From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) by finch.gentoo.org (Postfix) with ESMTP id 4707313800E for ; Tue, 7 Aug 2012 14:21:17 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 631AEE0764; Tue, 7 Aug 2012 14:21:09 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) by pigeon.gentoo.org (Postfix) with ESMTP id 1C641E0764 for ; Tue, 7 Aug 2012 14:21:09 +0000 (UTC) Received: from hornbill.gentoo.org (hornbill.gentoo.org [94.100.119.163]) (using TLSv1 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTPS id 57B6E643ED for ; Tue, 7 Aug 2012 14:21:08 +0000 (UTC) Received: from localhost.localdomain (localhost [127.0.0.1]) by hornbill.gentoo.org (Postfix) with ESMTP id 19060E5439 for ; Tue, 7 Aug 2012 14:21:07 +0000 (UTC) From: "Anthony G. Basile" To: gentoo-commits@lists.gentoo.org Content-Transfer-Encoding: 8bit Content-type: text/plain; charset=UTF-8 Reply-To: gentoo-dev@lists.gentoo.org, "Anthony G. Basile" Message-ID: <1344349218.4e82b545c8f84bbcd63615aacfd302942c89e629.blueness@gentoo> Subject: [gentoo-commits] dev/blueness:master commit in: sys-kernel/hardened-sources/ X-VCS-Repository: dev/blueness X-VCS-Files: sys-kernel/hardened-sources/ChangeLog sys-kernel/hardened-sources/Manifest sys-kernel/hardened-sources/hardened-sources-2.6.32-r120.ebuild sys-kernel/hardened-sources/hardened-sources-3.2.26.ebuild sys-kernel/hardened-sources/hardened-sources-3.5.0.ebuild X-VCS-Directories: sys-kernel/hardened-sources/ X-VCS-Committer: blueness X-VCS-Committer-Name: Anthony G. Basile X-VCS-Revision: 4e82b545c8f84bbcd63615aacfd302942c89e629 X-VCS-Branch: master Date: Tue, 7 Aug 2012 14:21:07 +0000 (UTC) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-commits@lists.gentoo.org X-Archives-Salt: 5cef5eff-d89d-4575-951d-bd5c096ea4ef X-Archives-Hash: 8ce99b6cc37502150dd459ce28cd8690 commit: 4e82b545c8f84bbcd63615aacfd302942c89e629 Author: Anthony G. Basile gentoo org> AuthorDate: Tue Aug 7 14:20:18 2012 +0000 Commit: Anthony G. Basile gentoo org> CommitDate: Tue Aug 7 14:20:18 2012 +0000 URL: http://git.overlays.gentoo.org/gitweb/?p=dev/blueness.git;a=commit;h=4e82b545 sys-kernel/hardened-sources: testing patchset 20120806 (Portage version: 2.1.10.65/git/Linux x86_64, signed Manifest commit with key 0xD0455535) --- sys-kernel/hardened-sources/ChangeLog | 9 ++++ sys-kernel/hardened-sources/Manifest | 29 ++++++++++-- .../hardened-sources-2.6.32-r120.ebuild | 51 ++++++++++++++++++++ .../hardened-sources-3.2.26.ebuild | 50 +++++++++++++++++++ .../hardened-sources/hardened-sources-3.5.0.ebuild | 50 +++++++++++++++++++ 5 files changed, 185 insertions(+), 4 deletions(-) diff --git a/sys-kernel/hardened-sources/ChangeLog b/sys-kernel/hardened-sources/ChangeLog index 4643b12..30a4074 100644 --- a/sys-kernel/hardened-sources/ChangeLog +++ b/sys-kernel/hardened-sources/ChangeLog @@ -1,5 +1,14 @@ +*hardened-sources-3.5.0 (07 Aug 2012) +*hardened-sources-3.2.26 (07 Aug 2012) +*hardened-sources-2.6.32-r120 (07 Aug 2012) + + 07 Aug 2012; Anthony G. Basile + +hardened-sources-2.6.32-r120.ebuild, +hardened-sources-3.2.26.ebuild, + +hardened-sources-3.5.0.ebuild: + testing patchset 20120806 + 02 Aug 2012; Anthony G. Basile -hardened-sources-3.4.7.ebuild: patchset 20120801 moved to tree diff --git a/sys-kernel/hardened-sources/Manifest b/sys-kernel/hardened-sources/Manifest index a8ad257..7d311b3 100644 --- a/sys-kernel/hardened-sources/Manifest +++ b/sys-kernel/hardened-sources/Manifest @@ -1,12 +1,33 @@ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 -MISC ChangeLog 31392 RMD160 81d6f51f08f53db4d89569db1b80940502643191 SHA1 03b5c0a87f787992094b464999e5619783ecb12f SHA256 cecf9452d01719485e37a2b453f413fcde743cb13a1e629fb07f11a9bf3ddc7b +DIST deblob-2.6.32 84094 RMD160 394f46ec5b869638a7bc2e87beb118167c9bd6cb SHA1 1a2a1efb72126609d9e3b9be99ae5be2751efd06 SHA256 de625f0bd221c9c38d4453f1b709622f222d86a0ae9350d2b7b0e17795e6de6d +DIST deblob-3.2 107602 RMD160 56f1dfe4f0254c802b49ea5220c4f67e56649852 SHA1 83421184d88d02e24de2adbc5debfb03454a7f4b SHA256 5db88405af6d51a77d84354afc3b2bdf673b1a5dcff37bb8db4ccbd12d91db20 +DIST deblob-3.5 109252 RMD160 6756953ec31ae7a081639d1a51c413d01432e62f SHA1 c4955e88d45f14b5bba8a895cbac7c748e856a0c SHA256 c3273c85e04b7f69acc271da7d2ffba41cf74b364b60f174a4459eec4fae8da9 +DIST deblob-check-2.6.32 247608 RMD160 840bf8a229ea79810519eee6241edb85b78a6562 SHA1 d45a24eb16e5ac956c0fcddbc1ac4d67e326c7b8 SHA256 da1aecdf3ab7f1207b90642d303e52262ccc2ed9e49739b729512b88950d17f3 +DIST deblob-check-3.2 423268 RMD160 8cb0c1b4a289db94543396c4445c4c7a35d2ba70 SHA1 01e50f824a577d15749f24643fdd136180342808 SHA256 9e67dd0885aa8ef356dbc15d487c8dea5a54f74c5b03a5d7946b65ee43f12638 +DIST deblob-check-3.5 464105 RMD160 473f6c601f54f93b0af6d194936a43799937466b SHA1 37d6f195c4cbbb0ba6c33d1ca08d35288a470c5c SHA256 e7f57e2e47651ea1eb757ca3c8c989edac0f38080d923adccdcdca215eb2bdd9 +DIST genpatches-2.6.32-48.base.tar.bz2 1033142 RMD160 c42b6a5edbb9965391bbcf6ee40bb79c2080f497 SHA1 95e90447ecd875228121fa32e8cf89eaabde5fa6 SHA256 7438e7b7c0ef32e0c639cf89c4f53a3bc7917ca466b1fcf3931adb65ad05b583 +DIST genpatches-2.6.32-48.extras.tar.bz2 24939 RMD160 055706793fb532caeb3d364c5e1bd0ad46aff4b2 SHA1 2a966a4d5f9a718a0d43c25df563d0377154996f SHA256 ee714d14310fd5242ce2e28a8f8e5fda63ba18957960814876506f8754b9d2a0 +DIST genpatches-3.2-16.base.tar.bz2 445530 RMD160 2032502bc7737ddbadff1b333192cdc305ed7a91 SHA1 434476cbe14904778731203f9491de16c554c23a SHA256 3a3d16b7ffa401598bd131a7e8b2996f729b51dd6e88cae79157fd6bca972842 +DIST genpatches-3.2-16.extras.tar.bz2 17208 RMD160 8324da51ce71afb0d375f34b0dd05209079bd7a3 SHA1 c2f4e029aebbc0ae82221aa2643de06a2d08cbd8 SHA256 7f60ab18e2965d024b7a36327577bcc771061f2cfac221ed475a6fd6b2ab89c7 +DIST genpatches-3.5-1.base.tar.bz2 5239 RMD160 fa9a68f7609998daaaa90d9885328fc6ccef18bc SHA1 06430f3913095f147e232a32147695d8170b5026 SHA256 d7e2918d49ffd481369df3907ce49fffb5fb5ddcb78c3b18e0c778dfdf1cbc08 +DIST genpatches-3.5-1.extras.tar.bz2 17507 RMD160 080f754e7249078551dfb550a9e0fc5c1d088d5b SHA1 32b7d7308e6c22b620435a0de956e1512a053192 SHA256 1b2294687e842e6450184ce2800ba3df8006ca47d75f95437a1e1d2976162727 +DIST hardened-patches-2.6.32-122.extras.tar.bz2 761788 RMD160 6428c797d1a861b758f2c6b460409c9f70f4f8d7 SHA1 eadc8c374dd56cffe825b0355b83fad11b31b2a3 SHA256 476be0df37a3be6f3b1ce74fc9ccb3991e70f474272498c8dcc16fafa6d5fc75 +DIST hardened-patches-3.2.26-1.extras.tar.bz2 671028 RMD160 46ab0f2c7b1f31cf5f6f67d1ecbeaed79d243737 SHA1 00eaef5e364f234e44b68cd2be77b5594f7145cc SHA256 dfe6266eaffda49564cd62f7a42b36246e767242097408f51353163149bd53bc +DIST hardened-patches-3.5.0-1.extras.tar.bz2 558850 RMD160 b59b13e22f2bee39f816e8890ce67eb1abe48c0b SHA1 07479d50013f1d4020bd29c498e928a74313b2b8 SHA256 7ebf33d9d31cace6b76c7a2a8e86ff1f9a8cb41db7612862b8ef0169ae503dd4 +DIST linux-2.6.32.tar.bz2 64424138 