CVS log for wikisrc/pkgsrc/hardening.mdwn

[BACK] Up to [NetBSD Developer Wiki] / wikisrc / pkgsrc

Request diff between arbitrary revisions


Keyword substitution: kv
Default branch: MAIN
Current tag: MAIN


Revision 1.49: download - view: text, markup, annotated - select for diffs
Sat Oct 2 14:48:27 2021 UTC (2 years, 2 months ago) by wiki
Branches: MAIN
CVS tags: HEAD
Diff to: previous 1.48: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.48: +1 -343 lines
web commit by nia

Revision 1.48: download - view: text, markup, annotated - select for diffs
Fri Oct 1 15:48:03 2021 UTC (2 years, 2 months ago) by wiki
Branches: MAIN
Diff to: previous 1.47: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.47: +37 -24 lines
web commit by nia

Revision 1.47: download - view: text, markup, annotated - select for diffs
Tue Apr 6 10:36:45 2021 UTC (2 years, 8 months ago) by nia
Branches: MAIN
Diff to: previous 1.46: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.46: +7 -11 lines
clean up some TODOs

Revision 1.46: download - view: text, markup, annotated - select for diffs
Sun Jan 6 18:09:25 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.45: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.45: +1 -1 lines
Make TODO formatting consistent (always make it bold!)

Revision 1.45: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:54:04 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.44: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.44: +5 -0 lines
Document CHECK_SSP_SUPPORTED.

Revision 1.44: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:46:55 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.43: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.43: +3 -1 lines
Add a big TODO regarding the possible alloca(3) build failure, it
is probably no longer relevant for most pkgsrc setup (and no
PRs/emails seen about that).

Revision 1.43: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:41:11 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.42: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.42: +4 -2 lines
Document how to disable fortify per-package (FORTIFY_SUPPORTED).

Revision 1.42: download - view: text, markup, annotated - select for diffs
Sun Jan 6 17:34:13 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.41: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.41: +3 -1 lines
Document how to disable SSP per-package.

Revision 1.41: download - view: text, markup, annotated - select for diffs
Sun Jan 6 15:37:50 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.40: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.40: +1 -1 lines
Fix formatting of `/var/log/messages' line

Revision 1.40: download - view: text, markup, annotated - select for diffs
Sun Jan 6 15:24:42 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.39: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.39: +20 -2 lines
Add more information about run-time crashes, documenting that on
NetBSD syslog() LOG_CRIT messages are by default appended to
`/var/log/messages` and add some notes on how to debug that.

Revision 1.39: download - view: text, markup, annotated - select for diffs
Sun Jan 6 14:58:39 2019 UTC (4 years, 11 months ago) by leot
Branches: MAIN
Diff to: previous 1.38: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.38: +1 -3 lines
Adjust enabled by default title.

All the features documented that are enabled by defaut (were and)
are enabled by default in both latest stable and HEAD, avoid to
distinguish them.

Revision 1.38: download - view: text, markup, annotated - select for diffs
Sun Nov 12 15:15:48 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.37: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.37: +12 -0 lines
Also mention PKGSRC_MKREPRO for building reproducibly

Revision 1.37: download - view: text, markup, annotated - select for diffs
Sun Nov 12 15:12:49 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.36: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.36: +7 -5 lines
Clarify PIE and ASLR a bit more

Revision 1.36: download - view: text, markup, annotated - select for diffs
Sun Nov 12 15:02:00 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.35: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.35: +7 -8 lines
Remove extra "the"

Revision 1.35: download - view: text, markup, annotated - select for diffs
Sun Nov 12 14:59:14 2017 UTC (6 years ago) by khorben
Branches: MAIN
Diff to: previous 1.34: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.34: +3 -0 lines
Mention the check for SSP

Revision 1.34: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:38:59 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.33: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.33: +4 -0 lines
Fix the markup

Revision 1.33: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:37:43 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.32: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.32: +11 -9 lines
Clarify RELRO

Revision 1.32: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:26:54 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.31: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.31: +5 -2 lines
Add some flesh to PKGSRC_USE_STACK_CHECK

Revision 1.31: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:22:50 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.30: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.30: +2 -3 lines
Clarify support for PIE

Revision 1.30: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:18:46 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.29: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.29: +6 -0 lines
List the mitigation levels for PKGSRC_USE_SSP

Revision 1.29: download - view: text, markup, annotated - select for diffs
Tue Nov 7 02:14:50 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.28: preferred, unified
Changes since revision 1.28: +12 -4 lines
Add more details for PKGSRC_USE_SSP

Revision 1.28: download - view: text, markup, annotated - [selected for diffs]
Tue Nov 7 02:00:44 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.27: preferred, unified
Changes since revision 1.27: +7 -0 lines
Add a caveat for FORTIFY

Revision 1.27: download - view: text, markup, annotated - select for diffs
Tue Nov 7 01:52:37 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.26: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.26: +1 -1 lines
Typo

Revision 1.26: download - view: text, markup, annotated - select for diffs
Tue Nov 7 01:51:03 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.25: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.25: +1 -1 lines
Add markup to a filename

Revision 1.25: download - view: text, markup, annotated - select for diffs
Tue Nov 7 01:49:31 2017 UTC (6 years, 1 month ago) by khorben
Branches: MAIN
Diff to: previous 1.24: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.24: +11 -11 lines
Remove doubled spaces

