#busybox

diane_a@diasp.org

So...I'm thinking of setting up another server on the internet again. I wonder how safe it can be...

Decades ago I used to have a public facing headless server on the internet, with a minimal configuration many today would consider an embedded computer. It was Gentoo stripped down to the very basics of whatever I needed, no more, no initrd, systemd, etc. The kernel compile had everything stripped down, no multicasting or unused TCP features. I would often watch every packet across the ether and the silly portscans and fishing http gets. Of course, no java* or systemd, as they are huge bloat magnets for collecting packages riddled with CVE issues. I never had a security issue after years of solid uptime. What killed it was an extended power outage depleting the UPS after a week and the hard drive refused to spin back up...

I might go with something different this time, like #FreeBSD, or something like #busybox

Something safe enough to run a NAS with... yes, on the same box facing the internet, so vetted security will be a pretty big thing. Auditing it should be a lot of fun. What could possibly go wrong...