Re: Distributed audit daemon committed (was: svn commit: r243752 - in head: etc etc/defaults etc/mail etc/mtree etc/rc.d share/man/man4 usr.sbin usr.sbin/auditdistd (fwd))

From: Simon L. B. Nielsen <simon_at_FreeBSD.org>
Date: Sat, 1 Dec 2012 22:12:24 +0000
On 1 December 2012 21:06, Andreas Tobler <andreast-list_at_fgznet.ch> wrote:
> On 01.12.12 16:15, Robert Watson wrote:
>>
>> Dear all:
>>
>> I've now committed the build glue required to install the recently merged
>> Audit Distribution Daemon (auditdistd) contributed by the Pawel Dawidek, and
>> sponsored by the FreeBSD Foundation.  This allows individual hosts generating
>> audit trails to submit trails to a central audit server for review and safe
>> keeping.  Part of the goal is to ensure that a host submitting trail data
>> can't later modify the trails.  Pawel uses a variety of useful security- and
>> resilience-related features such as TLS, Capsicum, etc, in auditdistd.  As the
>> recent security incident in the FreeBSD.org cluster illustrated, having
>> reliable and detailed audit trails makes a big difference in forensic work,
>> and hopefully this will allow the FreeBSD Project (and our users) to do that
>> better in the future.
>
> Aehm, hope it is ok to 'complain' here.
>
> Happens when installing world.
>
> cd /export/devel/fbsd/head/src;
> /usr/obj/export/devel/fbsd/head/src/make.amd64/make -f Makefile.inc1
> LOCAL_MTREE= hierarchy
> cd /export/devel/fbsd/head/src/etc;
> /usr/obj/export/devel/fbsd/head/src/make.amd64/make distrib-dirs
> mtree -eU  -f /export/devel/fbsd/head/src/etc/mtree/BSD.root.dist -p /
> mtree -eU  -f /export/devel/fbsd/head/src/etc/mtree/BSD.var.dist -p /var
> mtree: line 22: unknown user auditdistd
> *** [distrib-dirs] Error code 1

Did you remember mergemaster -p before installworld?

-- 
Simon L. B. Nielsen
Received on Sat Dec 01 2012 - 21:12:26 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:40:32 UTC