Re: [gentoo-hardened] Re: [gentoo-hardened] Any hardened features to protect from CVE-2016–5195 like vulnerabilities?

2016-12-06 Thread R0b0t1
Apologies, a combination of a different keyboard and gmail shortcuts cut that off. I meant to link to: https://en.wikipedia.org/wiki/Row_hammer. I expect bugs similar to rowhammer and mad COW to become more pervasive as architectures shift towards a combination of high core count, application spec

Re: [gentoo-hardened] Re: [gentoo-hardened] Any hardened features to protect from CVE-2016–5195 like vulnerabilities?

2016-12-06 Thread R0b0t1
On Mon, Dec 5, 2016 at 1:45 AM, "Tóth Attila" wrote: > 2016.December 5.(H) 07:39 időpontban Andrew Savchenko ezt írta: >> 3) Can some hardware features like Intel TSX be used to protect >> from such race conditions? > > Just a sidenote on TSX: although it sounds procmising, I've been seeing > mult

[gentoo-hardened] Ddclient sending emails on a Postfix server

2016-12-06 Thread Robert Sharp
I am running ddclient on my router together with a relaying postfix server. Unfortunately I have configured ddclient to send emails when it has problems and I have had quite a few problems with AVCs as a result. I have figured most of them out now but there is one that I am stuck on. It appear