public inbox for gentoo-dev@lists.gentoo.org
 help / color / mirror / Atom feed
From: Ned Ludd <solar@gentoo.org>
To: gentoo-hardened@lists.gentoo.org
Cc: gentoo-dev@lists.gentoo.org, ps.m@gmx.net, pageexec@freemail.hu
Subject: [gentoo-dev] Considering dropping the hardened toolchain
Date: Sat, 18 Sep 2004 02:10:27 -0400	[thread overview]
Message-ID: <1095487827.11248.284.camel@simple> (raw)

[-- Attachment #1: Type: text/plain, Size: 1306 bytes --]

I really never wanted to send a mail like this but I don't know what
else to do. ;/

Due to low positive feedback and user input I'm considering dropping the
hardened toolchain and retiring from non commercial proactive security
efforts. ie pulling the patches developed that brings you
pie/ssp/relro/now/etc.. Doing otherwise I feel would leave you limping
along, which I feel would be a disservice to everybody. This motivation
stems from bugs that are going unresolved or being improperly fixed and
or filtered. I'm not getting the help I/we need from my own team or the
user community. This is becoming an overwhelming/stressful job for one
person to handle alone on with a user-base this large.

If you wish to see the hardened toolchain continue YOU need to step up
in the next few weeks and offer help (ie we need 2-3 really good
people).

Mail me off list for more details if your interested in helping.
A fair to strong understanding is needed of entire toolchain process.
Desired is somebody(s) that preferably also understands ELF and multi
arch assembly that wishes to see the solution developed to it's fullest
as per the goals outlined in the PaX documentation.

-- 
Ned Ludd <solar@gentoo.org>
Gentoo (hardened,security,infrastructure,embedded,toolchain) Developer

[-- Attachment #2: This is a digitally signed message part --]
[-- Type: application/pgp-signature, Size: 189 bytes --]

             reply	other threads:[~2004-09-18  6:11 UTC|newest]

Thread overview: 9+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-09-18  6:10 Ned Ludd [this message]
2004-09-18 15:54 ` [gentoo-dev] Considering dropping the hardened toolchain (A Quantitive Approach) Alexander Gabert
2004-09-18 17:01   ` Thierry Carrez
2004-09-18 17:27     ` Rumen Yotov
2004-09-18 18:27   ` Ned Ludd
2004-09-19  2:06     ` Thomas Zimmerman
2004-09-19  5:16       ` Allen Parker
2004-09-19  5:41         ` Ned Ludd
2004-09-19 22:16     ` Lars Weiler

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=1095487827.11248.284.camel@simple \
    --to=solar@gentoo.org \
    --cc=gentoo-dev@lists.gentoo.org \
    --cc=gentoo-hardened@lists.gentoo.org \
    --cc=pageexec@freemail.hu \
    --cc=ps.m@gmx.net \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox