We can see http://bugs.gentoo.org/show_bug.cgi?id=351899#c7 for an example on what has to be written, as the proc restrictions will take some space to explain the better approach should be a separated doc referenced from the FAQ as we did with TPE. As this will imply some kernel recompilation and reboots (as it did with TPE) I have to delay this request for a latter time :( Reproducible: Always Steps to Reproduce: 1.Just look at the hardened project pages ;) Actual Results: No page warning on the /proc restrictions compromises Expected Results: A page warns of this.
Sorry I put another bug number :(
With the hardened sources being masked and on the way out and with no access to the newer versions, writing this has become kind of pointless :(