Active Topics

 


Reply
Thread Tools
qole's Avatar
Moderator | Posts: 7,109 | Thanked: 8,820 times | Joined on Oct 2007 @ Vancouver, BC, Canada
#21
THANK YOU javispedro! I can now chroot into my image!

But BOY is dmesg full of "verification failed (no reference hash)" error messages.
__________________
qole.org --- twitter --- Easy Debian wiki page
Please don't send me a private message, post to the appropriate thread.
Thank you all for your donations!
 

The Following 6 Users Say Thank You to qole For This Useful Post:
javispedro's Avatar
Posts: 2,355 | Thanked: 5,249 times | Joined on Jan 2009 @ Barcelona
#22
Originally Posted by qole View Post
But BOY is dmesg full of "verification failed (no reference hash)" error messages.
You can technically completely disable the validator by writing a 0 to
/sys/kernel/security/validator/enabled (once the module has been loaded, of course). That setting is also restored after a reboot.

Last edited by javispedro; 2011-08-10 at 01:46.
 

The Following 3 Users Say Thank You to javispedro For This Useful Post:
Posts: 1,746 | Thanked: 2,100 times | Joined on Sep 2009
#23
Why a binary module?

Just reading this and Aegis "self-destruct" makes me not want an N9. There's user-hostile then there's this nonsense.
 

The Following User Says Thank You to wmarone For This Useful Post:
qole's Avatar
Moderator | Posts: 7,109 | Thanked: 8,820 times | Joined on Oct 2007 @ Vancouver, BC, Canada
#24
That did it!
__________________
qole.org --- twitter --- Easy Debian wiki page
Please don't send me a private message, post to the appropriate thread.
Thank you all for your donations!
 

The Following 29 Users Say Thank You to qole For This Useful Post:
daperl's Avatar
Posts: 2,427 | Thanked: 2,986 times | Joined on Dec 2007
#25
You people are gods.
__________________
N9: Go white or go home
 

The Following 4 Users Say Thank You to daperl For This Useful Post:
hawaii's Avatar
Posts: 1,030 | Thanked: 792 times | Joined on Jun 2009
#26
Just in case anybody tries it, do not modify restok.conf and attempt an unsigned package install

/usr/sbin/enter_malf: Entering MALF state SECURITY Failed '/var/lib/aegis/restok/restok.conf' signature check

Follow instructions via javispedro's kernel module.
Attached Images
 
 

The Following 7 Users Say Thank You to hawaii For This Useful Post:
hawaii's Avatar
Posts: 1,030 | Thanked: 792 times | Joined on Jun 2009
#27
http://pastebin.com/x0LiTcDB

Looks like the WL1271_spi driver supports RFMON, but it's likely broken again ala wl1251. No support for live frame injection yet. Once kernels get up and running, mac80211 can be tossed on and then patched. This is high on my priority list along with FMTX.

If anybody has any project requests or wants to discuss something less "mainstream", please post up.

Last edited by hawaii; 2011-08-10 at 05:23.
 

The Following User Says Thank You to hawaii For This Useful Post:
Daneel's Avatar
Posts: 549 | Thanked: 698 times | Joined on Apr 2010
#28
Originally Posted by daperl View Post
You people are gods.
I don't understand at least half of this but i'm getting a tingling feeling in my tummy when i read it, so exciting!
 

The Following 3 Users Say Thank You to Daneel For This Useful Post:
Posts: 284 | Thanked: 161 times | Joined on Dec 2009
#29
how can i reload the call-ui without flashing, thats what i would like to know, what a pesky situation. and thanks hawaii for getting the ball rolling and javispedro for making sure to get a "hole" in one. well played
 
javispedro's Avatar
Posts: 2,355 | Thanked: 5,249 times | Joined on Jan 2009 @ Barcelona
#30
Originally Posted by hawaii View Post
Just in case anybody tries it, do not modify restok.conf and attempt an unsigned package install

/usr/sbin/enter_malf: Entering MALF state SECURITY Failed '/var/lib/aegis/restok/restok.conf' signature check
So THERE is a hash for restok.conf. However, it is not done via the in-kernel validator but rather via a specific check.

So, to bypass it... rm /var/lib/aegis/ps/Gs/files.tcb .
It will be recreated when you run dpkg again, but with the hashes updated.
 

The Following 13 Users Say Thank You to javispedro For This Useful Post:
Reply


 
Forum Jump


All times are GMT. The time now is 15:50.