systace (was Re: a truly openbsd day)

2005-10-31 Thread frantisek holop
hmm, on Mon, Oct 31, 2005 at 03:05:49PM -0700, Theo de Raadt said that I'd love to see a bootable OpenBSD desktop CD with all applications tightly wrapped by systrace, so I don't need to recreate and redistribute the boot disk after each new Firefox, GAIM, etc exploit. It is really

Re: systace (was Re: a truly openbsd day)

2005-10-31 Thread Stuart Henderson
--On 31 October 2005 23:32 +0100, frantisek holop wrote: It is really unfortunate that I have never seen a perfect systrace policy. Not once. Not even for small programs like ping. .. hm. does this mean that systrace is not a good idea anymore? No, it means people are too lazy, too busy,