[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Secure Linux kernel package?



Amos Shapira <amos@gezernet.co.il> wrote:
> I finally got around to install a secure linux kernel (2.0.35 +
> patches) on one of my servers and so far (5 days) it seems to run
> great.  It is claimed to increase system security mainly by making the
> stack unexecutable and limiting links in sticky directories (designed
> to make /tmp exploits harder).
...
> Are there any thought on making this part of the standard kernel or
> providing an alternative way to install it? (either as a patch or a
> full kernel source?)

The only security provided by this patch derives from the fact that it's
not commonly deployed.  If it were put in the standard kernel it would
lose all value.

-- 
Raul


Reply to: