Re: One SLFS book or two?
Robert Day <[email protected]>
| Newsgroups | gmane.linux.lfs.security |
|---|---|
| Message-ID | <[email protected]> |
On Tue, 2003-12-23 at 05:08, Spencer Collyer wrote: > Something that (I think) has only briefly been touched on in the > discussion about SLFS, and that is are we looking at creating one book or > two? By this I mean, will there be just one book to cover both LFS and > BLFS, or will there be one book for each. > > Indeed, will there even be mention of BLFS at all, or does that get left > to include security stuff in and of itself? > > My own vote would be for there to be two seperate books, with the majority > of the work being done to get the one that shadows LFS out before much > work is done on the one that shadows BLFS. > > S> One possibility that has been tossed around briefly, if only in my own head, was that SLFS be created as a small, base system book that is initially just released chock full of links. Section I will simply be a link to the Security-HOWTO. Any LFS build steps would be just linked to the LFS book, etc. etc. and the initial release could be a hardened "SLFs Foundation on which you can build a secure system". Each subsequent release added more secure services, functionality, lockdowns, and knowlege. the Links that are in the initial releases turn into TODO pages, that we eventually replace with our own version, tailored to SLFS and our goals, becoming it's own entity built from the ground up. At this point, the book would be split to probably two books. Book 1 would be the major info book, running through general security policies, procedures, theories, etc. and building the base system with no networking, no services etc. Just a secure toolchain, system monitors, logfile security and analysis etc. Book 2 is the network guide. This book goes into chroot jails for services, network security theory and implimentation, and such things as kereros network-wide authentication, centralised backend servers and the like. Of course, that much of a write would be years down the road, but it leaves us with an easy to obtain initial release, and a very long term goal to keep the development fresh, and active for a long time to come. Rob Day (BOFH) -- http://linuxfromscratch.org/mailman/listinfo/lfs-security FAQ: http://www.linuxfromscratch.org/faq/ Unsubscribe: See the above information page