sebix [Wed, 25 Dec 2013 20:45:18 +0000 (21:45 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Conflicts:
src/practical_settings/DBs.tex
src/practical_settings/vpn.tex
sebix [Wed, 25 Dec 2013 20:27:25 +0000 (21:27 +0100)]
Merge branch 'master' of github.com:BetterCrypto/Applied-Crypto-Hardening
Conflicts:
src/acknowledgements.tex
src/practical_settings/DBs.tex
src/practical_settings/im.tex
src/practical_settings/vpn.tex
src/practical_settings/webserver.tex
Aaron Kaplan [Wed, 25 Dec 2013 20:18:46 +0000 (21:18 +0100)]
Revert "we do not need an introduction to SQL or do we?"
--> someone did not understand that we actually meant
https://de.wikipedia.org/wiki/Microsoft_SQL_Server
This reverts commit
d9d2c6e433508c56be7bdd7489d121b52b7a1ba7.
cm [Wed, 25 Dec 2013 20:08:51 +0000 (21:08 +0100)]
Revert "use cipherstring b in openvpn", because it breaks it, and put
in big warnings :-)
This reverts commit
41091bb2c3fe5396d6c8d9261236068a12726f91.
sebix [Wed, 25 Dec 2013 20:05:58 +0000 (21:05 +0100)]
uniform structure for practical settings: webservers, VPN, IM,
Database
descriptions replaced by section-hierarchy
Postgres tested on mint/ubuntu
sebix [Wed, 25 Dec 2013 20:04:18 +0000 (21:04 +0100)]
Using UTF-8 as input-encoding and use correct single upquotes
(important for listings!)
Aaron Zauner [Wed, 25 Dec 2013 17:27:16 +0000 (18:27 +0100)]
reformat ECC section
Aaron Zauner [Wed, 25 Dec 2013 17:11:02 +0000 (18:11 +0100)]
we do not need an introduction to SQL or do we?
Aaron Zauner [Wed, 25 Dec 2013 17:10:01 +0000 (18:10 +0100)]
review and rephrase IRC section
Aaron Zauner [Wed, 25 Dec 2013 17:08:09 +0000 (18:08 +0100)]
use cipherstring b in openvpn
Aaron Zauner [Wed, 25 Dec 2013 17:05:29 +0000 (18:05 +0100)]
commented out: exchange
Aaron Zauner [Wed, 25 Dec 2013 17:04:49 +0000 (18:04 +0100)]
postfix already has a references section
Aaron Zauner [Wed, 25 Dec 2013 17:03:49 +0000 (18:03 +0100)]
add cyrus version
Aaron Zauner [Wed, 25 Dec 2013 16:57:41 +0000 (17:57 +0100)]
review of openssh section
Aaron Zauner [Wed, 25 Dec 2013 16:51:17 +0000 (17:51 +0100)]
remove todo
Aaron Kaplan [Tue, 24 Dec 2013 18:35:14 +0000 (19:35 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Aaron Kaplan [Tue, 24 Dec 2013 18:34:55 +0000 (19:34 +0100)]
flow chart updated
cm [Tue, 24 Dec 2013 17:38:19 +0000 (18:38 +0100)]
added URL with online edition to anderson2008
cm [Tue, 24 Dec 2013 17:28:44 +0000 (18:28 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
cm [Tue, 24 Dec 2013 17:28:41 +0000 (18:28 +0100)]
more reviewer input, mostly wording
Aaron Kaplan [Tue, 24 Dec 2013 17:24:58 +0000 (18:24 +0100)]
again...