RMD160 b93742cbaf8174f2200d2dbef0d47a26c618039c SHA1 410b4fc818023bfef60064e973ff0ab46d3bfb19 SHA256 5099786d80b8407d98a619df00209c2353517f22d804fdd9533b362adcb4504e +DIST linux-3.2.tar.bz2 78147838 RMD160 15eb022305dfc8b0e1d59e396911fa86eb9c3bdf SHA1 3460afa971049aa79b8f914e1bfd619eedd19f55 SHA256 c881fc2b53cf0da7ca4538aa44623a7de043a41f76fd5d0f51a31f6ed699d463 +DIST linux-3.5.tar.bz2 80978443 RMD160 f82ed1e2528dbc8d2732f9ab995f639165f2a605 SHA1 d80e85147417605e125fc3fb263af85d7ffd1ad5 SHA256 6ab82beb8cbb895b7523daed7ec3ec5850cf460b96788056f1ef5135c852fd23 +EBUILD hardened-sources-2.6.32-r120.ebuild 1820 RMD160 b05ebde53d077676a8e4e16a7e46662d29eb7f37 SHA1 b6f038d591c4d48b77dee936290c32899d842fa6 SHA256 f274aafaedebee524693af69c198e341ed19b288f4008b32ba5de6e84c8127b7 +EBUILD hardened-sources-3.2.26.ebuild 1813 RMD160 915dc8dd20d9f99780313ca71116e168891a739f SHA1 b407ed1de80fdedfa1e5b9db5b7eec3afeb46022 SHA256 7477f6d65b3f894285b69fa8c11b241f69b1770fa9783c874c92dfdadbae6c02 +EBUILD hardened-sources-3.5.0.ebuild 1811 RMD160 3cf40514b585412ce0161d3952b98bbc5e895e80 SHA1 78d31c6ffee4e134a17286f49c30eb143251998f SHA256 09a4eceb4e8ef46295e36e703c0af3e4b13b188df0056893479e6141d4d4ca0b +MISC ChangeLog 31705 RMD160 1a6bd3fca7af40bee6e4228a8cdc0a15c940475c SHA1 01f005ddb14aa97a4630206137c124acf05a5a25 SHA256 66a173deb33e2d3bbecd0e3b99018dcee4be91c5768c116929bfd40f5329455e MISC metadata.xml 576 RMD160 f3d34140c6074436e3861275202f48ba32be6ccc SHA1 d1a11f53284e9ff098b6a5f14eaac6756e238588 SHA256 53e0d3bfb958bcbf62457a89abe76a7a6f5a2b1df5decb04bf8b840184cc5828 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.19 (GNU/Linux) -iEYEAREIAAYFAlAabxgACgkQl5yvQNBFVTWdFwCeP4obTkqHtznv44VUiEVMRe/P -yUwAniIKnJ7qmO5RtaKZNp22lfNkZygS -=Y2Fc +iEYEAREIAAYFAlAhJCIACgkQl5yvQNBFVTWongCfYk4EHJ81AO4tJ8HyGEoumktf +KyMAmwa//jxljQXLvwHyYUMZQtlF7t5I +=Zyju -----END PGP SIGNATURE----- diff --git a/sys-kernel/hardened-sources/hardened-sources-2.6.32-r120.ebuild b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r120.ebuild new file mode 100644 index 0000000..503e53a --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r120.ebuild @@ -0,0 +1,51 @@ +# Copyright 1999-2012 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-sources-2.6.32-r119.ebuild,v 1.1 2012/08/02 11:28:00 blueness Exp $ + +EAPI="4" + +ETYPE="sources" +K_WANT_GENPATCHES="base extras" +K_GENPATCHES_VER="48" +K_DEBLOB_AVAILABLE="1" + +inherit kernel-2 +detect_version + +HGPV="${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-122" +HGPV_URI="http://dev.gentoo.org/~blueness/hardened-sources/hardened-patches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI="${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST="${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE="4200_fbcondecor-0.9.6.patch" + +DESCRIPTION="Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_MINOR})" +HOMEPAGE="http://www.gentoo.org/proj/en/hardened/" +IUSE="deblob" + +KEYWORDS="~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +RDEPEND=">=sys-devel/gcc-4.5" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT="sys-apps/gradm-2.9.1*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity level:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity levels" + ewarn "should read the help associated with the level. Users importing a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =${GRADM_COMPAT}" + ewarn +} diff --git