Re: Re: security enhanced debian branch?

Magosányi Árpád <[email protected]> Thu, 18 Dec 2003 18:39:28 +0000
Newsgroups gmane.linux.debian.devel.general,gmane.linux.adamantix.devel
Message-ID <[email protected]>
A levelez=F5m azt hiszi, hogy Matt Zimmerman a k=F6vetkez=F5eket =EDrta:
> On Thu, Dec 18, 2003 at 09:07:02AM -0400, Ben Armstrong wrote:
>=20
> > Second, any such effort shouldn't be a branch, but should be mainstream=
ed in=20
> > Debian proper.  Please see http://wiki.debian.net/CustomDebian for a=20
> > possible approach for this sort of project.
>=20
> For cases where the added functionality is provided by additional package=
s,
> this is easy.  However, some of the things which are being experimented w=
ith
> include compiler patches to produce binaries which make certain types of
> exploits more difficult, and that kind of thing is not easy to merge into
> Debian proper.

I think this kind of stuff could be handled in new architectures. For
example the Adamantix project could be merged back by creating
an architecture i386-adamantix for the stack protected stuff, and=20
the other parts being a "CDD" by the terminology of the above link.

(I do not know enough about the history of the project to tell if its
developers would consider merging back a good idea or an organisational
impossibility. But the main point is not about that, or even that project
in particular.)

--=20
GNU GPL: csak tiszta forr=E1sb=F3l