Gentoo Archives: gentoo-hardened

From: Jan Klod <janklodvan@×××××.com>
To: gentoo-hardened@l.g.o
Subject: [gentoo-hardened] Updates: a way too simplified security question I am asking anyway
Date: Wed, 20 Aug 2008 18:15:05
Message-Id: 200808202114.57420.janklodvan@gmail.com
In Reply to: Re: [gentoo-hardened] Tin Hat memory requirements? by Natanael Copa
1 Hello,
2 some people in gentoo forum made me ask this one: it is supposed, that regular
3 updates of system is a wise thing to do, but, excuse me, ... those bugs and
4 holes are there before someone say "update them" -- so do you agree, nowdays
5 Linux is never safe?
6 OpenBSD has its own slogan about only very few remote holes in long time -- so
7 it makes an impression, I can install an OpenBSD machine and let it do it's
8 job.
9 Can anyone crash my impression about OpenBSD (and is it still alive enough, by
10 the way?)?
11 How about hardened gentoo in this regard (create system for few, specific
12 purposes and leave it for years without damn update hustle)?
13
14 I realize, this is "in general", but the question is about software writing
15 style (think when write it or wait for someone to find what is wrong) and
16 ways to protect from bugs (like overflows etc) in software.
17
18 In ideal world, updates are necessary only to get software, that has new
19 functions -- do we seam to approach it?
20
21 Jan

Replies