Gentoo Archives: gentoo-dev

From: "Francisco Blas Izquierdo Riera (klondike)" <klondike@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] New item for sys-kernel/hardened-sources removal
Date: Sat, 19 Aug 2017 11:01:56
Message-Id: 47bb3f3f-fcdf-aace-faba-d913fccaab8e@gentoo.org
In Reply to: Re: [gentoo-dev] New item for sys-kernel/hardened-sources removal by "Aaron W. Swenson"
1 El 19/08/17 a las 12:37, Aaron W. Swenson escribió:
2 > On 2017-08-15 17:01, Francisco Blas Izquierdo Riera (klondike) wrote:
3 >> Hi!
4 >>
5 >> I'd like to get this one up by Saturday so that we can proceed with
6 >> masking and removing of the hardened-sources after upstream stopped
7 >> releasing new patches.
8 > I hope I’m not too late.
9 >
10 >> We'd like to note that all the userspace hardening and MAC support
11 >> for SELinux provided by Gentoo Hardened will still remain there and
12 >> is unaffected by this removal.
13 > Where is there? I think you’re talking about the packages, but the news
14 > item is about the kernels. It would help to be more specific here.
15 >
16 > That’s all I had that the others hadn’t touched on.
17
18 Do you think something like that is better then?
19
20 We'd like to note that all the userspace hardening and MAC support
21 for SELinux provided by Gentoo Hardened will still remain available
22 on the portage. Keep in mind though that the security provided by
23 these features will be weakened a bit when using
24 sys-kernel/gentoo-sources. Also, all PaX related packages other than
25 the hardened-sources will remain available for the time being.

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-dev] New item for sys-kernel/hardened-sources removal "Aaron W. Swenson" <titanofold@g.o>