search for: attest

Displaying 20 results from an estimated 128 matches for "attest".

Did you mean: atest
2020 Sep 04
3
Incomplete attestation data for FIDO2 SKs?
I was recently looking at verifying the attestation data (ssh-sk-attest-v00) for a SK key, but I believe the data saved in this structure is insufficient for completing verification of the attestation. While the structure has enough information for U2F devices, FIDO2 devices sign their attestation over a richer "authData" blob [1] (co...
2011 Mar 25
0
"Neutral" sources that attest to the success of the R project?
Hello everyone, The "R (programming language)" article in Wikipedia was nominated as a "Engineering and technology good article" but did *not* meet the good article criteria at the time (2010). The reviewer at the time made two interesting comments about the article: - Sources are almost all (except for one NYT article) online wiki-type sources. These may be
2011 Nov 07
1
POP3/IMAPv4 CRAM-MD5 Authentication failed.(Re-post)
...liver.log > mail_plugins = > postmaster_address = postmaster at sklc.co.jp > sendmail_path = /usr/lib/sendmail > } > protocol lmtp { > mail_plugins = > } > protocol pop3 { > mail_plugins = > pop3_save_uidl = yes > pop3_uidl_format = %v-%u > } If it attests by connecting by POP3 or IMAPv4, the following messages will be displayed and attestation will go wrong. > Nov 07 23:12:40 auth: Debug: auth client connected (pid=20018) > Nov 07 23:12:40 auth: Debug: client in: AUTH 1 CRAM-MD5 service=pop3 secured no-penalty lip=19...
2020 May 28
6
Stir-Shaken for asterisk
...08')". If your caller-ID is a valid US number and not a wireless number (that is a NO-NO for the FCC), we sign the call as 'C', if you use your own DIDs, something we can verify as legit, then we sign as 'B', and if you use our DID as caller ID, we sign as 'A', full attestation. Please email to venefax at g mail if you have any questions. Do not think you can do business as usual. The wild west of VOIP is coming to an end. But we can keep you in business if you follow the rules. -------------- next part -------------- An HTML attachment was scrubbed... URL: <http:...
2019 Dec 03
2
U2F support in OpenSSH HEAD
Hi Damien, On Nov 14, 2019, at 3:26 PM, Damien Miller <djm at mindrot.org> wrote: > On Fri, 1 Nov 2019, Damien Miller wrote: >> As of this morning, OpenSSH now has experimental U2F/FIDO support, with >> U2F being added as a new key type "sk-ecdsa-sha2-nistp256 at openssh.com" >> or "ecdsa-sk" for short (the "sk" stands for "security
2020 Feb 10
6
question about pubkey and passphrase
Hi folks, Since Docker can bind-mount every .ssh directory I am looking for some way to forbid unprotected private keys. AFAICS it is currently not possible on the sshd to verify that the peer's private key was protected by a passphrase. Can you confirm? Regards Harri
2005 Jun 15
12
WiFi IP Phones
Guys. I know there are wifi sip phones out there but I have a question, are any of these phones "anti explosive"? By that I mean, there are certain regulations about phones or cel phones that are not recommended to operate in environments like gas stations due to sparks and the chance of ingiting gas fumes. Are there any wifi sip phones out here that have complaince with regulations to
2023 Jul 13
1
[CfP] Confidential Computing Microconference @ LPC 2023
...or this years Confidential Computing MC at the Linux Plumbers Conference. In this microconference we want to discuss ongoing developments around Linux support for memory encryption and support for confidential computing in general. Topics of interest include: * Support for unaccepted memory * Attestation workflows * Confidential Computing threat model * Secure VM Service module (SVSM) and paravisor architecture and implementation * Live migration of confidential virtual machines * ARM64 Confidential Computing * RISC-V CoVE * Secure IO and device attestation * Intel TDX Connect...
2008 Aug 06
1
Portable OpenSSH needs a new server
Hi, The server that hosts Portable OpenSSH's bugzilla, anoncvs and mailing lists is reaching the end of its life and is in need of replacement. Anyone who uses our bugzilla frequently can attest to how annoyingly slow it is. So I am soliciting donations towards a replacement server with a target of AUD$3750. If there are any leftover funds they will be used to defray colo costs that I normally pay myself. The easiest way to donate is via Paypal to my email address (djm at mindrot.org), b...
2005 Jan 04
0
Re: trusted computing
...> "Currently, we experiment measuring the information flow on SELinux > > systems to reason about isolation properties of a system. For this > > purpose, we modified tcgLinux to run as an LSM kernel module stacked on > > top of SELinux. We also envision to extend our attestation method to > > integrate virtualization technology and partition the attestation space > > of a system using the information flow policies enforced therein." > > # [tcgLinux]"s main goal is to generate verifiable representative information > # about the sof...
2016 Jul 29
1
Fwd: Good installation documentation on samba4?
...ke > writing docs, and probably would have, except we weren't able to get > Samba working as an AD the way we needed it to, so I dropped the > project. > > Your only hope, beyond that, is this mailing list. The regulars here > are very helpful and very patient, to which I can attest :) > > DO NOT be tempted to go searching for help elsewhere on the 'net. Much > of what you'll find will be wildly inaccurate and will only lead you to > grief. Ask me how I know ;) > > Good luck, > Jim OK, I have had another look at the Samba wikipage and apart from...
2002 Oct 29
1
strange locks
...nf: kernel op locks = false op locks = false strict locking = true so I could see some locks from the unix level. It worked sorta, I see the locks for big files (but not the locks I was expecting), but for little files it shows nothing: # ./lock_list /opt/testsambashare/mattest.doc # ./lock_list /opt/testsambashare/contents.doc 0 22086 W 2147483539 1 0 22086 W 2147483559 1 0 22086 W 2147483599 1 (the output is l_sysid, l_pid, l_start, l_len of struct flock) (lock_list.c source given below) The only difference I can see is that the contents.doc is mu...
2017 Jan 26
3
CentOS 7 install on one RAID 1 [not-so-SOLVED]
In article <1485416344.2047.1.camel at biggs.org.uk>, Pete Biggs <pete at biggs.org.uk> wrote: > > > > > If you are using RAID 1 kernel mirroring, you can do that with /boot too, > > and Grub finds the kernel just fine. I've done it many times: > > > > > Hmm, OK. I wonder why anaconda doesn't do it then. > > Reading various
2007 Jul 23
7
Polycom IP 4000 Soundstation SIP Conference Phone Question
Hi, Has anyone here ever used a Polycom IP 4000 Soundstation SIP Conference Phone with asterisk? If so, how well does it work and how does it sound?
2014 Apr 03
2
[LLVMdev] decompiler
On Thu, Apr 3, 2014 at 11:50 AM, Jevin Sweval <jevinsweval at gmail.com> wrote: > On Wed, Apr 2, 2014 at 1:57 AM, "C. Bergström" <cbergstrom at pathscale.com> wrote: >> Hi - >> >> Not sure if anyone else saw this or cares about a decompiler (not personally >> tested) >> https://github.com/draperlaboratory/fracture >> >> I wonder if
2007 May 01
8
Custom functions and facts
Hello! I''ve been trying to use facts from Facter in a custom function. I''ve been following Matthew''s entry in the wiki (http://www.reductivelabs.com/trac/puppet/wiki/WritingYourOwnFunctions). What i''m seeing is that Facter[''fqdn''].value is always returning the fqdn of the puppetmaster host. I was expecting the fqdn of the client host.
2010 Nov 10
1
[obnox@samba.org: 3.6:idmap:Q2: get rid of (all/most) idmap alloc parameters for idmap_ldap ?]
...n and the related idmap alloc secret. I would like to get rid of these. Therefore, I am asking here, if there is anyone out there using these? I can not imagine a reason why one would want to use different server and/or user+password for storing the uid/gid counter. The only option that I would attest a certain, though minimal, right to exist is the ldap_base_dn. But usually, it should imho ok to store the uid/gid counter in the same location as the mappings. So, again: Are these options needed/used at all? Or can I remove them for 3.6.0 ? Cheers - Michael Note: If we need to keep any of the...
2004 Jan 13
3
Re: Proposed solution for exit code priority jumps
...y for me to talk about this since I can't accomplish such a task. However, without attention now, this may never be solved, which would be a pity because it's a real crimp in the style of anyone doing more than trivial dialplan manipulation - anyone doing cascading dial failovers will attest to that. Please look at and comment upon method #1 logic and syntax shown below; I think method #2 ("alternate method") is a bit too radical. Now, back to soundfile clipping... JT At 9:49 PM -0500 11/28/03, John Todd wrote: > >Proposal for Alternate Error Handling Jumping >...
2024 Jul 04
1
Apple's SSH x OpenSSH (brew) x CTK x Security Key types
...nd a backup key. (I know, I could use certificates, and maybe I will!). Why don?t I just use the brew version with pkcs11/ykcs11? a) Because it adds all the keys in the PIV token including deleted keys that are not listed anywhere (I only got rid of those by resetting the applet completely) and the attestation key * thankfully the attestation key refuses to sign arbitrary data, as it should b) Because I?d rather it be bound to the Secure Enclave and only have a token as a backup or for stronger security requirements This got me into a rabbit hole :-) Sorry in advance if this is not 100% suitable...
2016 Aug 19
3
OT: Cloning llvm repo over low speed connection != fun
...ean couch surfing, but just average place.. I'd even add some above >>  average places to the list and when you get 100 people all on the same >>  line.. it can get "slow"... > > I've been to many places while going to Connects, events and sprints, > and I can attest that hotels, no matter how many stars, have horrible > Internet connection. > > One hotel we had to tell the admin to stop throttling SSH and also to > allow connections to more ports than just 25, 80 and 443. > > But that affected *everybody*. Using Git or SVN, using Windows or &...