Re: Removing PF

2019-04-01 Thread Shawn Webb
anges be done in time for 6.6? I have no doubt > > that "pfctl -p /dev/bfp" can be made to work in time but for a truly > > performant firewall we will need bpf JIT. > > Don't think so -- JIT-less is the new hot. I'd rather see this new bpf pick up serverless functionali

Re: CVE-2018-3615, CVE-2018-3620, CVE-2018-3646

2018-08-15 Thread Shawn Webb
sponsibilities, received advanced notification, while certain operating systems vendors did not. But, again, this is just *speculation* at this point. ;) Thanks, -- Shawn Webb Cofounder and Security Engineer HardenedBSD Tor-ified Signal:+1 443-546-8752 Tor+XMPP+OTR:latt...@i

OpenBSD ASLR and the stack

2016-03-22 Thread Shawn Webb
, would OpenBSD appreciate a patch that implements true stack randomization + stack gap? Thanks, -- Shawn Webb HardenedBSD GPG Key ID: 0x6A84658F52456EEE GPG Key Fingerprint: 2ABA B6BD EF6A F486 BE89 3D9E 6A84 658F 5245 6EEE signature.asc Description: PGP signature