From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1Ql9Lr-0002JU-2S for garchives@archives.gentoo.org; Mon, 25 Jul 2011 00:48:55 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 9575121C100; Mon, 25 Jul 2011 00:48:47 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) by pigeon.gentoo.org (Postfix) with ESMTP id 3E9A821C100 for ; Mon, 25 Jul 2011 00:48:47 +0000 (UTC) Received: from pelican.gentoo.org (unknown [66.219.59.40]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTPS id B3A991B4020 for ; Mon, 25 Jul 2011 00:48:46 +0000 (UTC) Received: from localhost.localdomain (localhost [127.0.0.1]) by pelican.gentoo.org (Postfix) with ESMTP id 12ECD8003D for ; Mon, 25 Jul 2011 00:48:46 +0000 (UTC) From: "Anthony G. Basile" To: gentoo-commits@lists.gentoo.org Content-type: text/plain; charset=UTF-8 Reply-To: gentoo-dev@lists.gentoo.org, "Anthony G. Basile" Message-ID: <187e799f8e56c3b2aa0a5adbb7579896c679fafd.blueness@gentoo> Subject: [gentoo-commits] dev/blueness:master commit in: sys-kernel/hardened-sources/ X-VCS-Repository: dev/blueness X-VCS-Files: sys-kernel/hardened-sources/ChangeLog sys-kernel/hardened-sources/Manifest sys-kernel/hardened-sources/hardened-sources-2.6.32-r58.ebuild sys-kernel/hardened-sources/hardened-sources-2.6.39-r8.ebuild sys-kernel/hardened-sources/hardened-sources-3.0.ebuild X-VCS-Directories: sys-kernel/hardened-sources/ X-VCS-Committer: blueness X-VCS-Committer-Name: Anthony G. Basile X-VCS-Revision: 187e799f8e56c3b2aa0a5adbb7579896c679fafd Date: Mon, 25 Jul 2011 00:48:46 +0000 (UTC) Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-commits@lists.gentoo.org Content-Transfer-Encoding: quoted-printable X-Archives-Salt: X-Archives-Hash: 68c6b6c0eb856796acd1d0bb39142933 commit: 187e799f8e56c3b2aa0a5adbb7579896c679fafd Author: Anthony G. Basile gentoo org> AuthorDate: Mon Jul 25 00:48:24 2011 +0000 Commit: Anthony G. Basile gentoo org> CommitDate: Mon Jul 25 00:48:24 2011 +0000 URL: http://git.overlays.gentoo.org/gitweb/?p=3Ddev/blueness.git;a= =3Dcommit;h=3D187e799f sys-kernel/hardened-sources: testing patchset 20110719 (Portage version: 2.1.10.3/git/Linux x86_64, signed Manifest commit with = key 0xD0455535) --- sys-kernel/hardened-sources/ChangeLog | 9 ++++ sys-kernel/hardened-sources/Manifest | 24 ++++++++-- .../hardened-sources-2.6.32-r58.ebuild | 48 ++++++++++++++= +++++ .../hardened-sources-2.6.39-r8.ebuild | 48 ++++++++++++++= +++++ .../hardened-sources/hardened-sources-3.0.ebuild | 49 ++++++++++++++= ++++++ 5 files changed, 174 insertions(+), 4 deletions(-) diff --git a/sys-kernel/hardened-sources/ChangeLog b/sys-kernel/hardened-= sources/ChangeLog index 7d16cbd..59cf3ee 100644 --- a/sys-kernel/hardened-sources/ChangeLog +++ b/sys-kernel/hardened-sources/ChangeLog @@ -1,5 +1,14 @@ =20 =20 +*hardened-sources-3.0 (25 Jul 2011) +*hardened-sources-2.6.39-r8 (25 Jul 2011) +*hardened-sources-2.6.32-r58 (25 Jul 2011) + + 25 Jul 2011; Anthony G. Basile + +hardened-sources-2.6.32-r58.ebuild, +hardened-sources-2.6.39-r8.ebuil= d, + +hardened-sources-3.0.ebuild: + Testing patchset 20110719 + 18 Jul 2011; Anthony G. Basile -hardened-sources-2.6.32-r57.ebuild, -hardened-sources-2.6.39-r7.ebuil= d: moved to tree diff --git a/sys-kernel/hardened-sources/Manifest