From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from <gentoo-commits+bounces-400837-garchives=archives.gentoo.org@lists.gentoo.org>) id 1RPjB8-0006Xy-Uv for garchives@archives.gentoo.org; Sun, 13 Nov 2011 23:09:35 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 8D10E21C047; Sun, 13 Nov 2011 23:09:26 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) by pigeon.gentoo.org (Postfix) with ESMTP id 4F15B21C047 for <gentoo-commits@lists.gentoo.org>; Sun, 13 Nov 2011 23:09:26 +0000 (UTC) Received: from pelican.gentoo.org (unknown [66.219.59.40]) (using TLSv1 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTPS id BA32B1B4008 for <gentoo-commits@lists.gentoo.org>; Sun, 13 Nov 2011 23:09:25 +0000 (UTC) Received: from localhost.localdomain (localhost [127.0.0.1]) by pelican.gentoo.org (Postfix) with ESMTP id 30EF980042 for <gentoo-commits@lists.gentoo.org>; Sun, 13 Nov 2011 23:09:25 +0000 (UTC) From: "Anthony G. Basile" <blueness@gentoo.org> To: gentoo-commits@lists.gentoo.org Content-type: text/plain; charset=UTF-8 Reply-To: gentoo-dev@lists.gentoo.org, "Anthony G. Basile" <blueness@gentoo.org> Message-ID: <a21ce8f2bf11f2d1ed04c47eda686f1992429937.blueness@gentoo> Subject: [gentoo-commits] dev/blueness:master commit in: sys-kernel/hardened-sources/ X-VCS-Repository: dev/blueness X-VCS-Files: sys-kernel/hardened-sources/ChangeLog sys-kernel/hardened-sources/Manifest sys-kernel/hardened-sources/hardened-sources-2.6.32-r74.ebuild sys-kernel/hardened-sources/hardened-sources-3.0.9.ebuild X-VCS-Directories: sys-kernel/hardened-sources/ X-VCS-Committer: blueness X-VCS-Committer-Name: Anthony G. Basile X-VCS-Revision: a21ce8f2bf11f2d1ed04c47eda686f1992429937 Date: Sun, 13 Nov 2011 23:09:25 +0000 (UTC) Precedence: bulk List-Post: <mailto:gentoo-commits@lists.gentoo.org> List-Help: <mailto:gentoo-commits+help@lists.gentoo.org> List-Unsubscribe: <mailto:gentoo-commits+unsubscribe@lists.gentoo.org> List-Subscribe: <mailto:gentoo-commits+subscribe@lists.gentoo.org> List-Id: Gentoo Linux mail <gentoo-commits.gentoo.org> X-BeenThere: gentoo-commits@lists.gentoo.org Content-Transfer-Encoding: quoted-printable X-Archives-Salt: c8617529-9e44-4cde-a67c-11ecae3975b6 X-Archives-Hash: 4d10d87bf31386321eb275ec15c03485 commit: a21ce8f2bf11f2d1ed04c47eda686f1992429937 Author: Anthony G. Basile <blueness <AT> gentoo <DOT> org> AuthorDate: Sun Nov 13 23:09:18 2011 +0000 Commit: Anthony G. Basile <blueness <AT> gentoo <DOT> org> CommitDate: Sun Nov 13 23:09:18 2011 +0000 URL: http://git.overlays.gentoo.org/gitweb/?p=3Ddev/blueness.git;a= =3Dcommit;h=3Da21ce8f2 sys-kernel/hardened-sources: testing patchset 20111112 (Portage version: 2.1.10.11/git/Linux x86_64, signed Manifest commit with= key 0xD0455535) --- sys-kernel/hardened-sources/ChangeLog | 7 +++ sys-kernel/hardened-sources/Manifest | 22 +++++++-- .../hardened-sources-2.6.32-r74.ebuild | 49 ++++++++++++++= ++++++ .../hardened-sources/hardened-sources-3.0.9.ebuild | 49 ++++++++++++++= ++++++ 4 files changed, 123 insertions(+), 4 deletions(-) diff --git a/sys-kernel/hardened-sources/ChangeLog b/sys-kernel/hardened-= sources/ChangeLog index 266e284..1c2ae3c 100644 --- a/sys-kernel/hardened-sources/ChangeLog +++ b/sys-kernel/hardened-sources/ChangeLog @@ -1,5 +1,12 @@ =20 =20 +*hardened-sources-3.0.9 (13 Nov 2011) +*hardened-sources-2.6.32-r74 (13 Nov 2011) + + 13 Nov 2011; Anthony G. Basile <blueness@gentoo.org> + +hardened-sources-2.6.32-r74.ebuild, +hardened-sources-3.0.9.ebuild: + testing patchset 20111112 + 30 Oct 2011; Anthony G. Basile <blueness@gentoo.org> -hardened-sources-2.6.32-r73.ebuild, -hardened-sources-3.0.8.ebuild: Moved to tree diff --git a/sys-kernel/hardened-sources/Manifest b/sys-kernel/hardened-s= ources/Manifest index daf6d9d..79e2b2a 100644 --- a/sys-kernel/hardened-sources/Manifest +++ b/sys-kernel/hardened-sources/Manifest @@ -1,12 +1,26 @@ -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 =20 -MISC ChangeLog 7095 RMD160 fec4cde10512c32e2d0d13ce02d4b6037fcc4d1f SHA1= 9117342bc8791a9ab35623ed125e34a9f1982288 SHA256 40c55d8ef329fe953122f26d= f0cc444f87b9291581f17e01e00d79d2caa607e1 +DIST deblob-2.6.32 84094 RMD160 394f46ec5b869638a7bc2e87beb118167c9bd6cb= SHA1 1a2a1efb72126609d9e3b9be99ae5be2751efd06 SHA256 de625f0bd221c9c38d4= 453f1b709622f222d86a0ae9350d2b7b0e17795e6de6d +DIST deblob-3.0 102531 RMD160 d3ea6f04cd4d6c7f652f4532e7558f931d3952d1 S= HA1 3702cec9da20b8c1141e0fee2549fd475e203812 SHA256 4c9d98faabc226602891e= 6eb36634f1c228017bb90f0d3ceaa42d41d4b27df0f +DIST deblob-check-2.6.32 247608 RMD160 840bf8a229ea79810519eee6241edb85b= 78a6562 SHA1 d45a24eb16e5ac956c0fcddbc1ac4d67e326c7b8 SHA256 da1aecdf3ab7= f1207b90642d303e52262ccc2ed9e49739b729512b88950d17f3 +DIST deblob-check-3.0 377076 RMD160 8a4f53f0a34c46fc6a2aae5878225851d7bf= 13e1 SHA1 b1b356f55f63746bba284644db8585d15f3da06f SHA256 72ab3f74cbcde9d= 453f8a4e30fd6a6339812806fe6dab3b632c1c68b90b0b104 +DIST genpatches-2.6.32-44.base.tar.bz2 1012021 RMD160 37aae12613e8d5e0f3= cb0ad5f6057a83846e5bdc SHA1 3f4a864c30fd445eff30b480b0b5654c5758b219 SHA2= 56 f00a36ff4e30785eca0816bf1a698b358213e59c5786799b5bddd8322da1c633 +DIST genpatches-2.6.32-44.extras.tar.bz2 24902 RMD160 9e8d686ce4e2bb36e6= f6310835b96f64ad8d0f08 SHA1 29ed146cfcfb4470b0f2cea9b4dad07b359c31df SHA2= 56 e105210bca94660f3292751fea0db38c7dea50ea2c5a729faa1dbc9fb348442f +DIST genpatches-3.0-9.base.tar.bz2 229050 RMD160 2c9832e195851a10b327a74= de668d4f704d1909d SHA1 13e6ec91dad89ba264bba55d8670b77164821bbd SHA256 fe= 4ca0d112efa96bb940f67ada7d981537b536f95bb8c0330a19189049d9d2fe +DIST genpatches-3.0-9.extras.tar.bz2 17207 RMD160 0f04fef1fe76c9b9cbe7c4= 97faae19b015caff72 SHA1 89935647c22c0a8b98dd568e97312ca64378a263 SHA256 e= c88ca4408c668a2c4d2d25c3d4a8c67fad4bb08133db91bbb929c0053305fda +DIST hardened-patches-2.6.32-76.extras.tar.bz2 500970 RMD160 2ad6967945d= 3998f726e6a5f57391b940f166ca8 SHA1 f1847770f2d876c69ce4ead0d04785df7d0e78= 96 SHA256 a2fd401b9cc193a58ef93ba10b2e5ab32e96dafea55fb007364e5989ca57bff= 0 +DIST hardened-patches-3.0.9-1.extras.tar.bz2 587052 RMD160 01ac107c4b218= df90a1bff893fe9c73869ee206d SHA1 a4c224c1644215523db95aab106ba9c8156fd71e= SHA256 ea2f006388f235942877959f98d802036106a7d7d2edae1cc1bda76e0a27f1a3 +DIST linux-2.6.32.tar.bz2 64424138 RMD160 b93742cbaf8174f2200d2dbef0d47a= 26c618039c SHA1 410b4fc818023bfef60064e973ff0ab46d3bfb19 SHA256 5099786d8= 0b8407d98a619df00209c2353517f22d804fdd9533b362adcb4504e +DIST linux-3.0.tar.bz2 76753134 RMD160 e20c9564ec0c8128e28a4c038986d4d93= bbe34bb SHA1 45b64bffc860f70ab7956da4493c488010714650 SHA256 64b0228b54ce= 39b0b2df086109a7b737cde58e3df4f779506ddcaccee90356a0 +EBUILD hardened-sources-2.6.32-r74.ebuild 1787 RMD160 33b9601029acd59ad3= 7b58a5376968ed741a039f SHA1 4dc97e10118c13f56efd85972ebfe2e6b19e70c2 SHA2= 56 6c098fb199224a590b57d323e0aa12817e0ae1fad7a1ad5485e9c897b6c4cb81 +EBUILD hardened-sources-3.0.9.ebuild 1826 RMD160 91b4df0c9e21b4a96befd74= a2f87e94325e250c8 SHA1 d22a04402dd0eff64014cb2dba2de94fec7f6418 SHA256 c3= 3c69d1dc2f53f33e9b07d25de83b56e2b5a487b3189e8e4a6eda2991e49195 +MISC ChangeLog 