Re: binup project
"Simon L. Nielsen" <[email protected]> Sun, 9 Mar 2003 14:19:21 +0100
| Newsgroups | gmane.os.freebsd.devel.binary-update |
|---|---|
| Message-ID | <[email protected]> |
--NzB8fVQJ5HfG6fxh Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On 2003.03.08 22:34:37 +0000, Colin Percival wrote: > My code cryptographically signs the updates; they can then be=20 > distributed by whatever means is convenient (http, ftp, shortwave radio= =20 > broadcast...) although since the client code uses fetch(1) that imposes= =20 > some restrictions. Doing things this way, in addition to eliminating=20 > spoofing attacks, also makes it possible for the severely paranoid to=20 > perform all secure operations on a system which is physically disconnecte= d=20 > from the Internet (and copy the update files to a webserver via sneakerne= t). Ok, looking forward to seeing your next version. --=20 Simon L. Nielsen --NzB8fVQJ5HfG6fxh Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.1 (FreeBSD) iD8DBQE+az9X8kocFXgPTRwRAmlDAKCVQY8ywdGF/xhNpgDPim7P0txG4ACfWd+o tMmL8UR7CdyawAP2+bLnGhk= =ekkU -----END PGP SIGNATURE----- --NzB8fVQJ5HfG6fxh-- To Unsubscribe: send mail to [email protected] with "unsubscribe freebsd-binup" in the body of the message