CVS log for wikisrc/pkgsrc/hardening.mdwn
Up to [NetBSD Developer Wiki] / wikisrc / pkgsrc
Request diff between arbitrary revisions
Keyword substitution: kv
Default branch: MAIN
Current tag: MAIN
Revision 1.49: download - view: text, markup, annotated - select for diffs
Sat Oct 2 14:48:27 2021 UTC (2 years, 2 months ago) by wiki
Branches: MAIN
CVS tags: HEAD
Diff to: previous 1.48: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.48: +1 -343
lines
web commit by nia
Revision 1.48: download - view: text, markup, annotated - select for diffs
Fri Oct 1 15:48:03 2021 UTC (2 years, 2 months ago) by wiki
Branches: MAIN
Diff to: previous 1.47: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.47: +37 -24
lines
web commit by nia
Revision 1.47: download - view: text, markup, annotated - select for diffs
Tue Apr 6 10:36:45 2021 UTC (2 years, 8 months ago) by nia
Branches: MAIN
Diff to: previous 1.46: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.46: +7 -11
lines
clean up some TODOs
Revision 1.46: download - view: text, markup, annotated - select for diffs
Sun Jan 6 18:09:25 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.45: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.45: +1 -1
lines
Make TODO formatting consistent (always make it bold!)
Revision 1.45: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:54:04 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.44: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.44: +5 -0
lines
Document CHECK_SSP_SUPPORTED.
Revision 1.44: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:46:55 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.43: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.43: +3 -1
lines
Add a big TODO regarding the possible alloca(3) build failure, it
is probably no longer relevant for most pkgsrc setup (and no
PRs/emails seen about that).
Revision 1.43: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:41:11 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.42: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.42: +4 -2
lines
Document how to disable fortify per-package (FORTIFY_SUPPORTED).
Revision 1.42: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:34:13 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.41: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.41: +3 -1
lines
Document how to disable SSP per-package.
Revision 1.41: download - view: text, markup, annotated - select for diffs
Sun Jan 6 15:37:50 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.40: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.40: +1 -1
lines
Fix formatting of `/var/log/messages' line
Revision 1.40: download - view: text, markup, annotated - select for diffs
Sun Jan 6 15:24:42 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.39: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.39: +20 -2
lines
Add more information about run-time crashes, documenting that on
NetBSD syslog() LOG_CRIT messages are by default appended to
`/var/log/messages` and add some notes on how to debug that.
Revision 1.39: download - view: text, markup, annotated - select for diffs
Sun Jan 6 14:58:39 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.38: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.38: +1 -3
lines
Adjust enabled by default title.
All the features documented that are enabled by defaut (were and)
are enabled by default in both latest stable and HEAD, avoid to
distinguish them.
Revision 1.38: download - view: text, markup, annotated - select for diffs
Sun Nov 12 15:15:48 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.37: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.37: +12 -0
lines
Also mention PKGSRC_MKREPRO for building reproducibly
Revision 1.37: download - view: text, markup, annotated - select for diffs
Sun Nov 12 15:12:49 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.36: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.36: +7 -5
lines
Clarify PIE and ASLR a bit more
Revision 1.36: download - view: text, markup, annotated - select for diffs
Sun Nov 12 15:02:00 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.35: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.35: +7 -8
lines
Remove extra "the"
Revision 1.35: download - view: text, markup, annotated - select for diffs
Sun Nov 12 14:59:14 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.34: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.34: +3 -0
lines
Mention the check for SSP
Revision 1.34: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:38:59 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.33: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.33: +4 -0
lines
Fix the markup
Revision 1.33: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:37:43 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.32: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.32: +11 -9
lines
Clarify RELRO
Revision 1.32: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:26:54 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.31: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.31: +5 -2
lines
Add some flesh to PKGSRC_USE_STACK_CHECK
Revision 1.31: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:22:50 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.30: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.30: +2 -3
lines
Clarify support for PIE
Revision 1.30: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:18:46 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.29: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.29: +6 -0
lines
List the mitigation levels for PKGSRC_USE_SSP
Revision 1.29: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:14:50 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.28: preferred, unified
Changes since revision 1.28: +12 -4
lines
Add more details for PKGSRC_USE_SSP
Revision
1.28:
download - view:
text,
markup,
annotated -
[selected for diffs]
Tue Nov 7 02:00:44 2017 UTC (6 years, 1 month ago) by
khorben
Branches:
MAIN
Diff to: previous 1.27:
preferred,
unified
Changes since revision 1.27: +7 -0
lines
Add a caveat for FORTIFY
Revision 1.27: download - view: text, markup, annotated - select for diffs
Tue Nov 7 01:52:37 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.26: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.26: +1 -1
lines
Typo
Revision 1.26: download - view: text, markup, annotated - select for diffs
Tue Nov 7 01:51:03 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.25: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.25: +1 -1
