Re: securing a unix system - suggestions on checking for intrusions
Tomislav <[email protected]>
| Newsgroups | gmane.org.user-groups.linux.new-zealand.general |
|---|---|
| Message-ID | <[email protected]> |
On 6/10/2011 13:32, Robin Sheat wrote: > Op donderdag 06-10-2011 om 12:53 uur [tijdzone +1300], schreef Robin > Paulson: >> Unfortunately there is no known way of verifying this on >> Debian-based >> systems." > > Apt checks the sigs of the repo and the packages when you install from > it, and whinges mightily if they don't match a known key. > > I'm not totally sure what that snippet is doing, but it looks like it's > seeing that there's sig on packages that are already installed, which I > don't see the point of. > > Robin. > > It is useful if the repo key has been changed and you need to reinstall everything that uses the old key for verification. But if you are that worried a clean install is in order anyway. _______________________________________________ NZLUG mailing list [email protected] http://www.linux.net.nz/cgi-bin/mailman/listinfo/nzlug