Bridlewood Software Testers Guild


Testing
 Tools
 Problem Reports
 Techniques

Software
 VAX patches
 SIMH scripts

Test Bed
 Micro PDP 11/23
 Micro PDP 11/53
 Micro VAX
 SIMH VAX 11/780
 
 free stuff
 terminals
 cabinets

Miscellaneous
 Apiary Tour
 Vegetarian Recipes

Blogs
 ba23.org
 kirk
 all

kirk blog rss.gif

Mon, 21 May 2007

[20070521] Using crunchgen with OpenBSD Firewalls
After BSDCan, I try to think of some userland paper that I could present at the next conference. I was wondering if crunchgen would be too boring. I used to build my OpenBSD firewalls as tiny systems and I was considering revisiting this technique. I would figure out the minimum set of executables and files required, use the picobsd utilities, and use the openbsd installation media tools to create a boot image. Does a minimal system offer any extra security?

  • I would use CDROM boot images.
  • The firewall should not require a hard drive.
  • The filesystem would be read-only.
  • A shell will just appear on the serial console -- no login required.
  • I want to introduce new configuration files without rebooting.

Why OpenBSD? I reported a sysctl() bug on Sunday and hours later the fixed is committed. Since then, I have been purchasing OpenBSD t-shirts and CDROMs to help support this project.

References:

Sun, 20 May 2007

[20070520] BSDCan 2007
I went to BSDCan this weekend. My favorite presentations were about ZFS -- a file system on the move, and Poisonous People -- a lively discussion about open source projects. I plan to attend next year.

BSDCan 2007

Ads by PARSE

Irish Vax Wanted!

Are you looking for a good home for your Irish Vax or PDP11?

Old PDP Computers?

Are you looking for a good home for your old PDP8 computer?



www.ba23.org     web                

(Contact me) View Kirk Russell's profile on LinkedIn Copyright © 2007 Kirk J. Russell
ALL RIGHTS RESERVED.