DaemonForums  

Go Back   DaemonForums > DaemonForums.org > News

News News regarding BSD and related.

Reply
 
Thread Tools Display Modes
  #1   (View Single Post)  
Old 24th December 2010
J65nko J65nko is online now
Administrator
 
Join Date: May 2008
Location: Budel - the Netherlands
Posts: 3,262
Thanked 182 Times in 149 Posts
Default OpenBSD: audits give no indication of back doors

From http://www.h-online.com/security/new...s-1158604.html

Quote:
So far, the analyses of OpenBSD's crypto and IPSec code have not provided any indication that the system contains back doors for listening to encrypted VPN connections
__________________
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
Reply With Quote
  #2   (View Single Post)  
Old 24th December 2010
rpindy rpindy is offline
Fdisk Soldier
 
Join Date: May 2010
Posts: 59
Thanked 1 Time in 1 Post
Default

That's good. They were able to find two bugs, so it shows they combed the code well and still didn't find any backdoors.

Perhaps they could also use a third party audit, such as:

http://securityevaluators.com/conten...ode-review.jsp

Although I remember in Sep. 2009 they had financial troubles, so it might be too hard to muster up the kind of money they would need for something like that.
Reply With Quote
  #3   (View Single Post)  
Old 26th December 2010
jggimi's Avatar
jggimi jggimi is online now
More noise than signal
 
Join Date: May 2008
Location: USA
Posts: 3,894
Thanked 214 Times in 189 Posts
Default

Coverity conducted an audit several years ago. While it was not focused in this area it did find some things that manual code walk through had missed.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
We're back! rpindy Feedback and Suggestions 4 5th July 2010 09:09 AM
I'm back too :) ai-danno Off-Topic 10 22nd January 2010 02:42 AM
I'm back :-) Broodjegehaktmetmayo Off-Topic 11 23rd December 2009 12:40 AM
Back on FreeBSD Once More ninjatux FreeBSD General 3 19th March 2009 11:44 PM
relayd (and hoststated) give syntax error for 'check script' gwl OpenBSD Security 2 2nd May 2008 04:53 PM


All times are GMT. The time now is 03:08 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content copyright © 2007-2010, the authors
Daemon image copyright ©1988, Marshall Kirk McKusick