a/sys-kernel/hardened-sources/hardened-sources-3.2.26.ebuild b/sys-kernel/hardened-sources/hardened-sources-3.2.26.ebuild new file mode 100644 index 0000000..e32915d --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-3.2.26.ebuild @@ -0,0 +1,50 @@ +# Copyright 1999-2012 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-sources-3.2.24.ebuild,v 1.1 2012/08/02 11:30:37 blueness Exp $ + +EAPI="4" + +ETYPE="sources" +K_WANT_GENPATCHES="base extras" +K_GENPATCHES_VER="16" +K_DEBLOB_AVAILABLE="1" + +inherit kernel-2 +detect_version + +HGPV="${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-1" +HGPV_URI="http://dev.gentoo.org/~blueness/hardened-sources/hardened-patches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI="${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST="${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE="4200_fbcondecor-0.9.6.patch" + +DESCRIPTION="Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_MINOR})" +HOMEPAGE="http://www.gentoo.org/proj/en/hardened/" +IUSE="deblob" + +KEYWORDS="~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +RDEPEND=">=sys-devel/gcc-4.5" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT="sys-apps/gradm-2.9.1*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity level:" + ewarn "[server], [workstation], and [virtualization]. Those who intend to" + ewarn "use one of these predefined grsecurity levels should read the help" + ewarn "associated with the level. Because some options require >=gcc-4.5," + ewarn "users with more, than one version of gcc installed should use gcc-config" + ewarn "to select a compatible version." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =${GRADM_COMPAT}" + ewarn +} diff --git a/sys-kernel/hardened-sources/hardened-sources-3.5.0.ebuild b/sys-kernel/hardened-sources/hardened-sources-3.5.0.ebuild new file mode 100644 index 0000000..8191ff4 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-3.5.0.ebuild @@ -0,0 +1,50 @@ +# Copyright 1999-2012 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-sources-3.4.7.ebuild,v 1.1 2012/08/02 12:12:57 blueness Exp $ + +EAPI="4" + +ETYPE="sources" +K_WANT_GENPATCHES="base extras" +K_GENPATCHES_VER="1" +K_DEBLOB_AVAILABLE="1" + +inherit kernel-2 +detect_version + +HGPV="${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-1" +HGPV_URI="http://dev.gentoo.org/~blueness/hardened-sources/hardened-patches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI="${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST="${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE="4200_fbcondecor-0.9.6.patch" + +DESCRIPTION="Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_MINOR})" +HOMEPAGE="http://www.gentoo.org/proj/en/hardened/" +IUSE="deblob" + +KEYWORDS="~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +RDEPEND=">=sys-devel/gcc-4.5" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT="sys-apps/gradm-2.9.1*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity level:" + ewarn "[server], [workstation], and [virtualization]. Those who intend to" + ewarn "use one of these predefined grsecurity levels should read the help" + ewarn "associated with the level. Because some options require >=gcc-4.5," + ewarn "users with more, than one version of gcc installed should use gcc-config" + ewarn "to select a compatible version." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =${GRADM_COMPAT}" + ewarn +}