Gentoo Archives: gentoo-hardened

From: "Tóth Attila" <atoth@××××××××××.hu>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Adding ipv6 USE flag by default
Date: Mon, 21 Feb 2011 18:51:31
Message-Id: a482d35cdde64988bf3eac3672af0c3d.squirrel@atoth.sote.hu
In Reply to: Re: [gentoo-hardened] Adding ipv6 USE flag by default by schism@subverted.org
1 I've been running nut & upsd without ipv6 (either in kernel or userland)
2 for ages on Hardened x86.
3
4 Regards:
5 Dw.
6 --
7 dr Tóth Attila, Radiológus, 06-20-825-8057
8 Attila Toth MD, Radiologist, +36-20-825-8057
9
10 2011.Február 21.(H) 19:34 időpontban schism@×××××××××.org ezt írta:
11 > On Sat, Feb 19, 2011 at 12:02:20PM -0500, Anthony G. Basile wrote:
12 > | On 02/15/2011 02:12 PM, Chris Frederick wrote:
13 > | > Hi everyone,
14 > | >
15 > | > I'll chime in on this one. I want to clarify what is being asked, and
16 > add my two cents.
17 > |
18 > | Okay, I don't think there was a consensus on this issue, so I'm sure to
19 > | make someone unhappy. I think for now, we'll leave the status quo, ie
20 > | ipv6 off by default.
21 >
22 > Here's an issue I've found with ipv6, and not necessarily hardened: upsd
23 > fails to start if it can't autoload net-pf-10. Since in hardened we
24 > have the ability to disable module autoloading and I've used that to
25 > prevent my apps from emitting ipv6 I wasn't yet in control of, it was
26 > definitely an edge case hardened helped find. That particular app
27 > (sys-power/nut) doesn't even have an ipv6 USE flag.
28 >