( LGee | 2009. 01. 03., szo – 17:10 )

Grsecurity is about to be discontinued, unless...

As most of you probably know, a GPL licensed security solution called grsecurity has been available for the Linux kernel since a while. [1] It has a rather impressive list of features. [2] The lead developer has been maintaining patches for the 2.4 and the 2.6 branch since many years.

According to their developers, the patch includes various advanced security aspects which inspired several further projects. [3]

A week ago, the latest - and probably the last - release was published. The main developer lost its sole sponsor due to the financial crisis, so the future of the project is in danger. As a result, the future development of PaX, one of the definitive components of grsecurity is also in deep trouble.

In the past, there have been several requests toward the Linux developers to include grsecurity and PaX in the mainline kernel, but in vain. [6][7][8]

The common opinion of the developers of grsecurity, PaX and their users is that acceptance of the code into the kernel would be the best solution for saving the project, beside finding another long-term sponsor.

Before the project would finally die, I would like to draw your attention to the question of integration into the kernel again.

In short, I would like to know what is your answer to this request. And in the case if you see no chance for the integration, I would like to know what is the reason behind this decision.

Thanks and best regards,