Gentoo Archives: gentoo-dev

From: Kacper Kowalik <xarthisius@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Moving more hardening features to default?
Date: Tue, 25 Oct 2011 14:19:41
Message-Id: 4EA6C548.3070206@gentoo.org
In Reply to: [gentoo-dev] Moving more hardening features to default? by "Paweł Hajdan
1 W dniu 20.10.2011 10:47, "Paweł Hajdan, Jr." pisze:
2 > I've noticed
3 > <http://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags>, i.e.
4 > Debian is starting to make more and more hardening features default, at
5 > least for most packages.
6 >
7 > Should we start doing that too? What are possible problems with that? It
8 > seems like it's mostly about USE=hardened, right?
9
10 Hi,
11 just a bunch of quick questions from a hardened newbie:
12
13 1) Is there are reason to do it beside "Debian is going to do it"?
14 2) What's wrong with current approach i.e. having seperate hardened profile?
15 3) What are the benefits for an average desktop user or high-performance
16 cluster?
17
18 While answering that, please skip things obvious like having "more
19 secure box".
20 Cheers,
21 Kacper

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies