Mon 12th Apr 2004
Slackware, Slax This is an article about my experiences with Slackware 9.1, a distribution of Linux that I find enjoyable, along with programs that I find useful and enjoyable.
RE: what
by Daniel de Kok on Mon 12th Apr 2004 18:13 UTC

What? There is nothing automatic about the process. It takes days to lock down a box, and weeks of continually testing each package in search of the optimal ACL or MAC permissions/roles. Do you have any idea how gruelsome the process can be? There is nothing automatic about it. I don't think you understand what hardened OS is all about.

Been there, done that. On Slack ;) . It is not really that bad, often there are already profiles for e.g. ACLs for daemons. It just takes some trail and error to finetune them. Once you have done it it isn't really difficult after that. I did it with both kernel ACL patches and systrace (BSD).