Gentoo Archives: gentoo-dev

From: Mike Frysinger <vapier@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Moving more hardening features to default?
Date: Thu, 20 Oct 2011 12:57:53
Message-Id: 201110200857.00687.vapier@gentoo.org
In Reply to: Re: [gentoo-dev] Moving more hardening features to default? by Rich Freeman
1 On Thursday 20 October 2011 08:41:55 Rich Freeman wrote:
2 > 2011/10/20 Tomáš Chvátal:
3 > > I would say that most hardened features should be merged to to main
4 > > profile as soon as they won't cause major PITA for the regular users.
5 >
6 > I agree - especially for stuff that doesn't require active setup
7 > (stack protection, PaX, etc).
8
9 except PaX requires kernel patches and is known to break things. not an
10 acceptable default.
11 -mike

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-dev] Moving more hardening features to default? "Anthony G. Basile" <blueness@g.o>