From owner-freebsd-security Wed Mar 31 12:31:13 1999 Delivered-To: freebsd-security@freebsd.org Received: from hosting.doublesquare.com (hosting.doublesquare.com [195.5.128.151]) by hub.freebsd.org (Postfix) with ESMTP id B1C3915C8B for ; Wed, 31 Mar 1999 12:31:04 -0800 (PST) (envelope-from ark@eltex.ru) Received: from eltex.ru (ELTEX-2-SPIIRAS.nw.ru [195.19.204.46] (may be forged)) by hosting.doublesquare.com (8.8.8/8.8.8) with ESMTP id AAA09566 for ; Thu, 1 Apr 1999 00:04:16 +0400 (MSD) Received: from border.eltex.spb.ru (root@border.eltex.ru [195.19.198.2]) by eltex.ru (8.8.8/8.8.8) with SMTP id AAA02521; Thu, 1 Apr 1999 00:02:57 +0400 (MSD) Received: by border.eltex.spb.ru (ssmtp TIS-0.5alpha, 19 Oct 1998); Thu, 1 Apr 1999 00:02:54 +0400 Received: from undisclosed-intranet-sender id xma000665; Thu, 1 Apr 99 00:02:52 +0400 From: -=ArkanoiD=- Message-Id: <199903312002.AAA01152@paranoid.eltex.spb.ru> Subject: Re: Opinions on DeleGate proxy (TIS FWTK's competitor ?) In-Reply-To: <19990331212153.A23731@ansf.alcatel.fr> from Stephane Lentz at "Mar 31, 1999 09:21:53 pm" To: Stephane.Lentz@ansf.alcatel.fr Date: Thu, 1 Apr 1999 00:02:49 +0400 (MSD) Cc: freebsd-security@FreeBSD.ORG Reply-To: ark@eltex.ru X-Mailer: ELM [version 2.4ME+ PL53 (25)] MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org nuqneH, Somebody (maybe you, Stephane Lentz) WROTE: [Charset iso-8859-1 unsupported, filtering to ASCII...] > What do you think about it ? > Do you find it reliable and use it (any experience is welcome) ? > > The only shortcomings I find for now are : > - incomplete and unclear documentation bundled (few samples, not enough details, ...) > - warnings during compilation on some platforms > - some function calls in the code (I wonder if the code is "secure enough" and > robust enough : buffer-overflows, memory-management, ...). Code reviews > by security gurus ? > - not widely used (mainly used in Japan) - monolythic, less flexible, harder to update and does not provide generic, easy to understand API to write addons. Security audit is not easy for similar reasons. I did not like it. -- _ _ _ _ _ _ _ {::} {::} {::} CU in Hell _| o |_ | | _|| | / _||_| |_ |_ |_ (##) (##) (##) /Arkan#iD |_ o _||_| _||_| / _| | o |_||_||_| [||] [||] [||] Do i believe in Bible? Hell,man,i've seen one! To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message