Gentoo Archives: gentoo-hardened

From: Guillaume Ceccarelli <guillaume@××××××××××××.com>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Current kernel status
Date: Sat, 14 Apr 2018 12:38:10
Message-Id: C6BB3794-9B13-4B96-95F1-FC91E56132F6@gcs-ventures.com
In Reply to: [gentoo-hardened] Current kernel status by Ren Nyo
1 Hey Ren,
2
3
4 That’s too bad about minipli, but that’s understandable, especially considering the amount of work.
5
6 I can’t comment on the level of support, but Gentoo has always been about providing users with choices, so I don’t think your patches should be rejected. There’s still a pax_kernel use flag in play with several ebuilds, and that’s not ben deprecated or masked.
7
8 I think the best might be to either open bugs on bugs.gentoo.org <http://bugs.gentoo.org/> or make GitHub PRs with your changes here: https://github.com/gentoo/gentoo/pulls <https://github.com/gentoo/gentoo/pulls>
9
10
11 Cheers,
12
13 – Guillaume Ceccarelli
14
15 > On Apr 14, 2018, at 02:33, Ren Nyo <rennyonyo@×××××.com> wrote:
16 >
17 > I contacted minipli, and he said that unofficial grsecurity kernel is frozen. So we should not wait for him to port KPTI and Meltdown.
18 > Is hardened toolchain still supported by community?
19 > I successfully compiled with gcc 7.3.0 v17.0 profile with virtualbox 5.2.8 and nvidia-drivers 390.42, but had to update pax patches for them. Where should I share this patches?

Attachments

File name MIME type
smime.p7s application/pkcs7-signature