All that being said Spender and PaXTeam do tons of great work. I would love to see a lot of their code merged into mainline but the likelyhood of that happening isn't very good. If you use a Hardened Gentoo kernel you'll actually get a kernel with PaX protections with some GRSecurity features and SELinux enabled which I think is an awesome thing. As Spender showcased above he does not play politics or suffer fools. What he doesn't seem to care about is that most of the kernel inclusion process is politics. We've seen it before with competing implementations of features where the person in the "in crowd" got their implementation chosen over someone who had been working on the problem for a very long time with a large user base. That coupled with a hostile attitude from upstream about security (Linus has repeatedly called security people crazy, Spender and SELinux people included) makes it hard to dedicate time to working on getting things upstreamed.
Posted Feb 18, 2013 13:57 UTC (Mon) by dpquigl (guest, #52852) [Link]
Posted Feb 18, 2013 14:01 UTC (Mon) by spender (guest, #23067) [Link]
Posted Feb 18, 2013 14:03 UTC (Mon) by dpquigl (guest, #52852) [Link]
Posted Feb 18, 2013 15:21 UTC (Mon) by spender (guest, #23067) [Link]
-Brad
Posted Feb 18, 2013 15:45 UTC (Mon) by dpquigl (guest, #52852) [Link]
Copyright © 2022, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds