# AUTHOR , YEAR. # # neb , 2011. msgid "" msgstr "" "Project-Id-Version: Fedora Release Notes\n" "POT-Creation-Date: 2011-08-17T10:05:23\n" "PO-Revision-Date: 2011-05-03 22:18+0000\n" "Last-Translator: zoglesby \n" "Language-Team: Tamil \n" "MIME-Version: 1.0\n" "Content-Type: text/plain; charset=UTF-8\n" "Content-Transfer-Encoding: 8bit\n" "Language: ta\n" "Plural-Forms: nplurals=2; plural=(n != 1)\n" #. Tag: title #, no-c-format msgid "Security" msgstr "பாதுகாப்பு" #. Tag: para #, no-c-format msgid "" "This section describes the security changes and enhancements available in " "Fedora 15." msgstr "" #. Tag: title #, no-c-format msgid "Dynamic Firewall" msgstr "" #. Tag: indexterm #, no-c-format msgid "FirewallD" msgstr "" #. Tag: indexterm #, no-c-format msgid "Dynamic Firewall" msgstr "" #. Tag: indexterm #, no-c-format msgid "system-config-firewall" msgstr "" #. Tag: para #, no-c-format msgid "" "Fedora 15 adds support for the optional firewall daemon " "(FirewallD), providing a dynamic firewall management with" " a D-Bus interface." msgstr "" #. Tag: para #, no-c-format msgid "" "The previous firewall model with system-config-firewall, " "was static and required a full firewall restart for all changes, even simple" " ones. This resulted in termination of filtered connections. " "Firewalld can modify the firewall dynamically and no " "firewall recreation is needed. At this stage, it supports iptables, " "ip6tables and ebtables. In Fedora 15 a simple tray applet shows the firewall" " state, and firewall services can be enabled and disabled." msgstr "" #. Tag: para #, no-c-format msgid "" "For more details, visit the Fedora wiki pages, https://fedoraproject.org/wiki/Features/DynamicFirewall" " and https://fedoraproject.org/wiki/Features/FirewallD/" " ." msgstr "" #. Tag: title #, no-c-format msgid "FreeIPA 2.0" msgstr "" #. Tag: indexterm #, no-c-format msgid "FreeIPA" msgstr "" #. Tag: indexterm #, no-c-format msgid "Kerberos" msgstr "" #. Tag: indexterm #, no-c-format msgid "NTP" msgstr "" #. Tag: indexterm #, no-c-format msgid "DNS" msgstr "" #. Tag: indexterm #, no-c-format msgid "LDAP" msgstr "" #. Tag: indexterm #, no-c-format msgid "X.509" msgstr "" #. Tag: para #, no-c-format msgid "" "FreeIPA is an integrated security information management solution combining " "Linux (Fedora), 389 (formerly known as Fedora Directory Server), MIT " "Kerberos, NTP, DNS. It consists of a web interface and command-line " "administration tools." msgstr "" #. Tag: para #, no-c-format msgid "Features of FreeIPA v2.0 include:" msgstr "" #. Tag: para #, no-c-format msgid "Centralized authentication via Kerberos or LDAP" msgstr "" #. Tag: para #, no-c-format msgid "Identity management for users, groups, hosts and services" msgstr "" #. Tag: para #, no-c-format msgid "Pluggable and extensible framework for UI/CLI" msgstr "" #. Tag: para #, no-c-format msgid "Rich CLI" msgstr "" #. Tag: para #, no-c-format msgid "Web-based User Interface" msgstr "" #. Tag: para #, no-c-format msgid "Server X.509 v3 certificate provisioning capabilities" msgstr "" #. Tag: para #, no-c-format msgid "Managing host identities including grouping hosts" msgstr "" #. Tag: para #, no-c-format msgid "" "Defining host-based access control rules that will be enforced on the client" " side by the IPA back end for SSSD" msgstr "" #. Tag: para #, no-c-format msgid "Serving netgroups based on user and host objects stored in IPA" msgstr "" #. Tag: para #, no-c-format msgid "Serving sets of automount maps to different clients" msgstr "" #. Tag: para #, no-c-format msgid "Finer-grained management delegation" msgstr "" #. Tag: para #, no-c-format msgid "Group-based password policies" msgstr "" #. Tag: para #, no-c-format msgid "Centrally-managed SUDO" msgstr "" #. Tag: para #, no-c-format msgid "Automatic management of private groups" msgstr "" #. Tag: para #, no-c-format msgid "Compatibility with broad set of clients" msgstr "" #. Tag: para #, no-c-format msgid "Painless password migration" msgstr "" #. Tag: para #, no-c-format msgid "Optional integrated DNS server managed by IPA" msgstr "" #. Tag: para #, no-c-format msgid "" "Optional integrated Certificate Authority to manage server certificates " "managed by IPA" msgstr "" #. Tag: para #, no-c-format msgid "Can act as NIS server for legacy systems" msgstr "" #. Tag: para #, no-c-format msgid "Supports multi-server deployment based on the multi-master replication" msgstr "" #. Tag: para #, no-c-format msgid "User and group replication with MS Active Directory" msgstr "" #. Tag: para #, no-c-format msgid "" "For all details please refer to http://www.freeipa.org/." msgstr "" #. Tag: title #, no-c-format msgid "OpenSCAP" msgstr "" #. Tag: indexterm #, no-c-format msgid "OpenSCAP" msgstr "" #. Tag: indexterm #, no-c-format msgid "SCAP" msgstr "" #. Tag: indexterm #, no-c-format msgid "OVAL" msgstr "" #. Tag: indexterm #, no-c-format msgid "XCCDF" msgstr "" #. Tag: indexterm #, no-c-format msgid "secstate" msgstr "" #. Tag: indexterm #, no-c-format msgid "firstaidkit" msgstr "" #. Tag: para #, no-c-format msgid "" "First introduced in Fedora 14, OpenSCAP is a set of open " "source libraries providing an easier path for integration of the SCAP line " "of standards, managed by NIST and created to provide a standardized approach" " to maintaining the security of enterprise systems, such as automatically " "verifying the presence of patches, checking system security configuration " "settings, and examining systems for signs of compromise." msgstr "" #. Tag: para #, no-c-format msgid "" "In Fedora 15, openscap, the set of open source libraries " "enabling integration of the SCAP line of standards, has been upgraded from " "version 0.6.3 to 0.6.8. During these development stage there has been " "introduced full support for perl regular expression by default, OVAL float " "type support, XSL transformation improvements and Dublin Core support, added" " OVAL schemas version 5.6 and improved XCCDF reporting." msgstr "" #. Tag: para #, no-c-format msgid "" "secstate, the Security State Configuration Tool, has been" " rebuilt in Fedora 15 against version 0.4.1." msgstr "" #. Tag: para #, no-c-format msgid "" "firstaidkit, the System Rescue Tool that automates simple" " and common system recovery tasks, has been upgraded from 0.2.17 to version " "0.2.18." msgstr "" #. Tag: para #, no-c-format msgid "" "For more information visit this page: http://www.open-scap.org/page/Main_Page ." msgstr "" #. Tag: title #, no-c-format msgid "authoconfig ecryptfs" msgstr "" #. Tag: indexterm #, no-c-format msgid "eCryptfs" msgstr "" #. Tag: indexterm #, no-c-format msgid "authconfig" msgstr "" #. Tag: para #, no-c-format msgid "" "Fedora 15 brings in improved support for eCryptfs, a stacked cryptographic " "filesystem for Linux. Now when a ecryptfs user logs in, " "authconfig will automatically mount his private " "encrypted part of the home directory." msgstr "" #. Tag: para #, no-c-format msgid "" "For details please refer to the wiki page " "https://fedoraproject.org/wiki/Features/EcryptfsAuthConfig ." msgstr "" #. Tag: title #, no-c-format msgid "setroubleshoot" msgstr "" #. Tag: indexterm #, no-c-format msgid "setroubleshoot" msgstr "" #. Tag: para #, no-c-format msgid "" "The user interface of setroubleshoot has been redesigned " "to make it easier to diagnose SELinux problems. In the current " "setroubleshooter the \"best\" match is returned for a solution to the " "customer. In the new redesign, all matches will be returned. For example if " "samba tried to read content that it is not allowed, we would like to tell " "the admin that he could label the content samba_share_t " "or he could set up SELinux to allow samba to share all content Read Only, or" " Read Write, or samba should not be trying to read this content, it could be" " a bug or an attack." msgstr "" #. Tag: para #, no-c-format msgid "" "The interface has also been simplified with easier to explain definitions, " "like" msgstr "" #. Tag: screen #, no-c-format msgid "" "\n" "If you want samba to share the entire system read/only, then \n" "you need to tell SELinux system about this, by setting the \n" "samba_export_all_ro boolean. \n" "\n" "Execute the following command as root.\n" "\n" " setsebool -P samba_export_all_ro=1 \n" msgstr "" #. Tag: title #, no-c-format msgid "Remove setuid" msgstr "" #. Tag: indexterm #, no-c-format msgid "setuid" msgstr "" #. Tag: para #, no-c-format msgid "" "Fedora 15 removes setuid applications and instead " "specifically assigns the capabilities required by an application, modifing " "the spec files of most applications that include a setuid application to " "remove the setuid flag and change to file capabilities." msgstr "" #. Tag: para #, no-c-format msgid "" "Please refer to https://fedoraproject.org/wiki/Features/RemoveSETUID" " for all details." msgstr ""