Contributed by jolan on from the # ln -s AFGJ /etc/malloc.conf dept.
"The more hurdles that one has to jump through for good security, the less likely people will go through the trouble. OpenBSD allows even the most inexperienced users to take advantage of these technologies without any effort."
(Comments are closed)
By Anonymous Coward (195.224.109.30) on
This is similar to OpenBSD's W^X
A long time ago there was talk about support for MacPPC at the segment rather than the page level.
It looks like NetBSD have implemented it in their 2.0 releases.
Did this feature ever make it in to OpenBSD ? I thought for some reason it hadn't.
Comments
By Nate (65.95.228.253) on
Comments
By Anonymous Coward (83.226.184.135) on
Supported: sparc (sun4m, sun4d)
Unsupported sparc (sun, sun4c)
Notice the difference?
Comments
By Nate (65.95.228.253) on
By Anonymous Coward (12.33.122.68) on
Comments
By Anonymous Coward (195.224.109.30) on
a non-executable stack and heap compared to an executable one ?
Comments
By Anonymous Coward (147.162.55.11) on
Comments
By Anonymous Coward (131.202.10.5) on
Comments
By Anonymous Coward (195.224.109.30) on
On PowerPC the segment size is fixed which can be a bit awkward.
You can get per-page on book-e type chips, but none of the Macs have those types of chips.
By Anonymous Coward (195.224.109.30) on
By Marco Peereboom (67.64.89.177) marco@peereboom.us on http://www.peereboom.us
Comments
By Anonymous Coward (195.224.109.30) on
Comments
By Anonymous Coward (143.166.255.18) on
Comments
By Anonymous Coward (204.101.180.70) on
By Anonymous Coward (195.224.109.30) on
Comments
By Anonymous Coward (12.33.122.68) on
By Anonymous Coward (143.166.255.18) on
By Miod Vallat (213.41.172.147) miod@ on
As for the PowerPC execute permission granularity, some recent PowerPC processors indeed have a per-page execute bit, instead of a per-segment execute bit (the segment being 256MB). There are currently no plans under OpenBSD to use the finer granularity when available, but this may change with the ongoing G5 support. Of course, this will depend on people spare time as usual.
Comments
By Anonymous Coward (195.224.109.30) on
W^X on a G5