From: Ed W <lists@wildgooses.com>
To: gentoo-hardened@lists.gentoo.org
Subject: Re: [gentoo-hardened] GCC4 (again...)
Date: Fri, 26 Jun 2009 02:11:35 +0100 [thread overview]
Message-ID: <4A442047.3000409@wildgooses.com> (raw)
In-Reply-To: <8b17778e0906251158n6f98ba48jb8e1015bc8e70057@mail.gmail.com>
[-- Attachment #1: Type: text/plain, Size: 1420 bytes --]
klondike wrote:
> 2009/6/25 Ed W <lists@wildgooses.com>:
>
>> Hi, I can find various posts on blogs referring to hardened working in at
>> least a limited capacity with GCC4 right now? There is even a (fairly old)
>> note in the gentoo documentation about upgrading to GCC4.1. However, I
>> don't see any recent status updates on the list here, or any other official
>> kind of notices?
>>
>> Can someone please perhaps post a summary of where we are with regards to
>> GCC4? I think a lot of folks want hardened as a "nice to have", so even a
>> partial implementation would be nice to have, although also it's important
>> to understand exactly what you are getting
>>
>> Anyone able to provide such a summary please?
>>
>> FWIW: I'm largely interested in GCC4+hardened+uclibc, which may be better
>> supported?
>>
> I wrote on my blog on that some time ago:
> http://klondike.xiscosoft.es/klog/2009/03/07/gentoo-hardened-and-gcc-4x-i-installation/
>
> As for now I keep using gcc4-x for desktop and server use without
> major problems except a few packages who don't detected well the gcc
> version (and which seem to have been fixed).
>
>
Actually this was one of the posts I found already!
However, to be clear I think this achieves a PIE install with no SSP?
Can anyone confirm this is correct?
Seems like SSP is desirable, but not really sure why it's not so
straightforward to turn on?
Ed W
[-- Attachment #2: Type: text/html, Size: 2060 bytes --]
next prev parent reply other threads:[~2009-06-26 1:11 UTC|newest]
Thread overview: 14+ messages / expand[flat|nested] mbox.gz Atom feed top
2009-06-25 11:02 [gentoo-hardened] GCC4 (again...) Ed W
2009-06-25 11:19 ` Marcel Kummerow
2009-06-25 13:18 ` Marcel Meyer
2009-06-25 13:39 ` Kerin Millar
2009-06-25 18:58 ` klondike
2009-06-26 1:11 ` Ed W [this message]
2009-06-26 1:43 ` Kerin Millar
2009-06-26 1:48 ` Kerin Millar
2009-06-26 7:08 ` klondike
2009-06-26 9:51 ` Ed W
2009-06-26 12:36 ` klondike
2009-06-26 14:39 ` atoth
2009-06-26 15:09 ` Magnus Grenberg
2009-06-26 5:00 ` atoth
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=4A442047.3000409@wildgooses.com \
--to=lists@wildgooses.com \
--cc=gentoo-hardened@lists.gentoo.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox