Gentoo Archives: gentoo-hardened

From: Matthew Summers <msummers42@×××××.com>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Which profile?
Date: Tue, 10 Feb 2009 16:44:58
Message-Id: c8b556060902100844h3d57e4f9xd9f69458f5f083ec@mail.gmail.com
In Reply to: Re: [gentoo-hardened] Which profile? by Tom Hendrikx
1 On Tue, Feb 10, 2009 at 4:04 AM, Tom Hendrikx <tom@×××××××××.net> wrote:
2
3 > Clemente Aguiar schreef:
4 > > I understand that the profiles where updated recently (last year?).
5 > >
6 > > Available profile symlink targets:
7 > > [1] hardened/amd64 *
8 > > [2] hardened/amd64/multilib
9 > > [3] selinux/2007.0/amd64
10 > > [4] selinux/2007.0/amd64/hardened
11 > > [5] default/linux/amd64/2008.0
12 > > [6] default/linux/amd64/2008.0/desktop
13 > > [7] default/linux/amd64/2008.0/developer
14 > > [8] default/linux/amd64/2008.0/no-multilib
15 > > [9] default/linux/amd64/2008.0/server
16 > > [10] hardened/linux/amd64
17 > >
18 > > Available profile symlink targets:
19 > > [1] hardened/x86/2.6 *
20 > > [2] selinux/2007.0/x86
21 > > [3] selinux/2007.0/x86/hardened
22 > > [4] default/linux/x86/2008.0
23 > > [5] default/linux/x86/2008.0/desktop
24 > > [6] default/linux/x86/2008.0/developer
25 > > [7] default/linux/x86/2008.0/server
26 > > [8] hardened/linux/x86
27 > >
28 > >
29 > > I would like to know what hardened profile I should use when I build new
30 > > machines? (AMD64 as well as x86)
31 > >
32 > > Thanks.
33 > >
34 > >
35 > >
36 >
37 > A few days ago I switched an x86 machine from "default/linux/x86/2008.0"
38 > to "hardened/linux/x86/2008.0/server" after some arbitrary rummaging in
39 > the profiles directory. This gave me no problems other than the expected
40 > gcc-4 -> gcc-3 downgrade.
41 >
42 > I'm not sure why this profile isn't listed in the eselect profile
43 > listing above. It doesn't give me a big fat "unsupported profile"
44 > warning though...
45 >
46 > Regards,
47 > Tom
48 >
49 >
50
51 This is a confusing situation. I am currently using
52 /usr/portage/profiles/hardened/linux/amd64/2008.0.
53
54 This is not explicitly listed in the output of 'eselect profile list'.
55
56 Perhaps we could sort this out on the list & then I will write a quick doc
57 to place in the hardened web space to assist other users.
58
59 --
60 M. Summers
61
62 "...there are no rules here -- we're trying to accomplish something."
63 - Thomas A. Edison

Replies

Subject Author
Re: [gentoo-hardened] Which profile? Cyprien Nicolas <c.nicolas@×××××.com>