Re: Re: [gentoo-dev] New item for sys-kernel/hardened-sources removal

Robert Sharp <selinux-/[email protected]> Wed, 16 Aug 2017 14:36:50 +0100
Newsgroups gmane.linux.gentoo.hardened
Message-ID <[email protected]>
This is a multi-part message in MIME format.
--------------CA3F3E646ACB27926F12D03D
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit

On 16/08/17 11:09, Francisco Blas Izquierdo Riera (klondike) wrote:
> El 16/08/17 a las 09:40, Marek Szuba escribió:
>> Two tiny bits of formal nitpicking from my side:
>>   - it's "grsecurity" (not a typo, they do use a lowercase g except when
>> the name appears at the beginning of a sentence), not "grsec";
>>   - the patches were not *distributed by* grsecurity, they *are*
>> grsecurity. The vendor's name is Open Source Security, Inc.
> Nowadays it is, but this hasn't always been the case. You'll notice the
> presence of a /dev/grsec and you'll also find grsec referenced accross
> some old patches. Anyways I changed it.
>
> The same applies to Open Source Security, Inc. the company was founded
> on 2008 but grsecurity has been around for much longer. That's why I
> prefer to refer to Brad Spengler and The PaX team here as they are still
> the real upstream behind Open Source Security, Inc.
>
>
Would anyone like to outline a simple process to migrate from 
hardened-sources + hardened tool-chain to gentoo-sources? Presumably if 
I just drag my config file across it will cause all sorts of problems? 
Do I need to work backwards through the hardening guide, for example?

Thanks


--------------CA3F3E646ACB27926F12D03D
Content-Type: text/html; charset=utf-8
Content-Transfer-Encoding: 8bit

<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <div class="moz-cite-prefix">On 16/08/17 11:09, Francisco Blas
      Izquierdo Riera (klondike) wrote:<br>
    </div>
    <blockquote type="cite"
      cite="mid:bdc66209-8bb9-f645-9714-8d3116a85e8e-aBrp7R+bbdUdnm+yROfE0A@public.gmane.org">
      <pre wrap="">El 16/08/17 a las 09:40, Marek Szuba escribió:
</pre>
      <blockquote type="cite">
        <pre wrap="">Two tiny bits of formal nitpicking from my side:
 - it's "grsecurity" (not a typo, they do use a lowercase g except when
the name appears at the beginning of a sentence), not "grsec";
 - the patches were not *distributed by* grsecurity, they *are*
grsecurity. The vendor's name is Open Source Security, Inc.
</pre>
      </blockquote>
      <pre wrap="">
Nowadays it is, but this hasn't always been the case. You'll notice the
presence of a /dev/grsec and you'll also find grsec referenced accross
some old patches. Anyways I changed it.

The same applies to Open Source Security, Inc. the company was founded
on 2008 but grsecurity has been around for much longer. That's why I
prefer to refer to Brad Spengler and The PaX team here as they are still
the real upstream behind Open Source Security, Inc.


</pre>
    </blockquote>
    <p><font face="Arial">Would anyone like to outline a simple process
        to migrate from hardened-sources + hardened tool-chain to
        gentoo-sources? Presumably if I just drag my config file across
        it will cause all sorts of problems? Do I need to work backwards
        through the hardening guide, for example?</font></p>
    <p><font face="Arial">Thanks</font><br>
    </p>
  </body>
</html>

--------------CA3F3E646ACB27926F12D03D--