Re: [gentoo-hardened] Proposed changes to predefined Hardened Gentoo WORKSTATION and SERVER settings

2011-02-21 Thread Anthony G. Basile
On 01/25/2011 09:19 AM, Thomas Sachau wrote: > Am 25.01.2011 13:26, schrieb Anthony G. Basile: >> Hi hardened users, >> >> Currently, when configuring the hardened kernel, the user is presented >> with some predefined Security Levels. (Security options -> Grsecuirty >> -> Security Level). Four of

Re: [gentoo-hardened] Adding ipv6 USE flag by default

2011-02-21 Thread schism
On Sat, Feb 19, 2011 at 12:02:20PM -0500, Anthony G. Basile wrote: | On 02/15/2011 02:12 PM, Chris Frederick wrote: | > Hi everyone, | > | > I'll chime in on this one. I want to clarify what is being asked, and add my two cents. | | Okay, I don't think there was a consensus on this issue, so I'

Re: [gentoo-hardened] Adding ipv6 USE flag by default

2011-02-21 Thread Tóth Attila
I've been running nut & upsd without ipv6 (either in kernel or userland) for ages on Hardened x86. Regards: Dw. -- dr Tóth Attila, Radiológus, 06-20-825-8057 Attila Toth MD, Radiologist, +36-20-825-8057 2011.Február 21.(H) 19:34 időpontban sch...@subverted.org ezt írta: > On Sat, Feb 19, 2011 at

Re: [gentoo-hardened] Adding ipv6 USE flag by default

2011-02-21 Thread Thomas Sachau
Am 21.02.2011 01:23, schrieb Aaron W. Swenson: > On 02/19/2011 12:02 PM, Anthony G. Basile wrote: >> On 02/15/2011 02:12 PM, Chris Frederick wrote: >>> Hi everyone, >>> >>> I'll chime in on this one. I want to clarify what is being asked, and add >>> my two cents. > >> Okay, I don't think there

Re: [gentoo-hardened] Adding ipv6 USE flag by default

2011-02-21 Thread klondike
El 21/02/11 21:34, Thomas Sachau escribió: > Am 21.02.2011 01:23, schrieb Aaron W. Swenson: >> On 02/19/2011 12:02 PM, Anthony G. Basile wrote: >>> On 02/15/2011 02:12 PM, Chris Frederick wrote: Hi everyone, I'll chime in on this one. I want to clarify what is being asked, and add

Re: [gentoo-hardened] unicode use flag toggle

2011-02-21 Thread Anthony G. Basile
On 02/20/2011 05:41 PM, William Throwe wrote: > I'm curious, why was the unicode use flag toggled (off to on) recently > (past couple weeks) on hardened/linux/x86 ? The only commit I see that > looks like it could have affected this has message "Avoid duplication of > USE flags in hardened profile

Re: [gentoo-hardened] SELinux policy module packages

2011-02-21 Thread Sven Vermeulen
On Sat, Feb 12, 2011 at 02:25:29PM -0600, Chris Richards wrote: > On 02/12/2011 02:03 PM, Sven Vermeulen wrote: > > Actually, I'm rather hoping that if everyone agrees on the guideline that > > SELinux policy packages are called "selinux-" with being > > the policy name used by the reference polic

Re: [gentoo-hardened] SELinux policy module packages

2011-02-21 Thread Anthony G. Basile
On 02/21/2011 04:57 PM, Sven Vermeulen wrote: > On Sat, Feb 12, 2011 at 02:25:29PM -0600, Chris Richards wrote: >> On 02/12/2011 02:03 PM, Sven Vermeulen wrote: >>> Actually, I'm rather hoping that if everyone agrees on the guideline that >>> SELinux policy packages are called "selinux-" with bein