Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-dev
Navigation:
Lists: gentoo-dev: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-dev@g.o
From: Kacper Kowalik <xarthisius@g.o>
Subject: Re: Moving more hardening features to default?
Date: Tue, 25 Oct 2011 16:18:48 +0200
W dniu 20.10.2011 10:47, "Paweł Hajdan, Jr." pisze:
> I've noticed
> <http://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags>, i.e.
> Debian is starting to make more and more hardening features default, at
> least for most packages.
> 
> Should we start doing that too? What are possible problems with that? It
> seems like it's mostly about USE=hardened, right?

Hi,
just a bunch of quick questions from a hardened newbie:

1) Is there are reason to do it beside "Debian is going to do it"?
2) What's wrong with current approach i.e. having seperate hardened profile?
3) What are the benefits for an average desktop user or high-performance
cluster?

While answering that, please skip things obvious like having "more
secure box".
Cheers,
Kacper

Attachment:
signature.asc (OpenPGP digital signature)
Replies:
Re: Moving more hardening features to default?
-- Rich Freeman
Re: Moving more hardening features to default?
-- Patrick Lauer
References:
Moving more hardening features to default?
-- Paweł Hajdan, Jr.
Navigation:
Lists: gentoo-dev: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Re: Re: Moving more hardening features to default?
Next by thread:
Re: Moving more hardening features to default?
Previous by date:
Re: Re: Building hardened gcc specs always, just not enabling them by default
Next by date:
Re: Moving more hardening features to default?


Updated Jun 29, 2012

Summary: Archive of the gentoo-dev mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.