Category Archives: pgp

The blog was down yesterday

The brief outage was due to a scheduled move of the servers to a separate rack and subnet dedicated to our work with the Center for Information Assurance & Cybersecurity (ciac) at the University of Washington Bothell (uwb), and a11y.com … Continue reading

Posted in 19.34 RCW, abuse, ajax, asterisk, auditing, BIG-IP VE 11.2, brctl, C.J. Insider, centos, Citrix Xen, colliertech, cryptography, css, debian, dns, Eating CenturyLink's Lunch, ESXi, F5, Free Software, html, investment, javascript, kerberos, kvm, libvirt, linux, LSI, lvm, mediawiki, MITRE, mysql, network neutrality, network saturation, Networking, NIST, nsa, NVD, open source, PeRC, perl, pgp, powerconnect, poweredge, PRCCDC, procurve, proliant, python, qemu, quagga, RADIUS, rate limiting, rumor mill, security, SELinux, shorewall, spam, squeeze, storage, Telephony, tls, tmm, traffic shaping, virtualization, WanJet 500, washington, web 2.0, wheezy, x509, xen | Leave a comment

You might on occasion confuse us with professionals

If we keep this up, you might.

Posted in 19.34 RCW, Academia, amateur, auditing, centos, colliertech, debian, Eating CenturyLink's Lunch, ESXi, Free Software, government, Hardware, investment, kerberos, kvm, LD1, libvirt, linux, microsoft, MITRE, Natural Language Processing, NIST, nsa, open source, pgp, security, SELinux, shorewall, Software, squeeze, storage, virtualization, x509, xen | 3 Comments

NIST::NVD::Store::SQLite3 1.00.00

It’s been released. Use this with NIST::NVD 1.00.00 and you will be able to perform immediate look-ups of CVE and CWE data given a CPE URN. For instance: cjac@foxtrot:/usr/src/git/f5/NIST-NVD-Store-SQLite3$ perl Makefile.PL ; make ; make test ; cjac@foxtrot:/usr/src/git/f5/NIST-NVD-Store-SQLite3$ perl -MNIST::NVD::Query … Continue reading

Posted in 19.34 RCW, auditing, Databases, debian, Eating CenturyLink's Lunch, F5 Networks, Free Software, git, government, MITRE, Networking, NIST, NVD, open source, perl, pgp, security, Software, SQLite, Uncategorized, wheezy, work | Leave a comment

NIST::NVD 1.00.00

I’m leaving myself some room for bug fixes. It works for us in house. I would love to help others to give it a try. especially those who could benefit from making nearly immediately answered queries to the NIST’s NVD … Continue reading

Posted in 19.34 RCW, auditing, Berkeley DB, Databases, debian, Eating CenturyLink's Lunch, F5, feds, Free Software, linux, MITRE, network neutrality, Networking, NIST, NIST, NVD, open source, performance, perl, pgp, rate limiting, security, Software, squeeze, Telephony, washington, work | Leave a comment

Currency platform superior to US Federal Reserve Bank

Should I recommend that Software in the Public Interest implement a monetary stack with the stated purpose of replacing the federal reserve system? We would have to publish the source code, of course, and the transaction db would need to … Continue reading

Posted in 19.34 RCW, C.J. Insider, Databases, debian, feds, frb, Free Software, kerberos, network neutrality, Networking, NIST, open source, pgp, PRCCDC, RADIUS, security, SELinux, shorewall, Software, tls, x509 | 1 Comment

pki via IPv4 is back online

It turns out I didn’t have IP forwarding turned on in my shorewall config and so DNAT wasn’t working. Oops. You should be able to get to the HKP, ntp, RADIUS and kerberos servers now via IPv4. IPv6 was working … Continue reading

Posted in 19.34 RCW, Berkeley DB, colliertech, cryptography, Databases, debian, Free Software, kerberos, linux, Networking, perl, pgp, RADIUS, security, shorewall, Software, virtualization, xen | 1 Comment

Replaced hypervisor

The system which was hosting this blog had a tendency to go down every few days. I swapped it out for a spare yesterday. Let’s see if it stays up. The hypervisor hosts this web server, a mysql server and … Continue reading

Posted in blog, C.J. Insider, colliertech, debian, Hardware, linux, mysql, Networking, pgp, proliant, security, virtualization, xen | Leave a comment

Bitcoin WoT using PGP/SKS

There was recently a post to the sks list prompting discussion regarding the use of PGP and SKS as a distributed web of trust for an alternative currency system called “Bitcoin.” This reminds me of a project I worked on … Continue reading

Posted in 2003, C.J. Insider, cryptography, finance, Free Software, pgp, politics, security, washington | Tagged | Leave a comment

And with that, the keyserver is back online

http://keyserver.colliertech.org:11371/pks/lookup?search=0xBA27A83C&op=vindex Go go gadget interwebs. Now to sync back up and get into good standings on the status page.

Posted in Berkeley DB, colliertech, Databases, Free Software, linux, Networking, pgp, security, xen | Leave a comment

Filing to become a licensed CA

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

All Operative Personnel employed by Collier Technologies LLC, known
here as the Certification Authority or CA, must also be licensed as
notaries public by the local government where they reside during any
act performed on behalf of the CA.

In addition to passing the Washington State Operative Personnel Exam,
all OPs employed by the CA will demonstrate their proficiency by
a) creating a request for issuance as described in 19.34.210§1
RCW, known here as a Certificate Signing Request or CSR; and
b) signing CSR from (a) with a private key issued by the
Certification Authority; and
c) publishing the public key corresponding to the CSR signed in
(b) in a recognized repository as defined by 19.34.400 RCW

While holding the position of Operative Personnel for the CA, the OP
will
a) utilize the private key corresponding to the CSR presented
during the demonstration of proficiency exclusively
b) not use the private key referenced in (a) for purposes other
than those performed on behalf of the CA.

All private key data controlled by the CA and all Operative Personnel
must be
a) stored on a solid-state device; and
b) kept within a locked safe except while in use by OP acting on
behalf of the CA.

All solid-state devices containing private key data controlled by the
CA and all Operative Personnel may only be used
a) on a Trustworthy system, as defined in 19.34.020§43 RCW; and
b) with a system which remains always disconnected from any
computer network
—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkwmPOMACgkQXKBS0hdr6UYPTwCglr89VbTlw/wPuLqihaduw8Cw
z1gAnjwiDx47FTInVHBo9bo9VsVn/IDl
=9oar
—–END PGP SIGNATURE—–
Continue reading

Posted in colliertech, cryptography, debian, Free Software, government, investment, linux, pgp, security, tls, work, x509 | Leave a comment