[KLUG Members] RE: Long live DL! It's not just your father's firewall anymore!

Bruce Smith members@kalamazoolinux.org
22 Oct 2003 09:00:59 -0400


> Thanks for all this input on postfix guys I will move to postfix for sure. 

For the record, I've never used postfix.  I only said that I was going
to look at it seriously because I need to upgrade my mail server.  I may
or may not end up using it.  Time will tell ...  :-)

> I just downloaded the devil-linux ISO and will take a look at that as well.
> As I understand Devil Linux is some hardened distro of Linux. Why isn't 
> all software important enough to do so compiled with this stack 
> protection on any distro?
> What is the counter side of it, speed ?

That is a good question!  There may be a small amount of overhead, but I
doubt it would be enough to make a noticeable speed difference.

There are about a half dozen packages in DL that will NOT compile with
the stack protector turned on, so it has to be optional.  Most of the
packages that won't use it seem to access hardware directly.  Packages
like:  pcmcia, grub (writes MBR), packages that have kernel modules, ...

--------------------------------------------
Bruce Smith                bruce@armintl.com
System Administrator / Network Administrator
Armstrong International, Inc.
Three Rivers, Michigan  49093  USA
http://www.armstrong-intl.com/
--------------------------------------------