Revision 1.24: download - view: text, markup, annotated - select for diffs
Mon Nov 6 00:04:07 2017 UTC (6 years, 1 month ago) by gdt
Branches: MAIN
Diff to: previous 1.23: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.23: +16 -3 lines
Add more text

Revision 1.23: download - view: text, markup, annotated - select for diffs
Sun Nov 5 23:54:11 2017 UTC (6 years, 1 month ago) by gdt
Branches: MAIN
Diff to: previous 1.22: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.22: +44 -13 lines
Explain more

Revision 1.22: download - view: text, markup, annotated - select for diffs
Sun Nov 5 23:07:27 2017 UTC (6 years, 1 month ago) by gdt
Branches: MAIN
Diff to: previous 1.21: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.21: +26 -8 lines
Explain a bit more

Revision 1.21: download - view: text, markup, annotated - select for diffs
Thu Sep 7 11:32:21 2017 UTC (6 years, 3 months ago) by leot
Branches: MAIN
Diff to: previous 1.20: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.20: +4 -4 lines
Clarify that PKGSRC_USE_FORTIFY and PKGSRC_USE_SSP will be enabled by default
since pkgsrc-2017Q3 (strictly speaking since 2017-07-05 in pkgsrc-current).

Revision 1.20: download - view: text, markup, annotated - select for diffs
Fri Aug 25 01:52:19 2017 UTC (6 years, 3 months ago) by khorben
Branches: MAIN
Diff to: previous 1.19: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.19: +1 -1 lines
Link to the HTTPS version of the website

Revision 1.19: download - view: text, markup, annotated - select for diffs
Fri Aug 25 01:50:27 2017 UTC (6 years, 3 months ago) by khorben
Branches: MAIN
Diff to: previous 1.18: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.18: +3 -3 lines
PKGSRC_MKPIE should work with cwrappers from now on

Revision 1.18: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:43:59 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.17: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.17: +2 -2 lines
Consistently use backquotes for compilation flags

Revision 1.17: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:42:57 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.16: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.16: +3 -0 lines
Mention the new check for RELRO

Revision 1.16: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:38:59 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.15: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.15: +3 -3 lines
Re-phrase a bit

Revision 1.15: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:37:21 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.14: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.14: +4 -3 lines
Mention SSP and FORTIFY and now enabled by default

Revision 1.14: download - view: text, markup, annotated - select for diffs
Sun Jul 9 15:35:02 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.13: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.13: +2 -0 lines
Also mention PKGSRC_USE_STACK_CHECK

Revision 1.13: download - view: text, markup, annotated - select for diffs
Sun Jun 25 16:11:04 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.12: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.12: +16 -1 lines
Document partial vs full RELRO

Revision 1.12: download - view: text, markup, annotated - select for diffs
Sun Jun 25 16:01:07 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.11: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.11: +9 -0 lines
Document the issue with Xorg with full RELRO

Revision 1.11: download - view: text, markup, annotated - select for diffs
Sun Jun 25 15:47:49 2017 UTC (6 years, 5 months ago) by khorben
Branches: MAIN
Diff to: previous 1.10: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.10: +5 -5 lines
Re-phrase RELRO a tad

Revision 1.10: download - view: text, markup, annotated - select for diffs
Thu Mar 17 14:02:38 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.9: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.9: +4 -0 lines
Add a link about RELRO

Revision 1.9: download - view: text, markup, annotated - select for diffs
Thu Mar 17 14:02:06 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.8: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.8: +2 -2 lines
Wording

Revision 1.8: download - view: text, markup, annotated - select for diffs
Thu Mar 17 13:40:11 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.7: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.7: +12 -0 lines
Mention the performance impact of SSP

Revision 1.7: download - view: text, markup, annotated - select for diffs
Thu Mar 17 13:27:17 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.6: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.6: +14 -0 lines
Mention the differences in performance for RELRO

Revision 1.6: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:51:51 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.5: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.5: +13 -0 lines
Add a check for SSP

Revision 1.5: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:41:21 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.4: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.4: +34 -0 lines
On validating the hardening in place

Revision 1.4: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:19:17 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.3: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.3: +20 -3 lines
Also document PKGSRC_USE_FORTIFY

Revision 1.3: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:14:51 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.2: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.2: +21 -0 lines
Also document PKGSRC_USE_SSP

Revision 1.2: download - view: text, markup, annotated - select for diffs
Thu Mar 17 03:05:59 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: previous 1.1: preferred, unified; selected 1.28: preferred, unified
Changes since revision 1.1: +39 -0 lines
Document some known issues with PKGSRC_MKPIE

Revision 1.1: download - view: text, markup, annotated - select for diffs
Thu Mar 17 02:45:18 2016 UTC (7 years, 8 months ago) by khorben
Branches: MAIN
Diff to: selected 1.28: preferred, unified
Begin a page on hardening pkgsrc

Diff request

This form allows you to request diffs between any two revisions of a file. You may select a symbolic revision name using the selection box or you may type in a numeric name using the type-in text box.

Log view options

CVSweb for NetBSD wikisrc <wikimaster@NetBSD.org> software: FreeBSD-CVSweb