Linux Source Distribution for Firewalls?
Peter Miller asks: "I want to build a new firewall. I want fine control over the exact contents of the disk. So I went looking at Linux source distributions. Every one I looked at (Gentoo, Lunar, etc) put the development environment on the final disk image. I don't think this is good for a firewall. Even Linux From Scratch does this, it isn't automated, and the nALFS UI is incomprehensible. I'd rather not have the package database in the final image, either. Micro-distros like FloppyFW doesn't publish their root image build script, and that's the route I'd like to follow. What do you security zealots out there use to build your firewalls from scratch?"
Maybe I'm missing something, but isn't coyote linux a somewhat obvious choice for this?
The scripts are open to modification as much or as little as you like. IIRC, the end of the script is building/compiling the packages you've requested.
There is very little future in being right when your boss is wrong.