AlienCheck

This page is still work-in-progress!

AlienCheck is a system to do out-of-band verification of files. E.g. when retrieving some files via CVSup AlienCheck can help detect if the local files match the files at the master site. AlienCheck works by generating a list of checksums on the master site or on a trusted site which as secure access to the distributed files. The list of checksums are then distributed to the client which uses the checksums to verify that the local copy of the files hasn't been tampered with.

AlienCheck was originally meant to only check CVS repositories so that is currently the only thing which is supported, but since it possible to use the same technique for "normal" files that will be supported later.

Warning: AlienCheck is still in early development and should currently only be used by people who want to help test the system. It is almost certain that AlienCheck will report false positives.

The main script can be found at http://simon.nitro.dk/dist/aliencheck.sh (this is not a permanent location). This will be packaged normally at a later point when it's ready for more normal use.

The name, AlienCheck, was suggested by Pav Lucistnik and was adopted since it sounds much neater than the old one (OOBFV), and it is actually possibly to pronunce it. Thanks Pav! :-)

FreeBSD AlienCheck

Note: The following is still WIP and not yet fully set up as of 2007-02-04.

Currently Simon L. Nielsen is distributing sums for the FreeBSD CVS repository. These are distributed as the "freebsd-repo" collection from rsync://aliencheck.nitro.dk/aliencheck.