On Thu, 2009-01-22 at 19:28 -0500, basile wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> 
> Hi everyone,
> 
> Let me respond to all in one email:
> 
> 
> 7v5w7go9ub0o wrote:
> > THANK YOU for taking the time to post this valuable information!
> > Thanks also for sharing your infectious energy with this mailing
> > list; it reinforces the importance of keeping hardened Gentoo
> > vital!!
> 
> Hardened Gentoo is *very* important and I think the team would appreciate
> knowing where their work ends up: Besides being the basis of Tin Hat,
> it is
> also the basis of another project of ours (tor-ramdisk) which uses a
> uclibc
> (not glibc) based hardened gentoo environment to securely house a tor
> relay.
> Three of our production servers at D'Youville College are hardened gentoo
> (virtual.dyc.edu, moodle.dyc.edu and project.dyc.edu) as are a couple of
> internal servers.  I use hardened gentoo when I teach my security course
> to demonstrate various hardening techniques.
> 
> Clearly, we are heavily invested users.  Yes, keep hardened Gentoo vital!
> 
> 
> Gordon Malm wrote:
> > I think Tin Hat is a cool project and they are more than welcome to
> >
> keep us
> > abreast of new releases, along with some short release notes.  In
> fact, I am
> > glad they do.  It is hardly spam.  Thanks Tin Hat peeps and keep up
> >
> the good
> > work!
> >
> > Gordon Malm (gengor)
> 
> Thanks Gordon.  On another note, I am wondering if you and the other
> team members
> have any thoughts about PaX/Grsecurity possibly being dropped
> upstream.  I hate
> to see harndened gentoo without it, but there may be no choice.


We have discussed this topic and our time is better spent on focusing on
the now vs worrying about the future. If/when projects start to stagnate
we will deal with those cross-roads when they are upon us.

-- 
Ned Ludd <[email protected]>
Gentoo Linux


Reply via email to