lines
Add markup to a filename
Revision 1.25: download - view: text, markup, annotated - select for diffs
Tue Nov 7 01:49:31 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.24: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.24: +11 -11
lines
Remove doubled spaces
Revision 1.24: download - view: text, markup, annotated - select for diffs
Mon Nov 6 00:04:07 2017 UTC (6 years, 1 month ago) by gdt
Branches: MAIN
Diff to: previous 1.23: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.23: +16 -3
lines
Add more text
Revision 1.23: download - view: text, markup, annotated - select for diffs
Sun Nov 5 23:54:11 2017 UTC (6 years, 1 month ago) by gdt
Branches: MAIN
Diff to: previous 1.22: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.22: +44 -13
lines
Explain more
Revision 1.22: download - view: text, markup, annotated - select for diffs
Sun Nov 5 23:07:27 2017 UTC (6 years, 1 month ago) by gdt
Branches: MAIN
Diff to: previous 1.21: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.21: +26 -8
lines
Explain a bit more
Revision 1.21: download - view: text, markup, annotated - select for diffs
Thu Sep 7 11:32:21 2017 UTC (6 years, 3 months ago) by leot
Branches: MAIN
Diff to: previous 1.20: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.20: +4 -4
lines
Clarify that PKGSRC_USE_FORTIFY and PKGSRC_USE_SSP will be enabled by default
since pkgsrc-2017Q3 (strictly speaking since 2017-07-05 in pkgsrc-current).
Revision 1.20: download - view: text, markup, annotated - select for diffs
Fri Aug 25 01:52:19 2017 UTC (6 years, 3 months ago) by khorben
Branches: MAIN
Diff to: previous 1.19: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.19: +1 -1
lines
Link to the HTTPS version of the website
Revision 1.19: download - view: text, markup, annotated - select for diffs
Fri Aug 25 01:50:27 2017 UTC (6 years, 3 months ago) by khorben
Branches: MAIN
Diff to: previous 1.18: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.18: +3 -3
lines
PKGSRC_MKPIE should work with cwrappers from now on
Revision 1.18: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:43:59 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.17: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.17: +2 -2
lines
Consistently use backquotes for compilation flags
Revision 1.17: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:42:57 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.16: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.16: +3 -0
lines
Mention the new check for RELRO
Revision 1.16: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:38:59 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.15: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.15: +3 -3
lines
Re-phrase a bit
Revision 1.15: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:37:21 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.14: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.14: +4 -3
lines
Mention SSP and FORTIFY and now enabled by default
Revision 1.14: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:35:02 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.13: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.13: +2 -0
lines
Also mention PKGSRC_USE_STACK_CHECK
Revision 1.13: download - view: text, markup, annotated - select for diffs
Sun Jun 25 16:11:04 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.12: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.12: +16 -1
lines
Document partial vs full RELRO
Revision 1.12: download - view: text, markup, annotated - select for diffs
Sun Jun 25 16:01:07 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.11: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.11: +9 -0
lines
Document the issue with Xorg with full RELRO
Revision 1.11: download - view: text, markup, annotated - select for diffs
Sun Jun 25 15:47:49 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.10: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.10: +5 -5
lines
Re-phrase RELRO a tad
Revision 1.10: download - view: text, markup, annotated - select for diffs
Thu Mar 17 14:02:38 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.9: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.9: +4 -0
lines
Add a link about RELRO
Revision 1.9: download - view: text, markup, annotated - select for diffs
Thu Mar 17 14:02:06 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.8: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.8: +2 -2
lines
Wording
Revision 1.8: download - view: text, markup, annotated - select for diffs
Thu Mar 17 13:40:11 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.7: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.7: +12 -0
lines
Mention the performance impact of SSP
Revision 1.7: download - view: text, markup, annotated - select for diffs
Thu Mar 17 13:27:17 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.6: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.6: +14 -0
lines
Mention the differences in performance for RELRO
Revision 1.6: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:51:51 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.5: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.5: +13 -0
lines
Add a check for SSP
Revision 1.5: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:41:21 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.4: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.4: +34 -0
lines
On validating the hardening in place
Revision 1.4: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:19:17 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.3: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.3: +20 -3
lines
Also document PKGSRC_USE_FORTIFY
Revision 1.3: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:14:51 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.2: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.2: +21 -0
lines
Also document PKGSRC_USE_SSP
Revision 1.2: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:05:59 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.1: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.1: +39 -0
lines
Document some known issues with PKGSRC_MKPIE
Revision 1.1: download - view: text, markup, annotated - select for diffs
Thu Mar 17 02:45:18 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: selected 1.28: preferred, unified
Begin a page on hardening pkgsrc
CVSweb for NetBSD wikisrc <wikimaster@NetBSD.org> software: FreeBSD-CVSweb