcmp, fswshow. fswbuild builds file
system information database. fswcmp compairs two database files and returns
what changes a in file system have been introduced. fswshow shows contents of
database file. a file information database is platform independend.

fswatch can collect the following information about files (and directories):
inode, links, uid, gid, mode, size, flags, ctime, checksum (sha1) ; and can
show which files were added, deleted or changed.

PR:		ports/95973
Submitted by:	dominik karczmarski <dominik@karczmarski.com> (maintainer)
Reworked by:	jmelo
Approved by:	mnag (mentor)
2006-04-25 01:55:02 +00:00
Vasil Dimov
9f11fc7d66 Remove expired ports:
2006-04-17 security/nessus-devel
2006-04-17 security/nessus-libnasl-devel
2006-04-17 security/nessus-libraries-devel
2006-04-17 security/nessus-plugins-devel
2006-04-17 07:19:40 +00:00
Archie Cobbs
e64e4b6ab5 Remove the skip port. Created before there was an IPSec implementation on
FreeBSD, it is now extremely obsolete. In any case it doesn't compile. Earlier
version of this port can still be used on older versions of FreeBSD of course.
2006-04-06 13:54:46 +00:00
Sergey Matveychuk
a0c8969618 UPEK TouchChip TFM/ESS Fingerprint BSP is a (binary only) BioAPI BSP which
provides support for UPEKs fingerprint sensors.

PR:		ports/93035
Submitted by:	Fredrik Lindberg <fli@shapeshifter.se>
2006-03-28 17:07:38 +00:00
Anton Berezin
c4ee7c086c Add security/p5-GSSAPI 0.20, a Perl extension providing access to the
GSSAPIv2 library.
2006-03-28 09:57:33 +00:00
Sergey Matveychuk
d053138b06 Anti-bruteforce PAM module for authentification services. It can be used to
prevent brute-force attacks on services like SSH or Telnet. It's highly
configurable and very fast.

WWW: http://mbsd.msk.ru/pam_af.html

PR:		ports/94113
Submitted by:	Stanislav Sedov <ssedov@mbsd.msk.ru>
2006-03-26 12:32:16 +00:00
Pav Lucistnik
078531c569 Password Gorilla is cross-platform Password Manager.
It uses TCL/Tk and runs on most platforms supported by Tcl/Tk.

WWW:	http://www.fpx.de/fp/Software/Gorilla

PR:		ports/93179
Submitted by:	Kay Lehmann <kay_lehmann@web.de>
2006-03-20 19:20:10 +00:00