Linux Today: Linux News On Internet Time.
Search Linux Today
search.internet.com
Linux News Sections:  Blog -  Developer -  High Performance -  Infrastructure -  IT Management -  Security -  Storage -
Linux Today Navigation
LT Home
Preferences
Contribute
Link to Us
Search
Linux Jobs

Become a Marketplace Partner

internet.commerce
Be a Commerce Partner














The Linux Channel at internet.com
Linux Today
Enterprise Linux Today
Apache Today
JustLinux.com
Linux Planet
PHPBuilder
All Linux Devices
Technology Jobs

JustTechJobs.com

LinuxToday Newsletters
Subscribe News
Subscribe PR
Subscribe Security

internet.com
IT
Developer
Internet News
Small Business
Personal Technology

Search internet.com
Advertise
Corporate Info
Newsletters
Tech Jobs
E-mail Offers

 







Current Newswire:

Intel Linux Graphics Shine With Fedora 12

Editor's Note: Do It Yourself "Cloud"

Google Chrome OS: First looks, first impressions

Kernel Log: Coming in 2.6.32 (Part 3) - Storage

TV Mythos Renewed: MythTV 0.22 with Many Improvements

Enhancing openSUSE 11.2: Adding Repositories and Packages

A Northwest Nobel option? (Linus for the Nobel Peace prize)

SECURITY: Cloud Computing Security Benefits, Risks and Recommendations

Keeping score in test-driven development with Python, PyLint, unittest, doctest,

Win a CodeWeavers Linux Gaming Rig




Sr Systems Engineer - Solaris - AIX (TX)
Next Step Systems
US-TX-Houston

Justtechjobs.com Post A Job | Post A Resume
:Security Portal: OpenSource projects - what I learned from Bastille (and others)
Security Portal: OpenSource projects - what I learned from Bastille (and others)
Dec 24, 1999, 17 :29 UTC (2 Talkback[s]) (4132 reads)

(Other stories by Kurt Seifried,)

"Building a Linux distribution is no easy task, and building a secure Linux distribution is even harder. Bastille Linux originally started out with the ambitious goal of creating an entirely new distribution, based on Red Hat, that would be secure (an OpenBSD style project basically). Well it was started, a site was created, a domain name registered, and mailing lists were created. Unfortunately it simply didn't generate the kind of community support required for such an effort (or perhaps fortunately, in retrospect). A deadline had been set of mid December, the SANS conference, at which Bastille Linux would be "unveiled" and many CD's handed out to happy administrators. Towards this deadline the core members of the project probably realized that they would look pretty silly if they had absolutely nothing to show, so the goal of a complete distribution was dropped in favor of a hardening script aimed at Red Hat Linux...."

"Good software is like a fine wine, it takes time to mature. If you open it up to soon it tastes horrible, and if you let it sit to long you might end up with vinegar (although I'm not sure what that last bit has to do with software projects it sounds good, maybe something to do with bloat). Anything to do with security just compounds the problem since finding bugs in code and eliminating them takes a lot of work (OpenBSD being an excellent reference point)...."

Complete Story

Related Stories:
LinuxPR: Bastille Linux releases v1.0.0 at SANS San Francisco Security Conference 99 (Dec 14, 1999)
OpenBSD 2.6 Shipping (Dec 01, 1999)
Linux Gazette: Securing Linux: The First Steps (Nov 15, 1999)
WideOpenNews: Open Source: How Secure? (Nov 14, 1999)
Security Portal: OpenBSD - a secure alternative (Oct 27, 1999)
Security Portal: Secure Linux Distributions (Sep 07, 1999)
Bastille Linux: a secure Linux distribution project (Jun 06, 1999)


Index Mode   |   Flat Mode   |   Thread Mode   |   Thread Flat  
  Talkback(s) Name  and Date
It's all TOO commmon that published  ...   Being a geek is no excuse   
Noah F. San Tosrbutz
Dec 24, 1999, 18:26:40
 
Yes... andits = property, like his or he ...   Re: Being a geek is no excuse   
Martin Vermeer
Dec 25, 1999, 12:29:15
 
  Home | Search Talkbacks | Customize View    Top of Page  



Enter your comments below:

* Your Name:

* Your Email Address:

* Subject:

CC: [will also send this talkback to an E-Mail address]

* Comments:

Tags allowed:<I>,<B> and <U>. See our talkback-policy for more about talkback content.

Fields marked with * are required!






..............................




All times are recorded in UTC.
Linux is a trademark of Linus Torvalds.
Powered by Linux, Apache and PHP

internet.commediabistro.comJusttechjobs.comGraphics.com

Search:

WebMediaBrands Corporate Info

Legal Notices, Licensing, Permissions, Privacy Policy.
Advertise | Newsletters | Shopping | E-mail Offers | Freelance Jobs