On Mon, 12 Mar 2001, George Metz wrote:

> On Mon, 12 Mar 2001, Jack Coates wrote:
>
> > Background, for those who haven't downloaded it yet:
>
> Didn't know it was that far along. Will see about taking a peek.
>

I wouldn't say far along, but thanks for the peek :-)

<Snip!>
>
> > 1-b) This is somewhat hard to do, given the progression from Debian
> > through a few versions of LRP to Oxygen. However, the work is 90% done
> > in the files that are up on my page. My question is, am I violating The
> > Unix Way(TM) by going this direction? Would tons of little config files
> > tied together with lrcfg menu be better?
>
> Regardless of the Unix Way, which I can definitively say I am NOT an
> expert on, I'd say having EVERYTHING in a ladybug.conf file is a bad way
> to go about it. Your IPChains rules - I know, it's not a firewall and a
> router, but you still want chains to lock down the box totally, and it
> works as an example - shouldn't be in the same file as you're specifying
> your network settings and kernel modules. If I'm misinterpreting, let me
> know.

No ipchains. You need two interfaces and ip forwarding enabled, and
since this is for a single-nic server.... I'm relying on minimal network
access and portsentry.

>
> > 2-b) If I'm assuming a CD-ROM and a box with lots of RAM, why not get
> > away from the glibc issue and use a newer Linux as my base? Pros and
> > cons?
>
> Pro: REALLY easy development, probably more secure, definitely more
> obtainable.

Yup. I especially like the idea of compiling software on Mandrake
instead of VMWare :-)

<snip>


_______________________________________________
Leaf-devel mailing list
[EMAIL PROTECTED]
http://lists.sourceforge.net/lists/listinfo/leaf-devel

Reply via email to