Bookmark
SSL and TLS 1.0 No Longer Acceptable for PCI Compliance
blog.varonis.com/ssl-and-tls-1-0-no-longer-acceptable-for-pci-compliance/, posted 2016 by peter in communication networking security
The PCI Council says you must remove completely support for SSL 3.0 and TLS 1.0. In short: servers and clients should disable SSL and then preferably transition everything to TLS 1.2.
However, TLS 1.1 can be acceptable if configured properly. The Council points to a NISTpublication that tells you how to do this configuration.
Bookmark
Is there an Internet-of-Things vigilante out there? | Symantec Connect
www.symantec.com/connect/blogs/there-internet-things-vigilante-out-there, posted 2015 by peter in communication hardware linux networking security
Wifatch’s code does not ship any payloads used for malicious activities, such as carrying out DDoS attacks, in fact all the hardcoded routines seem to have been implemented in order to harden compromised devices. We’ve been monitoring Wifatch’s peer-to-peer network for a number of months and have yet to observe any malicious actions being carried out through it.
Bookmark
orrc/git-webhook-proxy
https://github.com/orrc/git-webhook-proxy, posted 2015 by peter in continuousdelivery development git networking software versioncontrol
Acts as a proxy for incoming webhooks between your Git hosting provider and your continuous integration server.
When a Git commit webhook is received, the repository in question will be mirrored locally (or updated, if it already exists), and then the webhook will be passed on to your CI server, where it can start a build, using the up-to-date local mirror.
Bookmark
Why your A grade SSL is outdated cryptography on Chrome
https://certsimple.com/blog/chrome-outdated-cryptography, posted 2015 by peter in howto networking security
So you've installed your certificate, it doesn't use SHA1, your preferred cipher suites use forward secrecy, RC4 is disabled and your site gets an 'A' rating in the SSL Labs handshake test.
Then someone visits your site in Chrome and notices the following:
Your connection to example.com is encrypted with obsolete cryptography.
Bookmark
Hyperfox HTTP/HTTPs traffic interceptor
https://hyperfox.org/, posted 2015 by peter in communication free networking opensource security software
Hyperfox is a security tool for proxying and recording HTTP and HTTPs communications on a LAN.
Hyperfox is capable of forging SSL certificates on the fly using a root CA certificate and its corresponding key (both provided by the user). If the target machine recognizes the root CA as trusted, then HTTPs traffic can be succesfully intercepted and recorded.
Bookmark
Introduction - Serf by HashiCorp
https://www.serfdom.io/intro/index.html, posted 2015 by peter in deployment free networking opensource software
Serf is a tool for cluster membership, failure detection, and orchestration that is decentralized, fault-tolerant and highly available. Serf runs on every major platform: Linux, Mac OS X, and Windows. It is extremely lightweight: it uses 5 to 10 MB of resident memory and primarily communicates using infrequent UDP messages.
Bookmark
Software | OpenDaylight
www.opendaylight.org/software, posted 2014 by peter in cloudcomputing communication free networking opensource software virtualization
OpenDaylight is an open platform for network programmability to enable SDN and NFV for networks at any size and scale. The community’s second release “Helium” comes with a new user interface and a much simpler and customizable installation process thanks to the use of the Apache Karaf container.
...
OpenDaylight software is a combination of components including a fully pluggable controller, interfaces, protocol plug-ins and applications. With this common platform both customers and vendors can innovate and collaborate in order to commercialize SDN- and NFV-based solutions.
Bookmark
Home | Open Platform for NFV (OPNFV)
https://www.opnfv.org/, posted 2014 by peter in communication free networking opensource software virtualization
Open Platform for NFV (OPNFV) is a new open source project focused on accelerating the evolution of Network Functions Virtualization (NFV). OPNFV will establish a carrier-grade, integrated, open source reference platform that industry peers will build together to advance the evolution of NFV and to ensure consistency, performance and interoperability among multiple open source components. Because multiple open source NFV building blocks already exist, OPNFV will work with upstream projects to coordinate continuous integration and testing while filling development gaps.
Bookmark
Making "NSA-Proof" Social Networking Mainstream | TechPresident
techpresident.com/news/wegov/24759/making-NSA-proof-social-networking-mainstream, posted 2014 by peter in communication fascism networking privacy social toread
When Edward Snowden exposed the scale and depth of the National Security Agency's surveillance programs, his findings led to another disheartening revelation: that our Internet has become too centralized. Webmail services like Yahoo and Google and social networks like Facebook and Twitter are convenient and efficient platforms, as well as easy to use, but they collect massive amounts of user data that can facilitate intelligence spying and other types of snooping. Meanwhile, securer methods of communication are often cumbersome and overly technical for the average user who would like to send an email without having to download and set up various software. Yet after Snowden’s leaks, an increasing demand for securer alternatives has led to the development of anti-surveillance products with an eye towards being user friendly.
That is certainly true for Miguel Freitas, a research engineer based in Rio de Janeiro, Brazil, who decided to create a decentralized alternative to Twitter to counter NSA spying and protect against shutdowns of social media sites; but it would also be “something that my grandmother could use,” Freitas tells techPresident.
Bookmark
ProxFree - Free Web Proxy | Maintain Privacy & Surf Anonymously
https://www.proxfree.com/, posted 2014 by peter in communication free networking privacy
ProxFree is a simple and completely free web proxy service. Perfect for those looking to bypass censorship restrictions and/or looking to browse the internet privately, anonymously and securely.
|< First < Previous 11–20 (90) Next > Last >|