Aaron Kaplan [Tue, 24 Dec 2013 17:15:44 +0000 (18:15 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Aaron Zauner [Tue, 24 Dec 2013 16:58:10 +0000 (17:58 +0100)]
added ritters glossary of cryptography
Aaron Zauner [Tue, 24 Dec 2013 16:39:41 +0000 (17:39 +0100)]
s/numbers/primes/
cm [Tue, 24 Dec 2013 16:31:54 +0000 (17:31 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
cm [Tue, 24 Dec 2013 16:31:00 +0000 (17:31 +0100)]
wording changes
cm [Tue, 24 Dec 2013 16:24:46 +0000 (17:24 +0100)]
add mention of TinyCA to CA section
cm [Tue, 24 Dec 2013 16:23:34 +0000 (17:23 +0100)]
TODO regarding xrefs
Eva Seidl [Tue, 24 Dec 2013 16:15:15 +0000 (17:15 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Eva Seidl [Tue, 24 Dec 2013 16:15:05 +0000 (17:15 +0100)]
minor layout modifications
Aaron Kaplan [Tue, 24 Dec 2013 16:07:31 +0000 (17:07 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Aaron Kaplan [Tue, 24 Dec 2013 16:05:08 +0000 (17:05 +0100)]
playing around with the flowchart
Aaron Zauner [Tue, 24 Dec 2013 16:02:18 +0000 (17:02 +0100)]
make that 14-18
Eva Seidl [Tue, 24 Dec 2013 15:58:11 +0000 (16:58 +0100)]
minor layout improvements
cm [Tue, 24 Dec 2013 15:54:37 +0000 (16:54 +0100)]
removed the "again", because its a first-time mention
cm [Tue, 24 Dec 2013 15:48:50 +0000 (16:48 +0100)]
a few commas etc
cm [Tue, 24 Dec 2013 15:42:02 +0000 (16:42 +0100)]
mention dh group lengths
sebix [Tue, 24 Dec 2013 15:30:15 +0000 (16:30 +0100)]
Remove all remaining [breaklines] in listings
sebix [Tue, 24 Dec 2013 15:24:57 +0000 (16:24 +0100)]
Merge branch 'master' of github.com:BetterCrypto/Applied-Crypto-Hardening
sebix [Tue, 24 Dec 2013 15:22:30 +0000 (16:22 +0100)]
Got rid of perlify.py: now use %*\cipherstringB*) inside listings to
include the current cipherstring
cm [Tue, 24 Dec 2013 15:15:15 +0000 (16:15 +0100)]
add xref
cm [Tue, 24 Dec 2013 15:12:42 +0000 (16:12 +0100)]
add note WRT browser trust stores
cm [Tue, 24 Dec 2013 15:07:45 +0000 (16:07 +0100)]
rewrite PKI section
sebix [Tue, 24 Dec 2013 14:16:22 +0000 (15:16 +0100)]
Merge branch 'master' of github.com:BetterCrypto/Applied-Crypto-Hardening
cm [Tue, 24 Dec 2013 14:15:37 +0000 (15:15 +0100)]
reviewer disclaimer
sebix [Tue, 24 Dec 2013 14:14:28 +0000 (15:14 +0100)]
Webserver cleanup and uniformed, STS
Apache tested, link to docs, SSl Session Cache (Session Tickets,
Resumption)
Strinct-Transport-Security: uniform for all configurations, with
includeSubDomains
Aaron Kaplan [Tue, 24 Dec 2013 12:43:35 +0000 (13:43 +0100)]
) was missing
Aaron Kaplan [Tue, 24 Dec 2013 12:42:12 +0000 (13:42 +0100)]
typos
Aaron Kaplan [Tue, 24 Dec 2013 12:29:00 +0000 (13:29 +0100)]
typo
Aaron Kaplan [Tue, 24 Dec 2013 12:27:53 +0000 (13:27 +0100)]
typos, slight re-phrasing
Aaron Kaplan [Tue, 24 Dec 2013 12:20:36 +0000 (13:20 +0100)]
typos
Aaron Kaplan [Tue, 24 Dec 2013 12:18:59 +0000 (13:18 +0100)]
typos
Aaron Kaplan [Tue, 24 Dec 2013 12:11:49 +0000 (13:11 +0100)]
typos , add reference to silc
