Gentoo Archives: gentoo-server

From: kashani <kashani-list@××××××××.net>
To: gentoo-server@l.g.o
Subject: Re: [gentoo-server] Re: Ideas for a server profile?
Date: Fri, 03 Mar 2006 00:51:17
Message-Id: 44079275.4000606@badapple.net
In Reply to: Re: [gentoo-server] Re: Ideas for a server profile? by Lance Albertson
1 Lance Albertson wrote:
2 > Actually, that is the intended outcome since a virtual/httpd does not
3 > exist yet. If neither of the use flags are set, its next choice is
4 > lighthttpd. One of the limitations/hacks I had to do in the ebuild
5 > because of the lack of the virtual. If you feel it should be different,
6 > please file a bug in bugzilla and I'll take a look at it :-).
7 >
8
9 Hard to say. I don't consider that behavior broken, just different than
10 what I've grown to depend on. Also IIRC there was an explicit lack of
11 apache1 USE variables when apache2 was introduced which is why I ran
12 into the problem now. To get things to work the way they used to would
13 be to require apache2 and lighthttpd flags and assume apache1 in the
14 absence of either, but that seems retarded on some level.
15
16 In any case I added apache1 to my USE and am none the worse for the wear.
17
18 However any server profile won't be written in stone either and will
19 need to be changed as Gentoo changes. Personally I don't see much point
20 in creating a server profile that's too general to useful. I'd rather
21 spend time creating some documentation about setting up servers in
22 general. Something like.
23
24 arping, curl, fping, nmap, netcat, tcpdump, traceroute, tcptraceroute,
25 telnet-bsd, nessus, nikto
26 These same tools might not be such a good idea on a public server. Or
27 maybe it's not worth the hassle to deny an attacker an extra minute or
28 two in uploading his own tools when you likely waster 3-4 hours a year
29 of admin time by not having them. Or when an outage event occurs it is
30 worth the 2-3 minutes you'd save by having the right tools availible.
31
32 I think we can all argue the nuts and bolts forever, but some framework
33 for building your own might be more interesting. In full disclosure I've
34 rolled out 20 new servers in the last couple of months so I've got my
35 server profile pretty much refined... for me personally. Looking through
36 this thread I'd say that anyone using mine is only going to be happy 50%
37 of the time... in which case they should probably build their own. :)
38
39 kashani
40 --
41 gentoo-server@g.o mailing list