[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: stack protection



On Thu, 21 Aug 2003 19:13, Stefan Gybas wrote:
> However, ProPolice has not been ported to all architectures yet, see
> http://www.research.ibm.com/trl/projects/security/ssp/statuschart.html
> for details.

Not being ported to all architectures is not a problem IMHO.

Such stack protection should not be relied on, it's just there to make 
automated attacks much more difficult.  As i386 is the target for almost all 
of the automated attacks merely supporting i386 will do most of the good that 
such a tool can do.

As for Adamantix people helping out, they haven't even posted to this mailing 
list yet, so I have no great expectations for them to help in future.

-- 
http://www.coker.com.au/selinux/   My NSA Security Enhanced Linux packages
http://www.coker.com.au/bonnie++/  Bonnie++ hard drive benchmark
http://www.coker.com.au/postal/    Postal SMTP/POP benchmark
http://www.coker.com.au/~russell/  My home page



Reply to: