From owner-freebsd-questions Sun Jul 29 4:39:58 2001 Delivered-To: freebsd-questions@freebsd.org Received: from obsecurity.dyndns.org (adsl-64-169-104-149.dsl.lsan03.pacbell.net [64.169.104.149]) by hub.freebsd.org (Postfix) with ESMTP id 8055437B403 for ; Sun, 29 Jul 2001 04:39:50 -0700 (PDT) (envelope-from kris@obsecurity.org) Received: by obsecurity.dyndns.org (Postfix, from userid 1000) id 81F5566B25; Sun, 29 Jul 2001 04:39:49 -0700 (PDT) Date: Sun, 29 Jul 2001 04:39:49 -0700 From: Kris Kennaway To: unknown source Cc: freebsd-questions@FreeBSD.ORG Subject: Re: Would it be so hard? Message-ID: <20010729043948.A87542@xor.obsecurity.org> References: Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="wac7ysb48OaltWcw" Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: ; from callihn@hotmail.com on Sun, Jul 29, 2001 at 10:36:24AM +0000 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG --wac7ysb48OaltWcw Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sun, Jul 29, 2001 at 10:36:24AM +0000, unknown source wrote: > OK so I didn't make any friends with this =3Do). My point no microsoft do= esnt=20 > make iso's for every bug but then again you dont have to know how to comp= ile=20 > your own kernel and all you have to do it double click on the patch so it= s=20 > idiot proof and they dont have two bugs a week either but enough about bi= ll=20 > bates.Lets make it simple just go here and count see how we are comparing= =20 > to others o where not the worst lol look at mandrake=20 > http://www.linuxsecurity.com/advisories/ but where not up there where I w= ish=20 > we where with slackware,engarde,openbsd and a hand full of others and im= =20 > sorry if that doesnt make me real happy, sorry. Don't confuse lack of advisories with lack of security vulnerabilities. > OK I guess the real point here is we patch and keep patching all im > really trying to get at hear is "wouldn't it be nice to stabilize > then build a new release with more features?" example finish say 4.2 > were talking core only audited till its secure which I would say is > ummmmm now? reiso it. Then came 4.3 still going with the bugs there > and im sure more will be added with 4.4? This is my concern each > release has more function but also more to explore and more > exploiots on the way. You're ignorant of the problems here. The security vulnerabilities aren't (in general) being added over time, they're being found and fixed over time from code which has existed in many operating systems for a long time. It's probably wise to avoid making these kinds of bold claims about FreeBSD security when you're so ill-informed about it: it just makes you look foolish to the audience watching at home. > unreasonable, unwanted and so are any ideals I have to make freebsd > a little better for some I guess mainly newbies. As far as I can see, you're not doing anything to make FreeBSD better, you're just complaining. Don't mistake one for the other. Kris P.S. It's very hard to read your emails, please try and use some paragraphs and sentences, thanks. --wac7ysb48OaltWcw Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (FreeBSD) Comment: For info see http://www.gnupg.org iD8DBQE7Y/YEWry0BWjoQKURAhz1AKDllbUfaqfMT1X8EoY7AxAtV8JmxQCfaBeo MrPXoqKqibEABrOkT+5Pz70= =b57S -----END PGP SIGNATURE----- --wac7ysb48OaltWcw-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message