Hello,

Here is a new port for certspotter. This needs a change in user.list for the daemon user.
Tested on amd64.

Cert Spotter is a Certificate Transparency log monitor from SSLMate that alerts you when an SSL/TLS certificate is issued for one of your domains. Cert Spotter is easier to use than other open source CT monitors, since it does not require a database. It's also more robust, since it uses a special certificate parser that ensures it won't miss certificates.

You can use Cert Spotter to detect:

Certificates issued to attackers who have compromised your DNS and are redirecting your visitors to their malicious site. Certificates issued to attackers who have taken over an abandoned sub-domain in order to serve malware under your name. Certificates issued to attackers who have compromised a certificate authority and want to impersonate your site. Certificates issued in violation of your corporate policy or outside of your centralized certificate procurement process.

Best Regards

Attachment: certspotter.tar.gz
Description: application/gzip

Index: user.list
===================================================================
RCS file: /cvs/ports/infrastructure/db/user.list,v
retrieving revision 1.430
diff -u -p -r1.430 user.list
--- user.list	15 Aug 2023 15:54:30 -0000	1.430
+++ user.list	25 Oct 2023 07:15:08 -0000
@@ -402,3 +402,4 @@ id  user		group		port
 891 _kiwix-serve	_kiwix-serve	www/kiwix/kiwix-tools
 892 _shiori		_shiori		www/shiori
 893 _azorius		_azorius	www/azorius
+894 _certspotter	_certspotter	security/certspotter

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to