Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
Where is the Security Association Database (SAD) stored?
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Kernel & Hardware
View previous topic :: View next topic  
Author Message
friction
Tux's lil' helper
Tux's lil' helper


Joined: 16 Sep 2002
Posts: 109

PostPosted: Fri Aug 20, 2004 9:00 am    Post subject: Where is the Security Association Database (SAD) stored? Reply with quote

The Security Association Database (SAD) and the Security Policy Database (SPD) are "in the kernel", according to every single link in Google.

But at SOME point it's stored in a file on the file system, but WHERE?

Why don't they keep it all in a text file? One of the real beauties of linux is that it's so easy to troubleshoot at a low level, because ultimately - if you really need to - you can boot off another hard drive and edit the files manually. You can't do that with Windows and it's monolithic Jet databases, which makes it a real pain - don't tell me Linux is heading down that path too!
Back to top
View user's profile Send private message
lblblb
Tux's lil' helper
Tux's lil' helper


Joined: 19 Jun 2003
Posts: 75

PostPosted: Fri Aug 20, 2004 11:50 pm    Post subject: Re: Where is the Security Association Database (SAD) stored? Reply with quote

friction wrote:
...You can't do that with Windows and it's monolithic Jet databases, which makes it a real pain - don't tell me Linux is heading down that path too!

What, you don't like the "one fubar'd (binary) file = one fubar'd system" model?, and "registry dust" cleaners, and such?

Sorry no useful info here -- just had to chime in with my $0.02. That design decision for microsoft is part of what gives i.t. geeks like me job security.
Back to top
View user's profile Send private message
Genone
Retired Dev
Retired Dev


Joined: 14 Mar 2003
Posts: 9625
Location: beyond the rim

PostPosted: Sat Aug 21, 2004 12:44 am    Post subject: Re: Where is the Security Association Database (SAD) stored? Reply with quote

friction wrote:
But at SOME point it's stored in a file on the file system, but WHERE?

You're sure on that? I don't know much about IPSEC but as far as I understand it from a little reading on Google the SAD/SPD is an internal kernel table that is edited with the setkey command.
Back to top
View user's profile Send private message
friction
Tux's lil' helper
Tux's lil' helper


Joined: 16 Sep 2002
Posts: 109

PostPosted: Sat Aug 21, 2004 4:35 am    Post subject: Re: Where is the Security Association Database (SAD) stored? Reply with quote

Genone wrote:
You're sure on that? I don't know much about IPSEC but as far as I understand it from a little reading on Google the SAD/SPD is an internal kernel table that is edited with the setkey command.


Well, unless it's reset every time you reboot - I guess I just assumed things set with setkey were persistent across reboots, and I'm not at my Gentoo box to try it.

If it's not, does Gentoo give you a nice way of storing persistent settings, ala the iptables init script?
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Kernel & Hardware All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum