Gentoo Archives: gentoo-hardened

From: "Tóth Attila" <atoth@××××××××××.hu>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] RELRO and Xorg
Date: Tue, 01 Oct 2013 19:59:29
Message-Id: 292a6e6ba6b43d9512d7ba20c37a50c9.squirrel@atoth.sote.hu
In Reply to: Re: [gentoo-hardened] RELRO and Xorg by Alex Efros
1 Do we really have to explicitly append relro+now ldflags, in case of the
2 hardened toolchain? Aren't these in effect by default? Isn't it enough
3 just to comment out the append lazy line, instead of modifying it?
4
5 Shouldn't we also recompile the video driver as well for the test?
6
7 How can I properly check that the binary has proper relro+now and not just
8 lazy?
9
10 Thx: Dw.
11 --
12 dr Tóth Attila, Radiológus, 06-20-825-8057
13 Attila Toth MD, Radiologist, +36-20-825-8057
14
15 2013.Október 1.(K) 21:34 időpontban Alex Efros ezt írta:
16 > Hi!
17 >
18 > On Tue, Oct 01, 2013 at 09:21:00PM +0200, Hinnerk van Bruinehsen wrote:
19 >> If you want to try, you could try the xorg-2.eclass from here:
20 >>
21 >> https://github.com/N8Fear/hvb-overlay/blob/master/eclass/xorg-2.eclass
22 >>
23 >> either by temporarily overwriting the one from the portage tree or
24 >> otherwise by
25 >
26 > Overwriting one from the portage is ok, I think. What next - rebuild
27 > x11-base/xorg-server-1.14.3 and restart Xorg to check is it works ok?
28 >
29 > --
30 > WBR, Alex.
31 >