Support Extended Master Secret Extension in ssl-enum-ciphers

2023-10-17 Thread Clemens Lang
Hello, (Re-sent because I was not subscribed and the list does not seem to accept mails from non-subscribers.) I’m trying to fix ssl-enum-ciphers with RHEL >= 9.2’s OpenSSL in FIPS mode, which now requires the extended master secret extension for a successful handshake. I opened a GitHub PR a

nmap to use with sudo (but prevent privilege escalation vectors)

2023-10-17 Thread spearph...@gmail.com
I'm trying to configure nmap to use with sudo without allowing privilege escalation. Managed to come up with several sudoers rules for it to be usable without allowing privilege escalation (e.g. using noexec, not allow scripts, etc). However, there is an issue with the "-iL" parameter, as this can