Aaron Kaplan [Tue, 24 Dec 2013 12:05:58 +0000 (13:05 +0100)]
grammer, typos in im.tex
Aaron Kaplan [Tue, 24 Dec 2013 11:54:36 +0000 (12:54 +0100)]
typos
Aaron Kaplan [Tue, 24 Dec 2013 11:20:31 +0000 (12:20 +0100)]
typos typos typos
Aaron Kaplan [Tue, 24 Dec 2013 11:10:21 +0000 (12:10 +0100)]
typos, die
Aaron Kaplan [Tue, 24 Dec 2013 11:03:40 +0000 (12:03 +0100)]
typo squashing
Pepi Zawodsky [Tue, 24 Dec 2013 00:31:11 +0000 (01:31 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Pepi Zawodsky [Tue, 24 Dec 2013 00:31:07 +0000 (01:31 +0100)]
Added test results for dovecot on OS X Server 10.8.5
Aaron Kaplan [Tue, 24 Dec 2013 00:13:09 +0000 (01:13 +0100)]
merge merge merge sebix's input
Aaron Kaplan [Tue, 24 Dec 2013 00:00:39 +0000 (01:00 +0100)]
manually merge in changes from https://github.com/sebix/Applied-Crypto-Hardening/blob/
6d05f980547eefe47ee77c6b5006a47e3549ac53/src/practical_settings/webserver.tex
Aaron Kaplan [Mon, 23 Dec 2013 23:56:40 +0000 (00:56 +0100)]
manually merge in sebi's changes. git merge got confused. Or i did :)
Aaron Kaplan [Mon, 23 Dec 2013 23:17:58 +0000 (00:17 +0100)]
move the noboltai image into its own .tex file
make the image the first thing . Then the acknowledgements
Aaron Kaplan [Mon, 23 Dec 2013 23:11:25 +0000 (00:11 +0100)]
move reviewers to acknowledgement section and move it to the front of the paper
Aaron Kaplan [Mon, 23 Dec 2013 22:49:57 +0000 (23:49 +0100)]
add xkcd comic :)
Aaron Kaplan [Mon, 23 Dec 2013 22:26:11 +0000 (23:26 +0100)]
and again, re-do adding item seclayer-tcp to further research.
git merge, you suck
Aaron Kaplan [Mon, 23 Dec 2013 22:25:03 +0000 (23:25 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Aaron Kaplan [Mon, 23 Dec 2013 22:23:20 +0000 (23:23 +0100)]
Revert "Merge github.com:BetterCrypto/Applied-Crypto-Hardening"
This reverts commit
19f11b7f9f0b58569331ecb43acd1104fbb3c43b, reversing
changes made to
831b41d2b868620312e49a6a7cfc3bb86acdaa96.
Aaron Kaplan [Mon, 23 Dec 2013 22:21:10 +0000 (23:21 +0100)]
Revert "move seclayer-tcp to further research"
This reverts commit
831b41d2b868620312e49a6a7cfc3bb86acdaa96.
cm [Mon, 23 Dec 2013 22:19:19 +0000 (23:19 +0100)]
typo
Aaron Kaplan [Mon, 23 Dec 2013 22:14:11 +0000 (23:14 +0100)]
Merge github.com:BetterCrypto/Applied-Crypto-Hardening
Aaron Kaplan [Mon, 23 Dec 2013 22:11:25 +0000 (23:11 +0100)]
move seclayer-tcp to further research
Aaron Kaplan [Mon, 23 Dec 2013 22:10:15 +0000 (23:10 +0100)]
exclude seclayer-tcp for now. Waiting for input from A-trust
Aaron Kaplan [Mon, 23 Dec 2013 22:07:28 +0000 (23:07 +0100)]
move l2tp, racoon to further research
Aaron Kaplan [Mon, 23 Dec 2013 22:06:56 +0000 (23:06 +0100)]
remove l2tp, racoon. No content yet
Aaron Kaplan [Mon, 23 Dec 2013 22:04:44 +0000 (23:04 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master into theory-rewrite
Aaron Kaplan [Mon, 23 Dec 2013 22:04:16 +0000 (23:04 +0100)]
correct the flow diagram
Aaron Kaplan [Mon, 23 Dec 2013 21:46:53 +0000 (22:46 +0100)]
add sebix to reviewers. Thank you very much!!
