path: root/security/fiked
diff options
authorehaupt <ehaupt@FreeBSD.org>2005-12-17 04:15:06 +0800
committerehaupt <ehaupt@FreeBSD.org>2005-12-17 04:15:06 +0800
commit73649194aeace76e0d6580ba35a1d54487cc6fd4 (patch)
treea1b038073faebd2f075fbe864cbf0ea2db506ea7 /security/fiked
parent6946a2262e6d9f4f09170de9087721b4d5ad29c1 (diff)
Add, security/fiked, a fake IKE PSK+XAUTH daemon based on VPNC.
This is a fake IKE daemon supporting just enough of the standards and Cisco extensions to attack commonly found insecure Cisco PSK+XAUTH VPN setups. If you know the pre-shared key, also known as shared secret or group password, you can impersonate the VPN gateway in IKE phase 1, and learn XAUTH user credentials in phase 2. PR: 90372 Submitted by: Daniel Roethlisberger <daniel@roe.ch>
Diffstat (limited to 'security/fiked')
3 files changed, 61 insertions, 0 deletions
diff --git a/security/fiked/Makefile b/security/fiked/Makefile
new file mode 100644
index 000000000000..9f42acc62154
--- /dev/null
+++ b/security/fiked/Makefile
@@ -0,0 +1,49 @@
+# New ports collection makefile for: fiked
+# Date created: 2005-12-07
+# Whom: Daniel Roethlisberger <daniel@roe.ch>
+# $FreeBSD$
+PORTNAME= fiked
+CATEGORIES= security
+MASTER_SITES= http://dragon.roe.ch/bitsnpieces/fiked/ \
+ http://home.tiscalinet.ch/roe/fiked/
+MAINTAINER= daniel@roe.ch
+COMMENT= A fake IKE PSK+XAUTH daemon based on VPNC
+LIB_DEPENDS= gcrypt.13:${PORTSDIR}/security/libgcrypt
+BUILD_DEPENDS= libnet*>=1.1.2,1:${PORTSDIR}/net/libnet
+USE_BZIP2= yes
+MAKEFILE= GNUmakefile
+MAKE_ENV+= CC="${CC}"
+PLIST_FILES= bin/fiked
+MAN1= fiked.1
+.include <bsd.port.pre.mk>
+.if ${OSVERSION} < 500000
+BROKEN= "Does not compile on FreeBSD 4.x"
+ @${REINPLACE_CMD} -e 's|^\(CC\)=|\1?=|; s|=-g|=|' ${WRKSRC}/${MAKEFILE}
+ ${INSTALL_MAN} ${WRKSRC}/fiked.1 ${PREFIX}/man/man1/
+.if !defined(NOPORTDOCS)
+.include <bsd.port.post.mk>
diff --git a/security/fiked/distinfo b/security/fiked/distinfo
new file mode 100644
index 000000000000..8470b68d0003
--- /dev/null
+++ b/security/fiked/distinfo
@@ -0,0 +1,3 @@
+MD5 (fiked-0.0.2.tar.bz2) = d686f04ddd6da2826e8d2b1a3a7e4177
+SHA256 (fiked-0.0.2.tar.bz2) = ba76c76b0f790434873a7d70f27b796335eaea139d4eac08c1fac01c6c5efe92
+SIZE (fiked-0.0.2.tar.bz2) = 107751
diff --git a/security/fiked/pkg-descr b/security/fiked/pkg-descr
new file mode 100644
index 000000000000..dfc08d816f99
--- /dev/null
+++ b/security/fiked/pkg-descr
@@ -0,0 +1,9 @@
+This is a fake IKE daemon supporting just enough of the standards and Cisco
+extensions to attack commonly found insecure Cisco PSK+XAUTH VPN setups.
+If you know the pre-shared key, also known as shared secret or group password,
+you can impersonate the VPN gateway in IKE phase 1, and learn XAUTH user
+credentials in phase 2.
+Author: Daniel Roethlisberger <daniel@roe.ch>
+WWW: http://www.roe.ch/FakeIKEd