1 |
-----BEGIN PGP SIGNED MESSAGE----- |
2 |
Hash: SHA1 |
3 |
|
4 |
Hello, |
5 |
|
6 |
I was browsing the hardened gentoo website and attempting to configure ACL |
7 |
and grSecurity in my kernel and of course have a few questions. |
8 |
|
9 |
1. What is the difference between the hardened kernel sources and compiling |
10 |
grSecurity and ACL support into the gentoo-sources? |
11 |
|
12 |
2. Are there any known options in grSecurity that break gentoo? The reason |
13 |
why I ask is because I attempted to follow the directions for enabling |
14 |
grSecurity and something I enabled broke devfs.. when booting it dies with |
15 |
some vfree() calls. |
16 |
|
17 |
3. My goal is to create a secure gentoo server. What is the best way to go |
18 |
about this? I orginialy just compiled a gentoo system to get it all working, |
19 |
then I got dns, mail and what not working.. barely.. Is it better to go |
20 |
"secure" from the beginning? (For example I noticed stuff about bootstrapping |
21 |
with ProPolice.. something I didn't do |
22 |
|
23 |
4. I don't know too much of the details of linux or security .. this stuff |
24 |
kind of confuses me. Don't kill me or anything.. but I am comming from a |
25 |
windows MFC / Win32API background. However I want to learn (and help if I |
26 |
can). I have a particular learning style though.. It seems the only way I |
27 |
can learn is "Here is how you do it, now here is why, and finnaly here is |
28 |
about 50 examples of how to do it" |
29 |
|
30 |
any guidence on grSecurity and such would be a great help. |
31 |
|
32 |
Thank you, |
33 |
Steve |
34 |
|
35 |
- -- |
36 |
Market share leadership is a tenuous thing, Mr. Gates: ask IBM ;-) |
37 |
|
38 |
-- Laurent Szyster |
39 |
-----BEGIN PGP SIGNATURE----- |
40 |
Version: GnuPG v1.2.3 (GNU/Linux) |
41 |
|
42 |
iD4DBQE//c5ACY3CQTSteGwRAidpAJUd9njQSM51jamuvMhIa8VsLiuJAJ9ckP4V |
43 |
UripZuTyHG/W3pcPUomSLA== |
44 |
=dJAt |
45 |
-----END PGP SIGNATURE----- |
46 |
|
47 |
|
48 |
-- |
49 |
gentoo-hardened@g.o mailing list |