Aaron Zauner [Mon, 23 Dec 2013 21:44:36 +0000 (13:44 -0800)]
Merge pull request #15 from sebix/master
Practical settings: Webserver Lighttpd finished
Eva Seidl [Mon, 23 Dec 2013 21:37:29 +0000 (22:37 +0100)]
minor layout modifications and clean-up
Aaron Kaplan [Mon, 23 Dec 2013 21:27:44 +0000 (22:27 +0100)]
change \begin{description} to subsections as in webservers, mailservers and the other sections
remove cruft from empty subsections
Consider removing racoon and l2tp for now
sebix [Mon, 23 Dec 2013 21:26:29 +0000 (22:26 +0100)]
merging webserver.tex with upstream
sebix [Mon, 23 Dec 2013 21:18:48 +0000 (22:18 +0100)]
Lighttpd Section finished and tested,
config complete, tested with 3 combos, and with explanations around :)
small addition in apache section: SSL Cert files, and required
modules
Aaron Kaplan [Mon, 23 Dec 2013 21:07:54 +0000 (22:07 +0100)]
formatting
Aaron Kaplan [Mon, 23 Dec 2013 20:50:33 +0000 (21:50 +0100)]
the Caution warning is not neccessary anymore, we explained on the theory/overview.tex section
why and how admins can select their own cipher suite
Aaron Kaplan [Mon, 23 Dec 2013 20:39:53 +0000 (21:39 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master into theory-rewrite
Aaron Kaplan [Mon, 23 Dec 2013 20:39:11 +0000 (21:39 +0100)]
fixed all reverences now
Aaron Zauner [Mon, 23 Dec 2013 20:38:44 +0000 (21:38 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master
Aaron Zauner [Mon, 23 Dec 2013 20:38:36 +0000 (21:38 +0100)]
added how to test stuff for MTAs and moved SMTP in general section to top of mailserver section
Aaron Kaplan [Mon, 23 Dec 2013 20:33:15 +0000 (21:33 +0100)]
oops, subsection was a duplicate
Aaron Kaplan [Mon, 23 Dec 2013 20:31:26 +0000 (21:31 +0100)]
moved PKIs.tex to theory/
Aaron Kaplan [Mon, 23 Dec 2013 20:29:56 +0000 (21:29 +0100)]
merging in RNGs.tex
Aaron Kaplan [Mon, 23 Dec 2013 20:28:29 +0000 (21:28 +0100)]
Merge branch 'master' of https://git.bettercrypto.org/ach-master into theory-rewrite
Conflicts:
src/RNGs.tex
Aaron Zauner [Mon, 23 Dec 2013 20:28:04 +0000 (21:28 +0100)]
Merge branch 'theory-rewrite'
Aaron Kaplan [Mon, 23 Dec 2013 20:20:00 +0000 (21:20 +0100)]
actually add the compatibility section. It is important
Aaron Kaplan [Mon, 23 Dec 2013 20:19:33 +0000 (21:19 +0100)]
fix references
Pepi Zawodsky [Mon, 23 Dec 2013 20:06:47 +0000 (21:06 +0100)]
Added 30C3 Lightningtalk Slides PDF
Pepi Zawodsky [Mon, 23 Dec 2013 20:06:03 +0000 (21:06 +0100)]
Now ignoring the missing fonts log by TeX
Aaron Kaplan [Mon, 23 Dec 2013 20:02:35 +0000 (21:02 +0100)]
moved images to img/ subdir