Re: Security and manageability minded LiveCD?



lbrtchx@xxxxxxxxx <lbrtchx@xxxxxxxxx>:

I am a LiveCD enthusiast who has been using kanotix, knoppix (since
its 3.8 version ;-)) and FreesBIE and I have been minding for some
time about using liveCD's as full blown servers

There is little and spotty information on this. yeah! you could
certainly run apache right off your knoppix distro, but is this the
way you would actually run your server?

Modern live cds will slurp themselves into RAM assuming you've enough
to do it (.5 Gb). So, why not if you know how to control it? If
you're remastering distros so your boots understand where and what
they are when they boot, what's the diff from running from disk?
Speed. Network latency may swamp that speed gain, but what the hey?

As long as your installs know where their loghost is, where /var is,
and how to talk dhcp (or static?), it should be great. Problem? Frob
it. Still problem? Hardware!

Very little is mentioned, if at all, about OS hardening and
protection such as what you could achieve with open source grsecurity,
SELinux, PAX, ...

Go to distrowatch.com and search distro types related to security.

Having something like a base-line sever liveCD that would let you
easily customize/remaster the rest to your liking would be superb!

Sure. Lots of people suggest LFS/Linux From Scratch. I suggest you
build it. With busybox and expect and all the other whiz-bang tools
out there, it's really not that hard. You can even do it by pulling
individual debs/rpms off an install CD and dumping them into a loop
mounted iso filesystem. Throw something in there that gives it
something to boot from, and burn it. I think I'd start pulling stuff
off a Sidux live CD, myself.


--
Any technology distinguishable from magic is insufficiently advanced.
(*) http://blinkynet.net/comp/uip5.html Linux Counter #80292
- - http://www.faqs.org/rfcs/rfc1855.html Please, don't Cc: me.
.



Relevant Pages

  • Re: Distro advise
    ... installs off the floppy drive. ... The distro ... Iirc many if not all distro allow to create a floppy boot image, ...
    (comp.os.linux.setup)
  • Re: Distro advise
    ... problem is that I can't boot off a cd-rom so i would need a distro that ... installs off the floppy drive. ... The distro ...
    (comp.os.linux.setup)
  • Re: Fedora Core 3 not running on new PC
    ... I received a suggestion that I boot up with Knoppix ... > to help resolve driver problems. ... maybe using a distro that has ...
    (comp.os.linux.setup)
  • Re: Fedora Core 3 not running on new PC
    ... I do like the ease of starting up knoppix and I'm still ... >>When I try to boot up Fedora Core 3 on my PC, ... >>to help resolve driver problems. ... > trying to figure things out, maybe using a distro that has ...
    (comp.os.linux.setup)
  • Re: XP PC will not boot
    ... The smallest distro I've tried, is Damn Small Linux, at 50MB. ... and it won't boot on my computer. ... Knoppix, ... the source partitions can remain read-only while you're working. ...
    (microsoft.public.windowsxp.general)