(GalaxyMaster | 8 Jan 2007 21:32

Re: Openwall and openvz?

Zenny,

I'm CC'ing owl-users <at>  list since it's where Owl is usually discussed.

On Mon, Jan 08, 2007 at 07:29:22AM -0500, garbytrash <at> gmail.com wrote:

> I came to learn about openwall stuff from your posting. Thanks for
> sharing. OpenVZ works with 2.6 kernels whereas openwall2.0 only supports
> 2.4 kernels alone.

Good to know that my posting has attracted more people to our project :).

Although Owl currently supports only 2.4 it isn't hard to rebuild it
against 2.6 headers -- at least me (from Openwall team) is doing these
builds for our current branch.  However, it's known to work under OpenVZ
even without the recompilation process.

> Could you share how you accomplished the task and how did you create
> a openwall ostemplate for VEs?

If you want to start with a Owl-enabled VEs right away, you can prepare
a custom template yourself.  This is quite easy.  The rough plan is:

1. Download Owl and install in somewhere, say, /owl.

   a. download from ftp.ru.openwall.com/pub/Owl/2.0-stable (or from the
      any nearest mirror) the following files/directories:

        native.tar.gz - this file contains the build/install environment
        i386/RPMS - this directory contains the precompiled packages
(Continue reading)

(GalaxyMaster | 11 Jan 2007 23:42

updated contrib package: Asterisk 1.4.0

Hello,

I've just uploaded an updated package for Asterisk to
ftp.ru.openwall.com:

lftp ftp.ru.openwall.com:/pvt/galaxy/Owl/contrib> ls
-rw-r--r--    1 ftp      ftp      11815604 Jan 11 22:33 asterisk-1.4.0-owl_add1.i386.rpm
-rw-r--r--    1 ftp      ftp      18707466 Jan 11 22:32 asterisk-1.4.0-owl_add1.src.rpm
-rw-r--r--    1 ftp      ftp        119269 Jan 11 22:33 asterisk-devel-1.4.0-owl_add1.i386.rpm
lftp ftp.ru.openwall.com:/pvt/galaxy/Owl/contrib>

This package should be considered as alpha since it requires the
Internet connection during the build (sometimes).

P.S. I'd like to know the mechanism of updating the contrib directory
since it's not clear now and, perhaps, this might stop the prospective
contributor to share their packages with the rest of the Owl community.

--

-- 
(GM)

(GalaxyMaster | 12 Jan 2007 03:29

updated contrib package: PostgreSQL 8.2.1

Hello,

I've uploaded an updated (alternative) package for PostgreSQL 8.2.1 to
ftp.ru.openwall.com/pvt/galaxy/Owl/contrib/ .  The spec file of this
package is highly tweaked to allow users to rebuild the package flexibly
without changing the spec file itself.

This package should be considered as an alpha package.  I expect to
release another update soon.  One of the missing features is the control
script for PostgreSQL (this script will allow to grant/revoke rights
to/from DB admins on the PostgreSQL data directory).  The additional
testing is needed before this package leaves the alpha stage.

During the packaging I have contacted the PostgreSQL developers several
times and some bugs (mainly in the documentation) were fixed.  More bugs
were spotted and need to be fixed/reported. 

--

-- 
(GM)

Solar Designer | 13 Jan 2007 04:53
Favicon

Re: updated contrib package

On Fri, Jan 12, 2007 at 01:42:28AM +0300, (GalaxyMaster) wrote:
> P.S. I'd like to know the mechanism of updating the contrib directory
> since it's not clear now and, perhaps, this might stop the prospective
> contributor to share their packages with the rest of the Owl community.

Right now, you have to go via a maintainer for this directory - this
would be Andreas Ericsson or me.  However, I think it's best to post
proposals for changes to the contrib directory (new or updated packages)
to this mailing list, addressing your messages to Andreas.  This might
encourage others to contribute as well.

Are you proposing that we place your updated Asterisk and PostgreSQL
packages in contrib right away?  I notice that the Asterisk package is
named appropriately (Release: owl_add1), but the PostgreSQL one is not.

