Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×
Announcements Operating Systems BSD

RTMX O/S Donated to OpenBSD 12

joe_90 writes "According to RTMX the RTMX O/S has been donated to OpenBSD! Code integration will happen over the next few weeks and probably filter through to the rest of the open source world shortly afterwards. Cool, we get a real time POSIX feature set at last!"
This discussion has been archived. No new comments can be posted.

RTMX O/S Donated to OpenBSD

Comments Filter:
  • Let's see; if OpenBSD can guarantee security, guarantee availability, and (hopefully) integrate the RTMX code base, without disrupting the inherent stability, won't that start to give companies like QNX a run for their money?

    I am afraid to admit I don't know much about RTMX; has anyone used it before? How important is guaranteed availability to most applications? Is anyone reading this using RTMX for mission critical apps?

    BTW, I'm running the new OpenBSD 2.7 release at my web site, and it's been fantastic. It's running Apache with SSL, Samba for file and printer sharing, and Nethack for when I get bored. The install took about 1.5 hours.

  • There was a short discussion about the merits of giving UNIX systems real time capabilities.
    Its on the OpenBSD misc-mail list.

    http:// www.sigmasoft.com/~openbsd/archive/openbsd-misc/20 0006/msg00018.html [sigmasoft.com]

    and hey, "where's the beef" on that http://www.rtmx.com/ page? I want more details.

  • by Anonymous Coward
    , said the AC, as he wrote on his single processor celeron.

    Put your money where your mouth is AC. If want to see it (and we all know you don't care, you just want to complain) then send OpenBSD some money so they can continue SMP development.
  • Well, of course I would take Samba on OpenBSD over native NT any day, as long as Win2k DC support was not an issue. I was thinking more along the lines of webserver being secured with as little as possible running, and the file and print server being a seperate box.

    I would say that there are worse things to be running that Samba w/r/t exploitable vulnerabilities, but I just don't like the idea of broadcasting protocols living on the Net. If you have a real router (and it is set up properly), that's not a problem. But for instance with cable modems and some DSL solutions, the "l337 5kript |Of course the next tier would see your box as they walk the IP addresses, but that is another story.

    Your point with ftp/tftp is of course valid. That, telnet, most services starting with r, anything that uses clear text is pure satan. SSLftp [uq.oz.au] allows the use of DES, RSA, and uses MD5, and is mentioned in "Maximum Linux security" Which got a good review here even though no book can really teach you security.

    As for nethack, it is mostly harmless, I would imagine. But be careful of shopkeepers when you get blinded!

  • Sounds cool, but doesn't adding Samba add vulnerabilities? Apache is necessary, of course, but Nethack and Samba? Why would you use your web server for file and printer sharing? Would you like to see printouts from 1337 s|To me, it seems using an OpenBSD box like that defeats the purpose of OpenBSD.

  • Well put. If it were a web server that I had installed for a client, right now I'd be furiously scrambling to fix it...

    The Cisco 675 I'm using for the connection is actually fairly robust in terms of routing capabilities, despite it's deceptively small size. So far, so good, at least. ;-)

    Thanks for the tip about SSLftp. It sounds like just what I've been looking for.

    P.S. Doesn't the BSD section of slash seem peaceful today? I swear, I should just delete my bookmark of the front page and come here direct.

  • Indeed, Samba is inherently vulnerable to the same types of attacks as other file servers, including ftp and nfs. In fact, ftpd is even more vulnerable to attack than Samba is, because ftp passes network passwords in plaintext! Any bozo with a sniffer on your LAN, router, or subnet can snare passwords right out of an ftp logon. On the other hand, Samba can be set to use encrypted passwords, which is not 100% secure, but much better than plaintext.

    That, coupled with the fact that I've taken the liberty of creating user accounts on the OpenBSD box specifically to access Samba shares, (which have very few other privileges) makes me more worried about the physical security (i.e. theft, tornado, etc) of this particular box than I am about 'leet hax0rs right now.

    I'm not saying this is an ideal setup, but Samba is very useful to have in a shop with multiple clients running Windows NT, 98, MacOS, and Linux. The Samba team has actually done rather well at making it fairly (not totally, as you pointed out) secure, too. They have features that can limit access to files by IP, user-level security, and file-level security.

    In theory, you're right; a web server would have no other services running, for maximum security. In this case, it's impractical to buy yet another dedicated server, just for file serving. Most small shops like mine can't afford multiple physical servers, and it's becoming pretty commonplace to see a web server doing double or even triple duty as file servers or proxies. I'm not saying it's a good thing, it's just the way it is.

    Here's some food for thought, though; if you had to support a large client base of Winboxen, would you rather be running NT server, or OpenBSD with Samba? I know which one I chose. In fact, we're in the process of migrating most of our services (DNS, Proxy, etc) from NT and even Linux boxes to OpenBSD, purely because of the security and stability.

    Nethack, on the other hand, I can't justify. But then again, I don't need to, being the admin and all. ;-)

    BTW, I heard a rumour there is a more secure form of FTP available, that uses RSA or DSA encryption. Anyone know what that is?

  • OpenBSD strives to be the most secure OS in the world and remain free at the same time. not an easy task. Whether or not you agree with deRaadt's personality, remember your part in all of this. I agree with one AC in that if you are whining for features, buy the cd or a t-shirt or poster. They operate off of these revenues, not off of contracts or advertising or etc... So for all of us with halo's above our horns be sure to remember that. If you want something make a contribution. So like the ol' saying goes. Dont bitch about the farmers with your mouth full.
  • P.S. When I get hacked, I'll let you know so you can gloat about it and say, "I told you so!"

    ;-)

  • I went looking for some more details on RTMX O/S - OpenBSD integration and found an article at:
    http://www.bsdtoday.com/2000/June/Ne ws196.html [bsdtoday.com]

    "Randy Lewis of RTMX said they started providing real-time code to the OpenBSD project last October or November, but lately, the integration of the real-time code has become more emphasized."

    "Several engineers are currently working on integrating the RTMX O/S code into the OpenBSD 2.7 release, said Lewis. And he said that it will be completely integrated before the OpenBSD 2.8 release (in about six months). Once it is working on at least three architectures, Lewis said, it will be committed to OpenBSD and it will be officially announced."


  • Try Kerberos ftp and telnet works fine for us. http://www.pdc.kth.se/kth-krb/ /Tobias
  • Why a donation of mney?

    Why not a donation of time and skill and port the code fom the other BSD's to OpenBSD?

    I'll follow the example of Pat. Ya see, Pat wanted to send a $500 check to OpenBSD as a donation. He got an e-mail back saying 'that was not enough'. Given they arn't interested in $500, odds are most of us do not have checkbooks big enuf to bankroll the project.

Reality must take precedence over public relations, for Mother Nature cannot be fooled. -- R.P. Feynman

Working...