On Thu, Mar 15, 2007 at 11:49:19PM -0600, Jacob Yocom-Piatt wrote:It would be better if OpenBSD could be maintained secure even without a skilled security professional. Today's trend is that things are accomodated to ordinary people. You don't need a driver anymore to professionally drive your car. You don't need to understand how the engine works anymore to operate the car properly. You don't need to understand megahertz anymore to tune your TV set. This trend is because we are having more and more technology in our life and learning about internal structure of all the appliances is not possible anymore. This trend can be implemented in free design products too. Let me use my Ronja project as an example once more. It contains sensitive low-noise broadband amplifiers and an fiber optic transceiver implemented as many chips scattered around the board. It's supposed to be built in a garage. Hundreds of points asking for a failure. But it was possible to remove the necessity to need a professional equipment and training. Strict quality control procedures done by the users using visual inspection, increase in ergonomy of the assembly procedures and preventive electrical measurements eliminate these failures which can be found only using an expensive oscilloscope. So with extra effort put into the instruction manuals, it's now possible that an unskilled person builds it using only a cheap multimeter. Similarly, by putting extra effort into the OpenBSD operating instructions and notification mechanisms, it should be possible to enable even an inexperienced user to properly recognize a security problem and respond to it in a correct and timely manner. CL<
| Klaus S. Madsen | Regression in 2.6.25-rc3: s2ram segfaults before suspending |
| Dan Hecht | Re: + stupid-hack-to-make-mainline-build.patch added to -mm tree |
| Balbir Singh | Re: 2.6.23-rc7-mm1 - 'touch' command causes Oops. |
| Arjan van de Ven | [patch] Add basic sanity checks to the syscall execution patch |
git: | |
| Nicolas Pitre | Re: [PATCH] diff-delta: produce optimal pack data |
| Catalin Marinas | Re: hgmq vs. StGIT |
| Mark Levedahl | [PATCH] git-clone - Set remotes.origin config variable |
| Junio C Hamano | Re: tracking repository |
| Richard Daemon | Re: booting openbsd on eee without cd-rom |
| Matt | Setting up a virtual hosting machine w. SSH/SFTP accounts - pitfalls/experiences? |
| Paul Greidanus | [Fwd: Open-Hardware] |
| GVG GVG | ssh_exchange_identification: Connection closed by remote host |
| Jim Winstead Jr. | Re: Root Disk/Book Disk Compatibility |
| Paul Douglas Page | Where is mkfs? |
| Howard Wei-Hao Pan | [Q] Does Linux work with PCMCIA devices? |
| Timothy L. Kay | Use PERL rather than C for system commands? |
