Gentoo Archives: gentoo-hardened

From: Matt Poletiek <chill550@×××××.com>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] My first hardened install
Date: Sun, 20 May 2007 10:34:12
Message-Id: 1d624cdd0705200332y4e0bc1afid6f80323e115377b@mail.gmail.com
In Reply to: Re: [gentoo-hardened] My first hardened install by Matt Poletiek
1 Im guessing this might require a toolchain/userland rebuild if
2 COMPAT_VDSO is the culprit since a recompile-reboot didnt change the
3 output of paxtest. Can anyone validate this?
4
5 On 5/20/07, Matt Poletiek <chill550@×××××.com> wrote:
6 > Yup, I sure do have that enabled. I am pretty sure I didnt check it so
7 > as far as I know its enabled by default in the
8 > hardened-gentoo-2.6.21-r1 package.
9 >
10 > Compiling the new kernel now. Again, anyone expect ill have to rebuild
11 > any of the toolchain/userland?
12 >
13 > Thanks for all the help so far guys!
14 >
15 > On 5/20/07, pageexec@××××××××.hu <pageexec@××××××××.hu> wrote:
16 > > On 20 May 2007 at 2:19, Matt Poletiek wrote:
17 > >
18 > > > PaX --->
19 > > > Non-executable pages --->
20 > > > [*] Enforce non-executable pages
21 > > >
22 > > > is the only option I see. I hope im blind :S
23 > >
24 > > you probably enabled COMPAT_VDSO, chances are you you don't really
25 > > need that on gentoo ;-).
26 > >
27 > > --
28 > > gentoo-hardened@g.o mailing list
29 > >
30 > >
31 >
32 >
33 > --
34 > Matthew Poletiek
35 > www.chill-fu.net
36 >
37
38
39 --
40 Matthew Poletiek
41 www.chill-fu.net
42 --
43 gentoo-hardened@g.o mailing list

Replies

Subject Author
Re: [gentoo-hardened] My first hardened install Michael <mycroes@××××××.nl>
Re: [gentoo-hardened] My first hardened install pageexec@××××××××.hu