Re: [gentoo-user] Which kernel for servers?

2003-08-14 Thread Mikhail P.
On Monday 11 August 2003 22:01, Thorsten Kampe wrote:
> Which kernel for a brave little Gentoo server running Zope and facing
> the big bad internet?!
>
> * gs-sources
> "This patch [...] ensures that your mission critical servers will be
> up when you need them. [...] Where possible and without compromising
> stability we add server related performance patches. [...] In other
> words, these sources are perfect for servers and High-Availability
> systems."
>
> * hardened-sources
> "Hardened Gentoo's purpose is to make Gentoo viable for high security,
> high stability production server environments. The kernel provides
> [...] stability/security oriented patches."
>
> * wolk-sources
> It has been pointed out by Kurt Lieber that Gentoo is "in the process
> of converting all of Gentoo's infrastructure servers over to WOLK
> 4.3". If that is so, why isn't Gentoo "eating it's own dogfood"
> (gs-sources) or replacing gs-sources with wolk-sources if WOLK is
> /that/ superior?!
>
> Any hints or meanings deeply appreciated!
>
>
> Thorsten

Personally, I'm running most of the servers on vanilla kernel + GRSecurity 
patch applied and ACL's enabled, while some other servers running WOLK-4.6s 
now. Generally, I would say go for vanilla kernel with GRSecurity or SELinux, 
but in case you want some special features and do not want to spend your time 
on patching kernel - go with WOLK (also contains GRSecurity).

Mikhail.

>
>
> --
> [EMAIL PROTECTED] mailing list

-- 
Windows and DOS -- a turtle and it's shell.


--
[EMAIL PROTECTED] mailing list



[gentoo-user] Which kernel for servers?

2003-08-14 Thread Thorsten Kampe
Which kernel for a brave little Gentoo server running Zope and facing
the big bad internet?!

* gs-sources
"This patch [...] ensures that your mission critical servers will be
up when you need them. [...] Where possible and without compromising
stability we add server related performance patches. [...] In other
words, these sources are perfect for servers and High-Availability
systems."

* hardened-sources
"Hardened Gentoo's purpose is to make Gentoo viable for high security,
high stability production server environments. The kernel provides
[...] stability/security oriented patches."

* wolk-sources
It has been pointed out by Kurt Lieber that Gentoo is "in the process
of converting all of Gentoo's infrastructure servers over to WOLK
4.3". If that is so, why isn't Gentoo "eating it's own dogfood"
(gs-sources) or replacing gs-sources with wolk-sources if WOLK is
/that/ superior?!

Any hints or meanings deeply appreciated!


Thorsten


--
[EMAIL PROTECTED] mailing list



Re: [gentoo-user] Which kernel for servers?

2003-08-14 Thread Bryan D. Stine
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Normally, I would say hardened-sources, however it's quite a bit behind in 
kernel world. It's still in 2.4.20, which had some nasty security flaws, and 
I wouldn't trust it too much. I'm running a Gentoo-Hardened machine with 
SELinux (my router), so naturally I'm using the somewhat vanilla 
selinux-sources. For a server, gs or wolk would do. WOLK has a LOT of patches 
in it, some of which you might not want, so you'd need to know what to ditch 
at configure time. GSS is used on the LiveCD and is quite stable. After all 
this talk, I'd say it's a toss-up between GSS and WOLK.

On Monday 11 August 2003 06:01 pm, Thorsten Kampe wrote:
> Which kernel for a brave little Gentoo server running Zope and facing
> the big bad internet?!
>
> * gs-sources
> "This patch [...] ensures that your mission critical servers will be
> up when you need them. [...] Where possible and without compromising
> stability we add server related performance patches. [...] In other
> words, these sources are perfect for servers and High-Availability
> systems."
>
> * hardened-sources
> "Hardened Gentoo's purpose is to make Gentoo viable for high security,
> high stability production server environments. The kernel provides
> [...] stability/security oriented patches."
>
> * wolk-sources
> It has been pointed out by Kurt Lieber that Gentoo is "in the process
> of converting all of Gentoo's infrastructure servers over to WOLK
> 4.3". If that is so, why isn't Gentoo "eating it's own dogfood"
> (gs-sources) or replacing gs-sources with wolk-sources if WOLK is
> /that/ superior?!
>
> Any hints or meanings deeply appreciated!
>
>
> Thorsten
>
>
> --
> [EMAIL PROTECTED] mailing list

- -- 
Bryan D. Stine
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQE/OBgA4Cdq/Vbot6MRAm5wAKCMR0cc9mQNE64YkPogkAsNBolwfgCeOBUN
ejnIg1WPsD/yt2yWw9KUsCs=
=0NSt
-END PGP SIGNATURE-


--
[EMAIL PROTECTED] mailing list