Re: Secure Linux From Scratch

ashes <[email protected]>
Newsgroups gmane.linux.lfs.security
Organization Utopia Inc
Message-ID <[email protected]>
> I think we should begin at least a draft. Will start working on one really
> soon...maybe tomorrow. Let's start pouring ideas in.

This is what I have so far, it's pretty cheesy.

Code Authoring
All code, either in binary or source form, introduced to the system must come
from a responcable, widely distributed, opensource project. These projects
must employ a full discloser public bug forum.

Installed binary code
Some sort of rating system must be used to validate code trust levels.
Proactive testing, such as bfbtester, source code checking, such as Rats, and
by any other means reasonable.

Minimalization of Root privileges
In any event posible root will not be used to complete systems tasks, or run
daemons.

-- 
http://linuxfromscratch.org/mailman/listinfo/lfs-security
FAQ: http://www.linuxfromscratch.org/faq/
Unsubscribe: See the above information page
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.