7332 RMD160 9d7ca583578641f2c19e02fa9e4211ab3cf555a5 SHA1= 1b4fba06144d33a432dd980fc43407d54744a76b SHA256 34e59906de370da46be830a6= f009bed02df7698273a145300939d06fd567f0bf MISC metadata.xml 578 RMD160 7ea189a37d0f863ae9c52170bb85df27d21686fb SH= A1 4765c25d7770a69f7b9dda2b1accc8ff27b74ad0 SHA256 64140e091b51002a5355d8= fcfd351f2f39ed63da68af3a5751fc2058d0d03813 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.17 (GNU/Linux) =20 -iEYEAREIAAYFAk6tjV0ACgkQl5yvQNBFVTVaHQCeL9huB9oqL9+xNm57UQ0OgDDw -L9cAmwaGmiwixja3DpmeRTzPC1Q882Ey -=3DoDOx +iEYEAREIAAYFAk7ATh4ACgkQl5yvQNBFVTXjpQCffIKnE4i+ez3Xf0BWoFS2BCxu +eRsAn1BXZiccPgO2wYEYUntMUA76j++Q +=3DyeIV -----END PGP SIGNATURE----- diff --git a/sys-kernel/hardened-sources/hardened-sources-2.6.32-r74.ebui= ld b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r74.ebuild new file mode 100644 index 0000000..a5051d4 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-2.6.32-r74.ebuild @@ -0,0 +1,49 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-2.6.32-r73.ebuild,v 1.1 2011/10/30 17:34:44 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"44" +K_DEBLOB_AVAILABLE=3D"1" + +inherit kernel-2 +detect_version + +HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-76" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"4200_fbcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"deblob" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +} diff --git a/sys-kernel/hardened-sources/hardened-sources-3.0.9.ebuild b/= sys-kernel/hardened-sources/hardened-sources-3.0.9.ebuild new file mode 100644 index 0000000..fb750b0 --- /dev/null +++ b/sys-kernel/hardened-sources/hardened-sources-3.0.9.ebuild @@ -0,0 +1,49 @@ +# Copyright 1999-2011 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/sys-kernel/hardened-sources/hardened-= sources-3.0.8.ebuild,v 1.1 2011/10/30 17:38:36 blueness Exp $ + +EAPI=3D"4" + +ETYPE=3D"sources" +K_WANT_GENPATCHES=3D"base extras" +K_GENPATCHES_VER=3D"9" +K_DEBLOB_AVAILABLE=3D"1" + +inherit kernel-2 +detect_version + +HGPV=3D"${KV_MAJOR}.${KV_MINOR}.${KV_PATCH}-1" +HGPV_URI=3D"http://dev.gentoo.org/~blueness/hardened-sources/hardened-pa= tches/hardened-patches-${HGPV}.extras.tar.bz2" +SRC_URI=3D"${KERNEL_URI} ${HGPV_URI} ${GENPATCHES_URI} ${ARCH_URI}" + +UNIPATCH_LIST=3D"${DISTDIR}/hardened-patches-${HGPV}.extras.tar.bz2" +UNIPATCH_EXCLUDE=3D"1700_i386-bigsmp-early-lapicid-override.patch 4200_f= bcondecor-0.9.6.patch" + +DESCRIPTION=3D"Hardened kernel sources (kernel series ${KV_MAJOR}.${KV_M= INOR})" +HOMEPAGE=3D"http://www.gentoo.org/proj/en/hardened/" +IUSE=3D"deblob" + +KEYWORDS=3D"~alpha ~amd64 ~arm ~hppa ~ia64 ~ppc ~ppc64 ~sparc ~x86" + +pkg_postinst() { + kernel-2_pkg_postinst + + local GRADM_COMPAT=3D"sys-apps/gradm-2.2.2*" + + ewarn + ewarn "Hardened Gentoo provides three different predefined grsecurity l= evel:" + ewarn "[server], [workstation], and [virtualization]." + ewarn + ewarn "Those who intend to use one of these predefined grsecurity level= s" + ewarn "should read the help associated with the level. Users importing= a" + ewarn "kernel configuration from a kernel prior to ${PN}-2.6.32," + ewarn "should review their selected grsecurity/PaX options carefully." + ewarn + ewarn "Users of grsecurity's RBAC system must ensure they are using" + ewarn "${GRADM_COMPAT}, which is compatible with ${PF}." + ewarn "It is strongly recommended that the following command is issued" + ewarn "prior to booting a ${PF} kernel for the first time:" + ewarn + ewarn "emerge -na =3D${GRADM_COMPAT}" + ewarn +}