Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Sun, 3 Jul 2011 00:36:32 +0400
From: Solar Designer <solar@...nwall.com>
To: john-dev@...ts.openwall.com
Subject: Re: 1.7.8.Jumbo-1

Jim -

On Sat, Jul 02, 2011 at 03:23:56PM -0500, JimF wrote:
> From: "Solar Designer" <solar@...nwall.com>
...
> >I guess john-1.7.7-jumbo-6-jimfpatch-4.diff will need to be enhanced to
> >include ZIP under the #if's as well, if I include that.  SSH_PDF_RAR
> >will probably need to be changed to something like NON_HASHES, although
> >-jumbo supports a few other non-hashes as well (TGTs, S/Key).
> 
> If it has the oSSL 1.0+ requirement, then yes.    The change is not so much 
> keeping the 'non-hash' types out, it is the reliance on SSL that is newer 
> than some older systems would have.  Same for the SHA256 stuff.

Then the patch should be reworked to use the same approach that
john-1.7.7-jumbo-6-auto_have_sha256-03.diff.gz does.  Would you do that?

I am tempted not to apply john-1.7.7-jumbo-6-jimfpatch-4.diff for now,
because it does not apply on top of john-1.7.7-jumbo-6-zip-0.diff.gz
anyway (most hunks are rejected) and because fixing it to make it apply
feels like a waste of time (I think it needs to be re-done to check the
OpenSSL version number).

I might include the DOMINOSEC_fmt.c, lotus5_fmt.c, and sapB_fmt.c hunks
now, though.

Thanks,

Alexander

Powered by blists - more mailing lists

Your e-mail address:

Powered by Openwall GNU/*/Linux - Powered by OpenVZ