1 |
On 1/25/2010 2:10 PM, Mike Williams wrote: |
2 |
> On Monday 25 January 2010 03:28:24 Michael Edenfield wrote: |
3 |
>> On Sunday January 24 2010 07:34:31 pm Mike Williams wrote: |
4 |
>>> Is there any news on SSP in GCC 4? |
5 |
>> |
6 |
>> Use the gcc-4.4 out of the hardened-development overlay. I've been using |
7 |
>> the overlay (4.3, then 4.4) it on all of my servers, plus my personal |
8 |
>> machines, for almost a year now and so far have only had problems with 1 |
9 |
>> package (sbcl). |
10 |
> |
11 |
> Nice, thanks. |
12 |
> Anything else I need to unmask? Installing gcc-4.4.2-r2 and rebuilding system |
13 |
> hasn't broken my build box yet! |
14 |
> |
15 |
|
16 |
I also have glibc unmasked, but I think that's a remnant from a while |
17 |
ago and probably not necessary. The latest version in the overlay is 2.9. |
18 |
|
19 |
If you are running ~arch you'll pick up a few more things from the |
20 |
overlay, like grub and hardened-sources, automatically. If you're not |
21 |
running ~arch I'd suggest you unmask anything that the overlay has in |
22 |
it, since there are often PIE or SSP patches included in those versions. |
23 |
|
24 |
--Mike |