Thanks,

--

-- 
Alexander Peslyak <solar at openwall.com>
GPG key ID: 5B341F15  fp: B3FB 63F4 D7A3 BCCC 6F6E  FC55 A2FC 027C 5B34 1F15
http://www.openwall.com - bringing security into open computing environments

(GalaxyMaster | 13 Jan 2007 05:22
Favicon

Re: updated contrib package

On Sat, Jan 13, 2007 at 06:53:04AM +0300, Solar Designer wrote:

> Are you proposing that we place your updated Asterisk and PostgreSQL
> packages in contrib right away?  I notice that the Asterisk package is
> named appropriately (Release: owl_add1),

I was granted the permission to replace the Asterisk package.
Therefore, I used the proper Release tag.  So yes, please place Asterisk
to the contrib directory.

> but the PostgreSQL one is not.

This package (as well as other 10-20 packages which are to be announced
soon) is maintained by me for my projects. It has a quite complicated
spec file and I don't want to spend more time on "cleaning" the spec
files to be compatible with the Owl convention for the spec files.
Actually, my packages are compatible with the convention except the
following:

1. they are heavily using the '--with ' and '--without' rpmbuild options
   (these are implemented through libpopt and are supported by our RPM).

2. %buildroot and other macros are quoted in the commands.

3. a typical SRPM produce a lot of small sub-packages (to be able to
   install only those parts which are needed).

Moreover, the PostgreSQL is in alpha stage now, I'm still applying
changes to the spec file and am producing some patches.  I also need to
do more testing for different build options.  Currently I have checked
(Continue reading)

Solar Designer | 13 Jan 2007 06:17
Favicon

Owl-current 2007/01/09 ISO

Hi,

The Owl build environment has been enhanced to automate the generation
of ISO-9660 images of Owl bootable CDs.  This should enable us to put out
updated ISOs of Owl-current more often, and we have just made one
available under /pub/Owl/current/iso on the FTP mirrors:

	http://www.openwall.com/Owl/DOWNLOAD.shtml

Please note that this ISO requires 700 MB media.  We're going to make
these fit onto 650 MB CDs again before the next release.

The following packages have been significantly updated since the 2.0
release, listed in order of first change: tar, bash, coreutils, sed,
iptables, John the Ripper, Nmap, GnuPG, Postfix, setarch, netlist,
gettext, db4, lftp, vixie-cron, Perl, acct, readline, chkconfig, vsftpd,
BIND, bison, libtool, make, Linux-PAM, e2fsprogs, which, automake,
patchutils, hdparm, Mutt, OpenSSL, gpm, gzip, the DHCP suite, OpenSSH,
screen, texinfo, RPM, the installer (owl-setup), and the Linux kernel.
The following new packages have been added: smartmontools and mkisofs.
Additionally, with the updated build environment (that is a part of Owl
as released to the public), Owl users will be able to generate their own
Owl ISOs.  As usual, these changes are documented here:

	http://www.openwall.com/Owl/CHANGES-current.shtml

This build environment update, as well as most package updates, is due
to work by Dmitry V. Levin.  Thank you, Dmitry!  Other major package
updates were made by (GalaxyMaster), Andrey V. Stolyarov a.k.a. Croco
(further work on the installer), Juan M. Bello Rivas (the DHCP suite),
(Continue reading)

Solar Designer | 13 Jan 2007 06:52
Favicon

Re: updated contrib package

On Sat, Jan 13, 2007 at 07:22:04AM +0300, (GalaxyMaster) wrote:
> I was granted the permission to replace the Asterisk package.
> Therefore, I used the proper Release tag.  So yes, please place Asterisk
> to the contrib directory.

OK, it's there (will propagate to the mirrors soon).  Thank you!

Regarding some other packages:

> Actually, my packages are compatible with the convention except the
> following:
...

Well, the quality requirements for contrib are much more relaxed
compared to the base Owl system - in fact, they're unspecified. ;-)
While it is highly preferable that all Owl contrib packages also follow
our conventions (as specified in Owl/doc/CONVENTIONS), this is not
strictly required.

--

-- 
Alexander Peslyak <solar at openwall.com>
GPG key ID: 5B341F15  fp: B3FB 63F4 D7A3 BCCC 6F6E  FC55 A2FC 027C 5B34 1F15
http://www.openwall.com - bringing security into open computing environments


Gmane