In message: <20040727074246.GC3778@think.mailq.de>
Mischa Diehm <md@mailq.de> writes:
: If he wants a solid and secure stack
: OpenBSD might be an option.
The security of the resulting port is only as good as the care that is
taken to properly take into account the differences between OpenBSD's
stack (say) and the target environment where things may be different
in a number of subtle (and not so subtle) ways. Just because it came
from OpenBSD doesn't ensure that the end result will be any more or
less secure than if it was taken from other systems...
Maybe this is a silly suggestion, but he may want to check out the
KAME sources directly. Often when kame is integrated into an OS, a
number of changes happen (including stripping out of needless
#ifdefs). Going back to the KAME source may make the porting easier.
Some caution would be advised in that route, however, as there may be
bug fixes in *BSD that haven't been fully integrated back into the
KAME tree. http://www.kame.net/
Warner
| David Newall | Re: Slow DOWN, please!!! |
| Renato S. Yamane | Error -71 on device descriptor read/all |
| Greg Kroah-Hartman | [PATCH 004/196] Chinese: add translation of SubmittingPatches |
| Bart Van Assche | Integration of SCST in the mainstream Linux kernel |
git: | |
| Shawn O. Pearce | libgit2 - a true git library |
| Martin Langhoff | Re: pack operation is thrashing my server |
| Aubrey Li | git proxy issue |
| Pierre Habouzit | git send-email improvements |
| Elad Efrat | Integrating securelevel and kauth(9) |
| Hubert Feyrer | Compressed vnd handling tested successfully |
| Matt Thomas | Interrupt, interrupt threads, continuations, and kernel lwps |
| Michael | Re: yamt-km branch |
| Richard Stallman | Real men don't attack straw men |
| Will Maier | cron doesn't run commands in /etc/crontab? |
| askthelist | Packets Per Second Limit? |
| Harald Dunkel | Packet Filter: how to keep device names on hardware failure? |
| Question on swap as ramdisk partition | 2 hours ago | Linux kernel |
| Netfilter kernel module | 12 hours ago | Linux kernel |
| serial driver xmit problem | 15 hours ago | Linux kernel |
| Why Windows is better than Linux | 15 hours ago | Linux general |
| How can I see my kernel messages in vt12? | 22 hours ago | Linux kernel |
| Grub | 1 day ago | Linux general |
| vmalloc_fault handling in x86_64 | 1 day ago | Linux kernel |
| epoll_wait()ing on epoll FD | 1 day ago | Linux kernel |
| Framebuffer in x86_64 causes problems to multiseat | 2 days ago | Linux kernel |
| Difference between 2.4 and 2.6 regarding thread creation | 2 days ago | Linux general |
