From mboxrd@z Thu Jan 1 00:00:00 1970 Reply-To: kernel-hardening@lists.openwall.com Date: Thu, 6 Oct 2016 04:27:01 +0200 From: Jann Horn Message-ID: <20161006022701.GX14666@pc.thejh.net> References: <20161003193418.GA7071@openwall.com> <20161005223220.GA6533@openwall.com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="gn1ylXQ+YRNuZICZ" Content-Disposition: inline In-Reply-To: <20161005223220.GA6533@openwall.com> Subject: Re: [kernel-hardening] Any artists around? To: Solar Designer Cc: kernel-hardening@lists.openwall.com List-ID: --gn1ylXQ+YRNuZICZ Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Thu, Oct 06, 2016 at 12:32:20AM +0200, Solar Designer wrote: > On Mon, Oct 03, 2016 at 12:59:31PM -0700, Kees Cook wrote: > > On Mon, Oct 3, 2016 at 12:34 PM, Solar Designer wr= ote: > > > On Mon, Oct 03, 2016 at 12:16:07PM -0700, Kees Cook wrote: > > >> Does anyone have some suggestions or sketches for a logo we could us= e? > > > > > > How about a bikeshed? It would convey how hardening is not "perfect > > > security", and ack the irony of spending time on discussing a logo. > > > I don't even have a preference as to which color the bikeshed should = be. > >=20 > > Haha, yes, exactly. This is the opening image I used in my slides > > covering the uid-0/ring-0 lockdown series at LSS on 2014: > >=20 > > https://outflux.net/bikeshed.jpg >=20 > Oh, cool. Meanwhile, my Twitter poll ended in favor of bikeshed: >=20 > https://twitter.com/solardiz/status/783033528736940032 >=20 > "What should (Linux) Kernel Self Protection Project's logo be? >=20 > 32% A fancy penguin > 42% A bikeshed > 7% Other (please tweet what) > 19% No logo >=20 > 116 votes" >=20 > A bikeshed would also ack the grsecurity project's opinion (as I > understand it) that trying to upstream hardening changes (through the > hoops) is sort of bikeshedding (in comparison with having made such > changes) or that the typical initial response (those hoops) is > bikeshedding, and that some of those changes (not in grsecurity) are a > bikeshed on their own. This shouldn't stop us, but we can troll > ourselves a bit by ack'ing this dissenting opinion in the logo. ;-) A bikeshed sounds good, but maybe we can split the bikeshed image into a few tiles and rearrange them? You know, kASLR? --gn1ylXQ+YRNuZICZ Content-Type: application/pgp-signature; name="signature.asc" Content-Description: Digital signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBAgAGBQJX9bZ1AAoJED4KNFJOeCOoJWsQAMd9llBDSWO+HN3utjkUXVrD OujSCJC+gNR381Aci6A1oQl1j+lZDGQvrYLakcSzQ9rJex5Y/xN0zDTjXxudaemZ EaCaNlmBISrdYsQPbGSe2QZJaqqSpO+szBruFDWEf+DY17mbHyAdCkaPp819uZqu u7CgJfeisHdFaAocL00ZZJ6GFByaJRMSI+XEgL0JWHksk2tqAbTxJVoE4771KyVy oZbP5CPkRV39psMZToZ9915F2mkOYTIu8Ab5rPJ5hoz7OPwsae1XZBsRnVbqwpKv qs4VXGbPYP1VDjdV5ys1PrZr40H95D1tpIrlphXZZEOldbrgYI76cj8vIJETyawW Mc0umiilRd8rIeJ3a8GYgCN1z7+5IH+wqi6aQ+y8SWfzKp40wwh3GJRBlaxOKeST X0p9AwZiu7iYZ69ZHfvNgZTnC6fMm+gW9NcYF2XL2EdwS1LuUPUGGNMEn0f4Xwcx HLqG8LVrKElgn4yVHn3GdZVIpBSZYswQrfvY/HU5FsKU58VychksobE6AzVWIVAR Y5K8ONM5DIfc6+TSdGWtJ6pEcX5Q7Ln4LYRdDCW1KaWJDwxMNpA5QQacdlYfr+jF WTNRjqde+b7ElScIestFFzdmsscWcar+ZLeK2JIulYIIXqF8wwaJew05bZo6PEf+ LFJ/s3gFDu3BBLfajxP/ =Jk6H -----END PGP SIGNATURE----- --gn1ylXQ+YRNuZICZ--