From owner-freebsd-chat@FreeBSD.ORG Tue Jun 29 22:04:52 2004 Return-Path: Delivered-To: freebsd-chat@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7AA1816A4CE for ; Tue, 29 Jun 2004 22:04:52 +0000 (GMT) Received: from regina.plastikos.com (216-107-106-250.wan.networktel.net [216.107.106.250]) by mx1.FreeBSD.org (Postfix) with ESMTP id C666343D46 for ; Tue, 29 Jun 2004 22:04:51 +0000 (GMT) (envelope-from gh@over-yonder.net) Received: from mortis.over-yonder.net (adsl-19-150-243.jan.bellsouth.net [68.19.150.243]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by regina.plastikos.com (Postfix) with ESMTP id 85A606EF07; Tue, 29 Jun 2004 18:04:33 -0400 (EDT) Received: by mortis.over-yonder.net (Postfix, from userid 1012) id A7CAD20F22; Tue, 29 Jun 2004 17:04:31 -0500 (CDT) Date: Tue, 29 Jun 2004 17:04:31 -0500 From: "Daniel M. Kurry" To: Kevin Lyons Message-ID: <20040629220431.GH30204@over-yonder.net> References: <40E1A6C0.2040406@ofdengineering.com> <6.1.0.6.1.20040629112919.03bcffc8@popserver.sfu.ca> <40E1C0F7.7050105@ofdengineering.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <40E1C0F7.7050105@ofdengineering.com> X-Editor: vi X-OS: FreeBSD User-Agent: Mutt/1.5.6i-fullermd.2 cc: freebsd-chat@freebsd.org Subject: Re: "TrustedBSD" addons X-BeenThere: freebsd-chat@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Non technical items related to the community List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 29 Jun 2004 22:04:52 -0000 Kevin Lyons said something like: > Some of them are not esoteric. So, following the current logic, I guess > we'll have more "jails" for jail and more wrappers for wrapper :) ? > Presumably FreeBSD r-eng runs some kind of audit on port source like > that mentioned in "Building Secure Software". Maybe that audit process > should be improved rather than trying to add more layers of paint to > fill in the cracks (proverbial)? Kevin, I believe this is the point in the thread where someone scolds you for not posting patches (or offering more concrete suggestions). Just a heads up. Dan > -- > Kevin Lyons