Re: [gentoo-hardened] Kernel won't build, but binutils is up to date

2011-01-08 Thread Anthony G. Basile
On 01/07/2011 03:09 PM, Cyprien Nicolas wrote: > On 01/07/2011 04:39 PM, Brian Davis wrote: >> Here's what happens when I try to build 2.6.36-r6: >> >> # make && make modules_install >> /usr/src/linux-2.6.36-hardened-r6/scripts/gcc-version.sh: line 25: ngcc: >> command not found >> /usr/src/linux-2

Re: [gentoo-hardened] UDEREF vs. Apache MMAP

2011-01-08 Thread pageexec
On 7 Jan 2011 at 23:57, Michael Orlitzky wrote: > I was able to figure out my new apache problem. It seems that > PAX_MEMORY_UDEREF and apache's EnableMMAP directive don't get along > sometimes: this one should have already been fixed in one of this week's patches, but i'm not sure if it's in any

Re: [gentoo-hardened] UDEREF vs. Apache MMAP

2011-01-08 Thread Anthony G. Basile
On 01/07/2011 11:57 PM, Michael Orlitzky wrote: > I was able to figure out my new apache problem. It seems that > PAX_MEMORY_UDEREF and apache's EnableMMAP directive don't get along > sometimes: > > http://httpd.apache.org/docs/2.2/mod/core.html#enablemmap > > With UDEREF enabled and MMAP on, I

[gentoo-hardened] SELinux ebuilds and patches

2011-01-08 Thread Sven Vermeulen
Hi Chris & hardened development, The ebuilds within the hardened-dev overlay for the SELinux policies are currently fully based upon the reference policy as released by Tresys. The changes made beyond the reference policy are currently added as patches in the files/ folder. However, as things pro

Re: [gentoo-hardened] UDEREF vs. Apache MMAP

2011-01-08 Thread Anthony G. Basile
On 01/08/2011 07:09 AM, pagee...@freemail.hu wrote: > On 7 Jan 2011 at 23:57, Michael Orlitzky wrote: > >> I was able to figure out my new apache problem. It seems that >> PAX_MEMORY_UDEREF and apache's EnableMMAP directive don't get along >> sometimes: > > this one should have already been fixed

Re: [gentoo-hardened] UDEREF vs. Apache MMAP

2011-01-08 Thread Michael Orlitzky
On 01/08/2011 01:22 PM, Anthony G. Basile wrote: > On 01/08/2011 07:09 AM, pagee...@freemail.hu wrote: >> On 7 Jan 2011 at 23:57, Michael Orlitzky wrote: >> >>> I was able to figure out my new apache problem. It seems that >>> PAX_MEMORY_UDEREF and apache's EnableMMAP directive don't get along >>>

Re: [gentoo-hardened] SELinux ebuilds and patches

2011-01-08 Thread Chris Richards
On 01/08/2011 07:45 AM, Sven Vermeulen wrote: Hi Chris& hardened development, The ebuilds within the hardened-dev overlay for the SELinux policies are currently fully based upon the reference policy as released by Tresys. The changes made beyond the reference policy are currently added as patch