On Tue, 9 May 2017 23:18:20 +0200 Hanno Böck <ha...@gentoo.org> wrote:
> Hi, > > On Tue, 09 May 2017 15:55:36 -0500 > Matthias Maier <tam...@gentoo.org> wrote: > > > Well, Alexis certainly makes a strong point. Breaking installed > > static archives by changing a use flag shouldn't be as easy as > > changing a useflag. So we might simply use.force the pie use flag > > depending on hardened/non-hardened profiles. > > While I understand that enabling pie requires some more planning to > avoid breakage, I hope this is not the final solution we aim for. I > really think it's about time that pie becomes the default in Gentoo. For a transition we can probably build everything with -fPIE but not link with -pie. If we want that to happen fast, gcc-6 might do that and gcc-7 add the -pie option. Alexis.