> -----Original Message-----
> From: Ryan Tandy [mailto:[EMAIL PROTECTED]
> Sent: Wednesday, May 31, 2006 2:11 PM
> To: gentoo-user@lists.gentoo.org
> Subject: Re: [gentoo-user] Reconstructing a Gentoo Installer Computer
> 
> Timothy A. Holmes wrote:
> > At this point then, I am going to actually build a second box for
snort
> > perhaps using the hardened sources (I am not in the least
comfortable
> > with running hardened on a production box).
> 
> Wrong.  The correct sentiment should be "I am not in the least
> comfortable with running NON-hardened on a production box". :)
> 
> ESPECIALLY for network-accessible devices.
> --
> gentoo-user@gentoo.org mailing list

[Timothy A. Holmes] 

Randy:

That may be, however, I have seen far to many complaints about
instability in the hardened systems to be comfortable using them in a
production environment.  Another user here in my area is working to
change my mind, but at this point, unless something changes
dramatically, hardened in my mind is a specialty subset for very
isolated applications that are very very crash tolerant.  The problem in
my mind is that if the system is so unstable that it will not properly
function with a major component like X, I am worried that it may prove
unstable with other applications as well.  It seems quite often that I
see messages going past someone has had a problem with hardened and more
often then not, these are fairly critical problems -- while it may be
that hardened sources are fine, I have high doubts about them, and
specifically their stability.  I realize that this topic has the
potential to very quickly become a flame fest, and I have no desire for
this to happen, but at the same time, I cant risk a critical system on
unstable sources either.  I am open to the possibility of using them,
BUT, for now it will be in parallel with sources that I KNOW work
correctly.  I cant risk our network to be part of an experiment.


Timothy A. Holmes
IT Manager / Network Admin / Web Master / Computer Teacher
 
Medina Christian Academy
A Higher Standard...
 
Jeremiah 33:3
Jeremiah 29:11
Esther 4:14


-- 
gentoo-user@gentoo.org mailing list

Reply via email to