Re: Secure Linux From Scratch
ashes <[email protected]>
| Newsgroups | gmane.linux.lfs.security |
|---|---|
| Organization | Utopia Inc |
| Message-ID | <[email protected]> |
> I think we should begin at least a draft. Will start working on one really > soon...maybe tomorrow. Let's start pouring ideas in. This is what I have so far, it's pretty cheesy. Code Authoring All code, either in binary or source form, introduced to the system must come from a responcable, widely distributed, opensource project. These projects must employ a full discloser public bug forum. Installed binary code Some sort of rating system must be used to validate code trust levels. Proactive testing, such as bfbtester, source code checking, such as Rats, and by any other means reasonable. Minimalization of Root privileges In any event posible root will not be used to complete systems tasks, or run daemons. -- http://linuxfromscratch.org/mailman/listinfo/lfs-security FAQ: http://www.linuxfromscratch.org/faq/ Unsubscribe: See the above information page