b/sys-kernel/hardened-s= ources/Manifest index c3808e7..cc15024 100644 --- a/sys-kernel/hardened-sources/Manifest +++ b/sys-kernel/hardened-sources/Manifest @@ -1,12 +1,28 @@ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 =20 -MISC ChangeLog 1048 RMD160 d93a7698533b5a1603f235d9946a8771ead5d30b SHA1= 50328216cc508921b2be7dcb758b444d899a8bd7 SHA256 fa50ef10212bc094710735c2= ec70aa8f9793918c2c0c13281024661785112bac +DIST deblob-2.6.32 84094 RMD160 394f46ec5b869638a7bc2e87beb118167c9bd6cb= SHA1 1a2a1efb72126609d9e3b9be99ae5be2751efd06 SHA256 de625f0bd221c9c38d4= 453f1b709622f222d86a0ae9350d2b7b0e17795e6de6d +DIST deblob-check-2.6.32 247608 RMD160 840bf8a229ea79810519eee6241edb85b= 78a6562 SHA1 d45a24eb16e5ac956c0fcddbc1ac4d67e326c7b8 SHA256 da1aecdf3ab7= f1207b90642d303e52262ccc2ed9e49739b729512b88950d17f3 +DIST genpatches-2.6.32-40.base.tar.bz2 954168 RMD160 09a4ab92cd4a0bb6200= a386182d60bf94fcea5dc SHA1 4b937d27ec83398efb5af8a71a8d2b893cfd56fc SHA25= 6 63caf952fa4351813db7c280751e71e635aa0df259ccfd153ecda5ad06960cbe +DIST genpatches-2.6.32-40.extras.tar.bz2 24897 RMD160 fac4ce9c15953ad811= b2c500b0145f2eebea5e2d SHA1 8f9cdf4bc06dc5e806698d93c002798faa53fda1 SHA2= 56 309841a94e96d7076bca7fb547caae9786e24258e032da242f64768a413ddbf0 +DIST genpatches-2.6.39-5.base.tar.bz2 109396 RMD160 4f7e0efad4744ce198b3= 39634ff1879378c7a082 SHA1 518e5b99a4590ecb80c8518a408c0894e9f2376e SHA256= 35b474a21ea78d1d89ad27cf2bc119ba7a43616bdc1eb6df8672287432c37532 +DIST genpatches-2.6.39-5.extras.tar.bz2 17192 RMD160 98260c85537596a9558= daaa693e4e7f5e0ba0c17 SHA1 1b154be1890d87564b4f20e7b09a9d62a2f01061 SHA25= 6 337069a8c019ef301830088343928560634e463857c6463332ecf6a5585f13e7 +DIST genpatches-3.0-1.base.tar.bz2 778 RMD160 65a26c74cf760011d541ccf6fc= b9c2d01e39c360 SHA1 f3d8f5c49ed0d5f58219fdcde91590aef59cc528 SHA256 35fb1= f64d2cb50a84e50a2530e472423d48b8ddeeb978e5c0189214599a15eda +DIST genpatches-3.0-1.extras.tar.bz2 17196 RMD160 1f07dc66b69ead82eedc18= 7359ce02eba42deedc SHA1 279588db240ac1bd945de9b0c15fca62ae2de30f SHA256 0= e536491b6ec28524004cdac57d2d057d73284b0a09249d17c84dc4d1a486498 +DIST hardened-patches-2.6.32-61.extras.tar.bz2 452203 RMD160 0483c9f37a0= 2bb48a734528bd47338975a352eff SHA1 d5fe4df3b24f9b0114ecc017d433d2e3e80ce0= 84 SHA256 a34fa2634fd4177d1931e2dd2440564caa94dc31d9d6713879deffcab290901= 5 +DIST hardened-patches-2.6.39-9.extras.tar.bz2 520242 RMD160 36f4ff941044= 7c73799d3265aba88693d418b2f5 SHA1 f4e609542977e83b6fa0af06c0b812745bc476f= c SHA256 352e0bb2d4f4a20e86d8e6d518dbae0f0d8ee072176a9b8181f8f09fcfaac77e +DIST linux-2.6.32.tar.bz2 64424138 RMD160 b93742cbaf8174f2200d2dbef0d47a= 26c618039c SHA1 410b4fc818023bfef60064e973ff0ab46d3bfb19 SHA256 5099786d8= 0b8407d98a619df00209c2353517f22d804fdd9533b362adcb4504e +DIST linux-2.6.39.tar.bz2 76096559 RMD160 feddc516bc15e78f12f611ff184d38= baa4eac4ee SHA1 68518112821e55f4ac1df64f2e0e809cedfcc5ef SHA256 584d17f2a= 3ee18a9501d7ff36907639e538cfdba4529978b8550c461d45c61f6 +DIST linux-3.0.tar.bz2 76753134 RMD160 e20c9564ec0c8128e28a4c038986d4d93= bbe34bb SHA1 45b64bffc860f70ab7956da4493c488010714650 SHA256 64b0228b54ce= 39b0b2df086109a7b737cde58e3df4f779506ddcaccee90356a0 +EBUILD hardened-sources-2.6.32-r58.ebuild 