|
OpenBSD Security Functionally paranoid! |
|
Thread Tools | Display Modes |
|
|||
Removal of Loadable Kernel Modules and Custom Kernels
Loadable Kernel Modules were removed and I can see the rationale for not having bits of code randomly insert into the stack. Conversely, that would mean more unused devices are in the kernel itself including some that may be a security risk. I'm thinking specifically of Intel and Via random number generators which I understand are not used.
Given the paranoia revolving around what is really in a device chip, would there be a stronger argument for stripping a kernel of unneeded devices? |
Thread Tools | |
Display Modes | |
|
|
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
custom kernel problem | pahel0 | FreeBSD General | 8 | 15th February 2010 11:13 PM |
FreeBSD 7 i386, PAE and kernel modules | eztiger | FreeBSD Installation and Upgrading | 7 | 1st April 2009 06:07 PM |
kernel modules | Mr-Biscuit | FreeBSD General | 0 | 2nd March 2009 06:18 AM |
About Custom Kernels | qmemo | NetBSD General | 2 | 28th September 2008 03:45 PM |
Are certain kernel modules permanent? | davidgurvich | FreeBSD General | 3 | 6th June 2008 06:14 PM |