Welcome to OpenBSD [pdf]
devio.us
devio.us
Can someone explain this? I don't see what this has to do with the randomness of pids.
Seems an extra layer in defence in depth, making it harder to attack a process between the time it is forked and the time it has dropped privileges by making it harder to find it.
There's a project to improve AWS/Xen support, http://www.joelroberts.org/openbsd/
I use VMware at work, seems to do ok.
The best kind of first. Joking aside -- why is so much OpenBSD advocacy backhanded like this ? Do the writers not think that OpenBSD can stand on it's own ?
* NetBSD technically did it first
* But OpenBSD is the one who engaged with the rest of the software community to fix bugs that were uncovered
Now it doesn't seem so backhanded.
gopher://gopher.anthrobsd.net/
http://gopherproxy.meulie.net/gophernicus.org/ or you can use the overbite extension for firefox.
Handling truncation correctly with those is just as much work as handling strcat and strcpy correctly. The only difference is that wrong handling of strcat and strcpy have worse effects usually.
Ummm. Citation needed?
In all my years in networking, I've ran exactly one instance of OpenBGPD and that's used simply for real-time updates of (anti-spam) blacklists and whitelists [0,1].
[0]: http://bgp-spamd.net/ [1]: http://www.openbsd.org/papers/asiabsdcon2013/phessler-bgp-sp...
Also, most large service providers don't tend to talk about their internal implementations.
Many in the networking field have been indoctrinated in a Cisco-only philosophy, and then get hired into that monoculture over and over to the point they don't know about anything else, other than if it's something viewed as a Cisco competitor.
I do know that it's used quite often as a route server/reflector at various IXPs (and I may be standing up an instance to do just that in the near future as well) as well as a looking glass. I've managed routers from most of the large manufacturers (Cisco, Juniper, Brocade, HP/H3C, ALU, Mikrotik) and I took a good hard look at OpenBGPD a while back for a customer project so I am aware that it is quite feature-rich and capable and I certainly didn't intend to imply (if it came across that way) that it's not.
Really, the thing that I took issue with was:
> OpenBSD's OpenBGPD responsible for 30% of worldwide BGP communication
It was followed up with:
> Correction: 20% of ISPs using OpenBGPD
That claim may very well be technically correct, but it strikes me as similar to, e.g., someone claiming that 90% of users on the Internet "use Linux" simply because their traffic may have {passed through|been directed to} a {router|server|firewall} that runs Linux.
I don't find it neither good nor wrong, but there must be some reason behind it.
Like wearing a SPAM[1] shirt to a vegan potluck, I guess.
http://www.openbsd.org/papers/bsdcan14-libressl/mgp00025.htm...