SAQ wrote:
The important ones will be the services you use (SSH/SSL, HTTP, FTP), and those are the most likely to be third-party anyway.
Yep, exactly right. I roll my own builds of all those (excepting a commercial, third-party FTP server), plugging them in usually within hours of release. I'm even running openssl-1.0.0-beta2 for grins
I also offer all of the Nekochan builds for download if anyone desires to use them elsewhere.
Another part of the equation is the software you run on the stack (things like phpBB, Gallery, SquirrelMail, etc.). Those need to be kept up to date as well on any platform you ultimately choose.
Security is an ongoing process on any platform. The only truly secure system is one not connected to the public internet.
(And yes, hamei - I know php-5.3.0 was just released today. xcache doesn't support 5.3 just yet so I'm going to wait a little)