Mailing List Archive

Solar
It was quite dissapointing to read you dissapointed mail.

Although I reported my success on the list previously, I want express my
respect to you and all other developers of the hardened gentoo project.I'm running a hardened gentoo server powered by hardened gcc and
grsecurity. I'm absolutely sure, that it would be an extremely hard task
to break in to that box.
Unfortunately I don't have the personal knowledge to help you in
development of the toolchain, because I'm only a medical doctor. A general
medical server is quite insecure in design - even machines cost a million
dollar(!). I couldn't stop setting up a stronhold of mine, which can
whitstand the attacks from outside coming through the university's fast,
underprotected network connection. Without following the gentoo way, I'm
sure, that I would have had very hard times. Using made things easy to
prepare.
I feel myself threatened now. All that I achieved during a few month seems
to tremble. The pie/pic/ssp stuff is an essential thing in the hardened
project. I don't want to run mplayer on my server. What sould I do now?
Should I move to Fedora Core (exec-shield, SELinux)?
Whatever the future will be, I wish you a nice development!
Regards,
Dwokfur

--
dr Tóth Attila, Radiológus Rezidens, 06-30-5962-962
Attila Toth MD, Radiology Resident, +36-30-5962-962



--
gentoo-hardened@gentoo.org mailing list
Re: Solar [ In reply to ]
On Sat, 2004-09-18 at 13:19, Tóth Attila wrote:
> It was quite dissapointing to read you dissapointed mail.
>
> Although I reported my success on the list previously, I want express my
> respect to you and all other developers of the hardened gentoo project.I'm running a hardened gentoo server powered by hardened gcc and
> grsecurity. I'm absolutely sure, that it would be an extremely hard task
> to break in to that box.
> Unfortunately I don't have the personal knowledge to help you in
> development of the toolchain, because I'm only a medical doctor. A general
> medical server is quite insecure in design - even machines cost a million
> dollar(!). I couldn't stop setting up a stronhold of mine, which can
> whitstand the attacks from outside coming through the university's fast,
> underprotected network connection. Without following the gentoo way, I'm
> sure, that I would have had very hard times. Using made things easy to
> prepare.
> I feel myself threatened now. All that I achieved during a few month seems
> to tremble. The pie/pic/ssp stuff is an essential thing in the hardened
> project. I don't want to run mplayer on my server. What sould I do now?

> Should I move to Fedora Core (exec-shield, SELinux)?
no

> Whatever the future will be, I wish you a nice development!

Don't panic yet..
So far I have been getting good feedback from some users and atleast one
potential developer in some mails off list. I plan to put a detailed
mail together in as few days and mail the interested parties and
hopefully assemble a larger more professional team so we can fully
continue to offer these types of technologies and continue to push fwd
together.

> Regards,
> Dwokfur
--
Ned Ludd <solar@gentoo.org>
Gentoo (hardened,security,infrastructure,embedded,toolchain) Developer