1 |
Ryan Tandy wrote: |
2 |
> Timothy A. Holmes wrote: |
3 |
>> At this point then, I am going to actually build a second box for snort |
4 |
>> perhaps using the hardened sources (I am not in the least comfortable |
5 |
>> with running hardened on a production box). |
6 |
> |
7 |
> Wrong. The correct sentiment should be "I am not in the least |
8 |
> comfortable with running NON-hardened on a production box". :) |
9 |
> |
10 |
> ESPECIALLY for network-accessible devices. |
11 |
|
12 |
While true the first time moving to hardened sources is "interesting" |
13 |
at minimum and downright painful at its worst. The time is worth it, but |
14 |
you will break and app or two as well as pull some hair out along the |
15 |
way depending on the complexity of your environment. However if you're |
16 |
building a new system do it now if possible rather than after you've got |
17 |
your applications working or you'll fall victim to the "don't fix what |
18 |
isn't broken" rule. :) |
19 |
|
20 |
kashani |
21 |
-- |
22 |
gentoo-user@g.o mailing list |