[Bug 894678] New: Please create security:forensics repo
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c0 Summary: Please create security:forensics repo Classification: openSUSE Product: openSUSE.org Version: unspecified Platform: Other OS/Version: Other Status: NEW Severity: Normal Priority: P5 - None Component: BuildService AssignedTo: bnc-team-screening@forge.provo.novell.com ReportedBy: Greg.Freemyer@gmail.com QAContact: adrian@suse.com Found By: --- Blocker: --- User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.102 Safari/537.36 I have been adding digital forensic / incident response tools to the security repo for the last few years. One in particular (python-plaso) has grown to have approximately 40 dependencies that are not used by any packages outside the security repo. I would like to move all of those dependencies out of their current devel projects and into a central devel repo. Rather than move all 40 to the existing security repo, I think it makes more sense to create a new security:forensics repo and migrate everything there. Marcus Meisner is the main security project maintainer and has told me he doesn't care whether security:forensics is created or if all the packages instead get migrated to security. A partial list of packages to be migrated can be found in: https://build.opensuse.org/project/show/home:gregfreemyer:libyal-plaso Reproducible: Always Steps to Reproduce: 1. 2. 3. -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c Marcus Meissner <meissner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- AssignedTo|bnc-team-screening@forge.pr |mrueckert@suse.com |ovo.novell.com | -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c1 Marcus Meissner <meissner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |meissner@suse.com --- Comment #1 from Marcus Meissner <meissner@suse.com> 2014-09-03 15:51:41 UTC --- I created one and added you to the maintainer list. when mirgating, only migrate things that are not used by others... ;) -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c2 Marcus Meissner <meissner@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |RESOLVED Resolution| |FIXED --- Comment #2 from Marcus Meissner <meissner@suse.com> 2014-09-03 16:00:06 UTC --- done -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c3 Greg Freemyer <Greg.Freemyer@gmail.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|RESOLVED |CLOSED --- Comment #3 from Greg Freemyer <Greg.Freemyer@gmail.com> 2014-09-03 12:12:25 EDT --- Can you help me understand your last comment and the word "used". What should I do with apps like "srm". I consider it a forensic tool (or a anti-forensic tool). Nothing "Requires: srm", but I suspect there are end-uses of openSUSE that use it when they want to securely delete a file. I did not add it to security, but I have been maintaining it for a couple years and I SR'ed it to factory a while back. A similar question for httrack. I first packaged it for security, but had not updated it recently. A couple weeks ago another user sent an SR to security which I accepted, so at least one other user is interested in it. On the other hand, there are no packages which "Require: httrack". === Is there a workflow (or just an email exchange) where I could confirm moves I'm unsure about with you? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c4 --- Comment #4 from Marcus Meissner <meissner@suse.com> 2014-09-03 16:18:51 UTC --- you can drop me emails. I thought more of python modules and libraries used by non-forensic stuff. But if its forensic related and other things do not depend, it can be moved here. httrack is not forensic, right? -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
https://bugzilla.novell.com/show_bug.cgi?id=894678 https://bugzilla.novell.com/show_bug.cgi?id=894678#c5 --- Comment #5 from Greg Freemyer <Greg.Freemyer@gmail.com> 2014-09-03 12:51:26 EDT --- For all packages I will checked the "Required by" setting and only move things that are only used by apps I maintain. For apps that are not clearly forensic and not "required by" anything I will send you an email. httrack will be the first package in need of clarification. I put it security in the first place because it is a recommended evidence preservation tool when the evidence comes from a website. wget and even Adobe Professional can also crawl a website and pull down an evidentiary copy. It is also used in penetration testing to allow a single pass over the website. Without it, the penetration tester might find himself repeatedly accessing a target website as he familiarizes himself with the the target company. That can raise suspicion if anyone is closely monitoring website traffic. With httrack, after the initial single pass the penetration tester just is viewing a local copy of the website as he conducts his research. Penetration testing DVDs such as Kali have httrack included on the DVD. So what is your thought: - move to security:forensics - leave in security - move to a different more appropriate repo -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com