On 09/ 9/10 02:02 PM, [email protected] wrote:
...
IMO, the case for verifying compromised systems duplicates functionality
already implemented in bart(1) and tripwire, but I'm willing to listen
to reasonable arguments to the contrary.

The problem with relying on bart(1) and tripwire is that pkg(5) drives system updates using elfhash as opposed to the standard file digest mechanism that other utilities use.

That makes it difficult to use tools other than pkg(1) to verify the system.

-Shawn
_______________________________________________
pkg-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/pkg-discuss

Reply via email to