1758 RMD160 cfc5e08cef87b6fdca= 564dda5073306e30987a7c SHA1 ea9c9edff903d0992f1129495b053f3adc8cfdf7 SHA2= 56 60dc3df8a75701a488890f25503d0e7ad4bb4dc15d54791a0397158271080f17 +EBUILD hardened-sources-2.6.39-r8.ebuild 1755 RMD160 994307720df7ee91b0e= e20f940863f70775f4076 SHA1 44e5ff4554914bda424119c5539dff966c059b3c SHA25= 6 e60fc99896e82ba75d1086670256799d8d311270960858dd79e8fb59811b8218 +EBUILD hardened-sources-3.0.ebuild 1777 RMD160 83cc680557189d0fab86ce948= a78c8065c485269 SHA1 c6a2ca096e98551e1214d5f11e9f936d095fbe15 SHA256 c988= 0a19c149f74eef9048f47ede941164fe9227005a46280671f79ff33816e8 +MISC ChangeLog 1361 RMD160 25b223204f31d3928774eeba5650e08496e8b079 SHA1= af10d0023fe7d190165e7b65c104c0fc959630cf SHA256 53620a1af4294c699d13f348= 6efc268d8c75c74eaeb33f22f64ce8b9a22416c5 MISC metadata.xml 578 RMD160 7ea189a37d0f863ae9c52170bb85df27d21686fb SH= A1 4765c25d7770a69f7b9dda2b1accc8ff27b74ad0 SHA256 64140e091b51002a5355d8= fcfd351f2f39ed63da68af3a5751fc2058d0d03813 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.17 (GNU/Linux) =20 -iEYEAREIAAYFAk4kXy4ACgkQl5yvQNBFVTVKNgCgjiutuZt2MQnhsMfqWj3lnV4q -n/IAniIlu1g9NSlqVvmxDt2iXJckhpGK -=3D/pYL +iEYEAREIAAYFAk4svVgACgkQl5yvQNBFVTUXugCfQ0A7p1COYhSC3aC/9Q/O3YYi +hHsAniFEu0GbGLHn9EVxHeO7fFQUFSXw +=3DE37Z -----END PGP SIGNATURE----- diff --git a/sys-kernel/hardened-sources/hardened-sources-2.6.32-r58.ebui= ld b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r58.ebuild new file mode 100644 index 0000000..718f361 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r58.ebuild @@ -0,0 +1,48 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-2.6.32-r57.ebuild,v 1.1 2011/07/18 16:23:04 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"40" + +inherit kernel-2 +detect_version + +HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-61" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"4200_fbcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +} diff --git a/sys-kernel/hardened-sources/hardened-sources-2.6.39-r8.ebuil= d b/sys-kernel/hardened-sources/hardened-sources-2.6.39-r8.ebuild new file mode 100644 index 0000000..387b304 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-2.6.39-r8.ebuild @@ -0,0 +1,48 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-2.6.39-r7.ebuild,v 1.1 2011/07/18 16:26:01 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"5" + +inherit kernel-2 +detect_version + +HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-9" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"4200_fbcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +} diff --git a/sys-kernel/hardened-sources/hardened-sources-3.0.ebuild b/sy= s-kernel/hardened-sources/hardened-sources-3.0.ebuild new file mode 100644 index 0000000..471d1e8 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-3.0.ebuild @@ -0,0 +1,49 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-2.6.39-r7.ebuild,v 1.1 2011/07/18 16:26:01 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"1" + +inherit kernel-2 +detect_version + +#HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-1" +HGPV=3D"${KV_MAJOR}.${KV_PATCH}-1" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"4200_fbcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +}