From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from <gentoo-commits+bounces-363619-garchives=archives.gentoo.org@lists.gentoo.org>) id 1Qimwr-0000pX-1e for garchives@archives.gentoo.org; Mon, 18 Jul 2011 12:29:21 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 2221421C0FF; Mon, 18 Jul 2011 12:29:13 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) by pigeon.gentoo.org (Postfix) with ESMTP id C1AAC21C0FF for <gentoo-commits@lists.gentoo.org>; Mon, 18 Jul 2011 12:29:12 +0000 (UTC) Received: from pelican.gentoo.org (unknown [66.219.59.40]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTPS id 23E1D2AC008 for <gentoo-commits@lists.gentoo.org>; Mon, 18 Jul 2011 12:29:12 +0000 (UTC) Received: from localhost.localdomain (localhost [127.0.0.1]) by pelican.gentoo.org (Postfix) with ESMTP id 58C3A8003D for <gentoo-commits@lists.gentoo.org>; Mon, 18 Jul 2011 12:29:11 +0000 (UTC) From: "Anthony G. Basile" <blueness@gentoo.org> To: gentoo-commits@lists.gentoo.org Content-type: text/plain; charset=UTF-8 Reply-To: gentoo-dev@lists.gentoo.org, "Anthony G. Basile" <blueness@gentoo.org> Message-ID: <8b51eb5351920edcfa6d70fd7ef157137db71ac6.blueness@gentoo> Subject: [gentoo-commits] dev/blueness:master commit in: sys-kernel/hardened-sources/ X-VCS-Repository: dev/blueness X-VCS-Files: sys-kernel/hardened-sources/ChangeLog sys-kernel/hardened-sources/Manifest sys-kernel/hardened-sources/hardened-sources-2.6.32-r57.ebuild sys-kernel/hardened-sources/hardened-sources-2.6.39-r7.ebuild X-VCS-Directories: sys-kernel/hardened-sources/ X-VCS-Committer: blueness X-VCS-Committer-Name: Anthony G. Basile X-VCS-Revision: 8b51eb5351920edcfa6d70fd7ef157137db71ac6 Date: Mon, 18 Jul 2011 12:29:11 +0000 (UTC) Precedence: bulk List-Post: <mailto:gentoo-commits@lists.gentoo.org> List-Help: <mailto:gentoo-commits+help@lists.gentoo.org> List-Unsubscribe: <mailto:gentoo-commits+unsubscribe@lists.gentoo.org> List-Subscribe: <mailto:gentoo-commits+subscribe@lists.gentoo.org> List-Id: Gentoo Linux mail <gentoo-commits.gentoo.org> X-BeenThere: gentoo-commits@lists.gentoo.org Content-Transfer-Encoding: quoted-printable X-Archives-Salt: X-Archives-Hash: 9bf31c05bc5eeeb32459716309b23c96 commit: 8b51eb5351920edcfa6d70fd7ef157137db71ac6 Author: Anthony G. Basile <blueness <AT> gentoo <DOT> org> AuthorDate: Mon Jul 18 12:28:48 2011 +0000 Commit: Anthony G. Basile <blueness <AT> gentoo <DOT> org> CommitDate: Mon Jul 18 12:28:48 2011 +0000 URL: http://git.overlays.gentoo.org/gitweb/?p=3Ddev/blueness.git;a= =3Dcommit;h=3D8b51eb53 sys-kernel/hardened-sources: testing patchset 20110716 (Portage version: 2.1.10.3/git/Linux x86_64, signed Manifest commit with = key 0xD0455535) --- sys-kernel/hardened-sources/ChangeLog | 7 +++ sys-kernel/hardened-sources/Manifest | 20 +++++++-- .../hardened-sources-2.6.32-r57.ebuild | 48 ++++++++++++++= ++++++ .../hardened-sources-2.6.39-r7.ebuild | 48 ++++++++++++++= ++++++ 4 files changed, 119 insertions(+), 4 deletions(-) diff --git a/sys-kernel/hardened-sources/ChangeLog b/sys-kernel/hardened-= sources/ChangeLog index f4adf93..1d0e211 100644 --- a/sys-kernel/hardened-sources/ChangeLog +++ b/sys-kernel/hardened-sources/ChangeLog @@ -1,5 +1,12 @@ =20 =20 +*hardened-sources-2.6.39-r7 (18 Jul 2011) +*hardened-sources-2.6.32-r57 (18 Jul 2011) + + 18 Jul 2011; Anthony G. Basile <blueness@gentoo.org> + +hardened-sources-2.6.32-r57.ebuild, +hardened-sources-2.6.39-r7.ebuil= d: + testing patchset 20110716 + *hardened-sources-2.6.39-r6 (12 Jul 2011) *hardened-sources-2.6.32-r56 (12 Jul 2011) =20 diff --git a/sys-kernel/hardened-sources/Manifest b/sys-kernel/hardened-s= ources/Manifest index b816ef8..0c80d47 100644 --- a/sys-kernel/hardened-sources/Manifest +++ b/sys-kernel/hardened-sources/Manifest @@ -1,12 +1,24 @@ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 =20 -MISC ChangeLog 656 RMD160 8299bff7f59941ded87fed5a89a251efa0f9e4eb SHA1 = dedb4f03208925a66055fb33e6d0b892bbe44170 SHA256 59b4850ddaa44b1398e6f9ce5= dfd80c812af6a2b3d9e432577c65860adecf62e +DIST deblob-2.6.32 84094 RMD160 394f46ec5b869638a7bc2e87beb118167c9bd6cb= SHA1 1a2a1efb72126609d9e3b9be99ae5be2751efd06 SHA256 de625f0bd221c9c38d4= 453f1b709622f222d86a0ae9350d2b7b0e17795e6de6d +DIST deblob-check-2.6.32 247608 RMD160 840bf8a229ea79810519eee6241edb85b= 78a6562 SHA1 d45a24eb16e5ac956c0fcddbc1ac4d67e326c7b8 SHA256 da1aecdf3ab7= f1207b90642d303e52262ccc2ed9e49739b729512b88950d17f3 +DIST genpatches-2.6.32-40.base.tar.bz2 954168 RMD160 09a4ab92cd4a0bb6200= a386182d60bf94fcea5dc SHA1 4b937d27ec83398efb5af8a71a8d2b893cfd56fc SHA25= 6 63caf952fa4351813db7c280751e71e635aa0df259ccfd153ecda5ad06960cbe +DIST genpatches-2.6.32-40.extras.tar.bz2 24897 RMD160 fac4ce9c15953ad811= b2c500b0145f2eebea5e2d SHA1 8f9cdf4bc06dc5e806698d93c002798faa53fda1 SHA2= 56 309841a94e96d7076bca7fb547caae9786e24258e032da242f64768a413ddbf0 +DIST genpatches-2.6.39-5.base.tar.bz2 109396 RMD160 4f7e0efad4744ce198b3= 39634ff1879378c7a082 SHA1 518e5b99a4590ecb80c8518a408c0894e9f2376e SHA256= 35b474a21ea78d1d89ad27cf2bc119ba7a43616bdc1eb6df8672287432c37532 +DIST genpatches-2.6.39-5.extras.tar.bz2 17192 RMD160 98260c85537596a9558= daaa693e4e7f5e0ba0c17 SHA1 1b154be1890d87564b4f20e7b09a9d62a2f01061 SHA25= 6 337069a8c019ef301830088343928560634e463857c6463332ecf6a5585f13e7 +DIST hardened-patches-2.6.32-60.extras.tar.bz2 451650 RMD160 182ad8dbc95= 61d48edae538c41dc887beb8dcb91 SHA1 33b76959b105ae24243f6dc6bd656ed8fa080f= de SHA256 a28a56ad934fd63a8537228fc49b2b0d413dc39a01e33b587a0a616bbf2e339= 7 +DIST hardened-patches-2.6.39-8.extras.tar.bz2 520522 RMD160 f55396e300d3= 061ae7904f1768feb5a2bf61b6aa SHA1 7f9352b7c95f8c8fc4a770abd1aa7916ba13b6c= 9 SHA256 0edc43c416705f5a0fa5f24ae5e4f85d02d98d553e3e539257339bc18b3434e9 +DIST linux-2.6.32.tar.bz2 64424138 RMD160 b93742cbaf8174f2200d2dbef0d47a= 26c618039c SHA1 410b4fc818023bfef60064e973ff0ab46d3bfb19 SHA256 5099786d8= 0b8407d98a619df00209c2353517f22d804fdd9533b362adcb4504e +DIST linux-2.6.39.tar.bz2 76096559 RMD160 feddc516bc15e78f12f611ff184d38= baa4eac4ee SHA1 68518112821e55f4ac1df64f2e0e809cedfcc5ef SHA256 584d17f2a= 3ee18a9501d7ff36907639e538cfdba4529978b8550c461d45c61f6 +EBUILD hardened-sources-2.6.32-r57.ebuild 1758 RMD160 f59c8cb381eca71db6= 0fbbe84685b7a021fd268a SHA1 4b18cdf966fbf7f73534820ed9a89178bd068f9f SHA2= 56 39a883f3bc04a833a3ddeb1ed575a8d89303b0fb81d516735a71590de8590b4a +EBUILD hardened-sources-2.6.39-r7.ebuild 1755 RMD160 cf1a613cf6022db113c= 58a068b0029b2393d0be0 SHA1 f798b530ae229ba03d110b756f8ba7b0cd06a323 SHA25= 6 5e344dd254b5d2834dec68cabf094cda7ea3885ed2a8745be1ecb08008de3822 +MISC ChangeLog 901 RMD160 0319f5e133a70bcbc602da1754c0fbcf3c3d2728 SHA1 = 5f7ae2ccedb4dabd188f67ce79cbe8b172f9ad65 SHA256 8daa09d4edc580ec9b8b28768= 5099cf87d99ffde8c7700c00b6721e12eff0c25 MISC metadata.xml 578 RMD160 7ea189a37d0f863ae9c52170bb85df27d21686fb SH= A1 4765c25d7770a69f7b9dda2b1accc8ff27b74ad0 SHA256 64140e091b51002a5355d8= fcfd351f2f39ed63da68af3a5751fc2058d0d03813 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.17 (GNU/Linux) =20 -iEYEAREIAAYFAk4h5scACgkQl5yvQNBFVTUE9QCfTxlDNMSJQq3KzbxrbzSQiH2g -is0An162T/HAFTOjOCJ9PGI9ggIJmx+2 -=3D+1BR +iEYEAREIAAYFAk4kJv8ACgkQl5yvQNBFVTUAowCfePybBHtlh9gN4ep1Cm1KO5D+ +F5oAoIYdovIBmvBdeTM1JrE93wWK33YZ +=3DjEP4 -----END PGP SIGNATURE----- diff --git a/sys-kernel/hardened-sources/hardened-sources-2.6.32-r57.ebui= ld b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r57.ebuild new file mode 100644 index 0000000..373bbca --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r57.ebuild @@ -0,0 +1,48 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-2.6.32-r56.ebuild,v 1.1 2011/07/13 12:04:34 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"40" + +inherit kernel-2 +detect_version + +HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-60" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"4200_fbcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +} diff --git a/sys-kernel/hardened-sources/hardened-sources-2.6.39-r7.ebuil= d b/sys-kernel/hardened-sources/hardened-sources-2.6.39-r7.ebuild new file mode 100644 index 0000000..4fe22a2 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-2.6.39-r7.ebuild @@ -0,0 +1,48 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-2.6.39-r6.ebuild,v 1.1 2011/07/13 14:46:17 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"5" + +inherit kernel-2 +detect_version + +HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-8" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"4200_fbcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +}