[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: checking system integrity

>>>>> "Manoj" == Manoj Srivastava <srivasta@debian.org> writes:

    Manoj> 	My solution to this eternal who shall watch the
    Manoj> watcher problem is to md5sum the database and the binary,
    Manoj> and detach-sign that file.  I verify the database and
    Manoj> binary at random times (basically, whenever I think about
    Manoj> it).

Also, I have heard there are algorithms that allow you to create a file
with the same md5sum, but different length[1].

Hence, it is not good enough just testing the md5sum, you need to
check the file size too.

[1] anyone got any good references for this?
Brian May <bam@debian.org>

Reply to: