public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
Search results ordered by [date|relevance]  view[summary|nested|Atom feed]
thread overview below | download: 
* [gentoo-user] How to harden a system
@ 2017-12-23 14:09 99% Peter Humphrey
  0 siblings, 0 replies; 1+ results
From: Peter Humphrey @ 2017-12-23 14:09 UTC (permalink / raw
  To: gentoo-user

Hello list,

Now that grsecurity is off-limits, I'm left wondering how to go about 
hardening a no-multilib box that will be exposed to the Big Bad World.

To start with, it's not obvious which profile to use:

$ eselect profile list | grep no-multi | grep hardened
  [23]  default/linux/amd64/17.0/no-multilib/hardened
  [24]  default/linux/amd64/17.0/no-multilib/hardened/selinux
  [29]  hardened/linux/amd64/no-multilib
  [30]  hardened/linux/amd64/no-multilib/selinux

The wiki is also now out of date; it still talks about grsecurity, and there 
are too many overlapping guides.

Until that's sorted out, would the panel like to offer some guidance?

-- 
Regards,
Peter.



^ permalink raw reply	[relevance 99%]

Results 1-1 of 1 | reverse | options above
-- pct% links below jump to the message on this page, permalinks otherwise --
2017-12-23 14:09 99% [gentoo-user] How to harden a system Peter Humphrey

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox