public inbox for gentoo-hardened@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-hardened] Remove toolchain?
@ 2010-02-01 12:35 Hinnerk van Bruinehsen
  2010-02-01 13:33 ` Ed W
  2010-02-01 14:35 ` schism
  0 siblings, 2 replies; 6+ messages in thread
From: Hinnerk van Bruinehsen @ 2010-02-01 12:35 UTC (permalink / raw
  To: gentoo-hardened

Hello everyone,

I'm trusted with building a hardened server. I'm using Gentoo on my
desktops for years, so hardened Gentoo is an obvious choice for me.

But there is one thing which disturbs me: Since Gentoo (and hardened
Gentoo) is sourcebased, i'll need a complete toolchain to keep the
system up to date.

I don't like the idea of giving this tools to someone who might
compromise the server.

Is there a way to keep the toolchain on a thumbdrive or in an encrypted
partition, so that a possible attacker can't use it, while I have still
access to it? Does a how-to or a guide exist, which coud guide me
through the process of setting it up correctly?

A quick google-search turned up nothing, though it may be possible, that
I'm just using the wrong keywords.

Any help would be greatly appreciated!

Kind regards,

Hinnerk




^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2010-02-02 14:02 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2010-02-01 12:35 [gentoo-hardened] Remove toolchain? Hinnerk van Bruinehsen
2010-02-01 13:33 ` Ed W
2010-02-01 14:35 ` schism
2010-02-01 15:07   ` Shinkan
2010-02-02 11:34   ` basile
2010-02-02 13:37     ` Ed W

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox