Exploit Mitigation Techniques: an Update After 10 Years (by Theo) http://tech.yandex.com/events/ruBSD/2013/talks/103/
An OpenBSD talk by Michael Lucas https://www.youtube.com/watch?v=BXPV3vJF99k
141–150 of 415 posts
Exploit Mitigation Techniques: an Update After 10 Years (by Theo) http://tech.yandex.com/events/ruBSD/2013/talks/103/
An OpenBSD talk by Michael Lucas https://www.youtube.com/watch?v=BXPV3vJF99k
Earlier quoted context omitted.
> why is moving an unacceptable answer It seems likely that they don't trust anyone else to have physical access to the machines for security reasons. Their threat model probably includes national governments.
A somewhat related note about branding. My first "real" job was in the mid-90's; I was the first technical hire at a small Chicago ISP (EnterAct) that grew into a relatively large ISP (when I left, we were default-free peered to several tier-1 providers and had more POPs than I can name). It was great, and the team that started it --- two Big-5 accounting firm programmers --- was inspiring, particularly when it came…
Fortunately for me, I never had a CSR interaction with them. I used them until they augured in.
wgl@mcs.com
SSH alone, and all the utilities that use it... have made my work/life SOOOOOO much easier. That may sound silly, but when you don't have to search for some 3rd-party utility because what you need is built-in... it makes life easier.
I'm donating.
Earlier quoted context omitted.
From Theo's comments on the mailing list: "On a regular basis, we find real and serious bugs which affect all platforms, but they are incidentally made visible on one of the platforms we run, following that they are fixed. It is a harsh reality which static and dynamic analysis tools have not yet resolved. " "Regarding shutting them down, there other social problems. Yes, we remove about 10 of the architectures. We'd…
which other BSD would that be? If the answer is "NetBSD", let's consider that the expenses in 2012 for the NetBSD foundation were $6k [0]. Either they don't support the architectures the same way or they are spending the money in a smarter way. [0] http://www.netbsd.org/foundation/reports/financial/2012.html
Earlier quoted context omitted.
Read further into the thread -- specifically the messages from asshat Theo. He is absolutely opposed to anything like that.
http://marc.info/?l=openbsd-tech&m=138973312304511&w=2 "I really love how we keep getting advice. Anyone want to suggest we hold a bake sale?"
Earlier quoted context omitted.
>Competition is a good thing, so we should consolidate and have less competition That makes very little sense.
Then re-read my comment within the context of this discussion, which is OpenBSD being on the verge of bankruptcy. If I believed all the BSD forks had a chance to live long and prosper on their own I wouldn't be saying that, but right now it seems to me that none of them have any real long time chance to remain generic OS on par with Linux (except possibly FreeBSD but it's not even certain anymore). Linux just moves t…
Earlier quoted context omitted.
OpenBSD supports a number of odd and unusual platforms and does builds on them. See http://www.openbsd.org/plat.html . Older hardware can both use a significant amount of electricity and require much more hand-holding than is possible. Virtualization and emulation are not acceptable substitutes because they claim that doing builds on e.g. VAX is one of the best ways to ensure that the code works on VAX as opposed to…
OpenBSD's main value is high security standards. - Is there a significant amount of people with high security standards and an interest in SGI workstation hardware? - What about people who have high security standards and Sharp Zaurus hardware? If these groups aren't as important, as say, ARM and x86 users, perhaps it could be worth dropping some of these platforms?
http://www.openbsd.org/sgi.html http://www.openbsd.org/octeon.html http://www.openbsd.org/loongson.html
A mips32 port would also be very desirable for all those shitty little routers with their ancient Linux kernel, but sadly nobody is working on that at the moment.
So, should the network and firewall OS that many people claim OpenBSD is, slash its support for MIPS devices?
What will happen to OpenSSH if OpenBSD can't keep the lights on?
Earlier quoted context omitted.
If you're asking for help and you have constraints, you better qualify those constraints in a way that builds confidence. The more transparency you have in your discussion, the more supportive people will be.
> The more transparency you have in your discussion, the more supportive people will be. I think that's total, obvious nonsense and if you need to be convinced, here's an exercise: consider how much money the average nonprofit would raise if people knew where all that money went.