Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I've been using OpenBSD on my firewall for ages, but the fact that patches are only distributed in source form is a giant giant hassle. I understand the reasons for that but it's a level of inconvenience that I find unbearable today. On Debian it's just "apt-get upgrade". On OpenBSD it's so more difficult that I usually end just not patching it at all.


I must admit that apt was what converted me from FreeBSD to Ubuntu and convinced me to put up with the Linux kernel. It is so clearly The Right Thing.


I don't know how long ago you switched from FreeBSD but are you aware of FreeBSD's (relatively) new `pkg` tool and binary package repositories?


m:tier provides binary packages for -stable, if you want to run an OpenBSD box with less hassle: https://www.mtier.org/solutions/apps/

They also make binpatch-ng which helps you create binary patches which you can then distribute around to your machines.


To add to Gracana's comment. M:Tier provides openup tool which will update your base system and packages to match -stable. That way you don't have to patch and compile your kernel yourself. For trustworthiness of M:Tier, several project developers are employed by M:Tier.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: