> I generally reject the addition of security knobs, and push towards > making the security choice mandatory, as early as possible. We are > not quite in the position of making this choice. (Maybe a ports > developer can list some programs that require WX memory today)
I should stress this point I made earlier. I believe that "applying pressure which cannot be turned off" is the only way to pull the greater software ecosystem towards these kinds of decisions. Yes, there are pieces of software which are large and fight against the pressure, because they lack someone to invest time into solving the problem.