[ .. ]

--- === ---
*** didentd ***
--- === ---

overview

didentd is a modular RfC1423 (identd) server for FreeBSD and Linux written with security in mind. The Server normally runs chrooted under /proc/net on an unprivileged id.
Normally didentd does not send an username but an encrypted audit token to the client. This token contains all information about the requested connection:

If a remote admin has a complaint about something from your machine he can send this audit token back to you, you can pipe it through didentd-decrypt and find out which user did the connection. didentd-decrypt outputs all the information from the audit token. So you can have the benefit of ident without revealing internal information from your system.

There is also didentd-name which is a server returning the username of the uid owning the requested connection. This is the classic ident approach.

didentd-static is a server which delivers a fixed reply defined by the administrator to every request.

status

didentd with IPv4 is stable and in production for about two years. Support for IPv6 is unstable - it must be even considered broken. didentd 0.2 works on Linux with the /proc filesystem and FreeBSD 3.0 or above. Documentation still needs updates.

downloads

57dcf69b4a3dce6324e14aa29938ba13  didentd-0.2.tar.gz
db7d174abb0f0297b9bb488ff79dbaf4  didentd-0.1.tar.gz
Snapshots can be found at http://c0re.23.nu/c0de/snap/.

notes

Other implementations of identd I'm aware of:

Hacked by Doobee R Tzeck, hackers@c0re.23.nu
Last modified: Wed Dec 5 00:21:01 CET 2001