Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 23117 - Owl-sources ebuild for 2.4.21
Summary: Owl-sources ebuild for 2.4.21
Status: RESOLVED INVALID
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: x86 Linux
: High enhancement (vote)
Assignee: The Gentoo Linux Hardened Team
URL: http://www.openwall.com/linux/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2003-06-19 10:05 UTC by fbusse
Modified: 2003-10-05 08:28 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments
2.4.21-owl-r1 ebuild (owl-sources-2.4.21-r1.ebuild,652 bytes, text/plain)
2003-06-19 10:06 UTC, fbusse
Details
The patch (2.4.21-ow1) (patches-2.4.21-owl-r1.tar.bz2,16.20 KB, application/x-tbz)
2003-06-19 10:07 UTC, fbusse
Details
Updated ebuild to -ow2 (owl-sources-2.4.21-r2.ebuild,651 bytes, text/plain)
2003-08-16 03:23 UTC, fbusse
Details
Updated patch to -ow2 (patches-2.4.21-owl-r2.tar.bz2,17.96 KB, application/x-tbz)
2003-08-16 03:24 UTC, fbusse
Details
openwall-sources-2.2.25.ebuild (openwall-sources-2.2.25.ebuild,1.00 KB, text/plain)
2003-08-17 20:27 UTC, Jeff Moore
Details
openwall-sources-2.4.21.ebuild (openwall-sources-2.4.21.ebuild,1.00 KB, text/plain)
2003-08-17 20:33 UTC, Jeff Moore
Details
openwall-sources-2.4.21.2.ebuild (openwall-sources-2.4.21.2#AAD12,2.38 KB, text/plain)
2003-08-19 21:52 UTC, Jeff Moore
Details

Note You need to log in before you can comment on or make changes to this bug.
Description fbusse 2003-06-19 10:05:06 UTC
The openwall-patches for the linux kernel from Solar Designer add 
non-excecutable-stack support (with trampoline-support), /proc and /tmp restrictions 
and new features for setrlimit. 
It's pretty much a very small version of grsecurity. 
It doesn't have as much features but it's much smaller and very well audited (you 
know Solar Designer ;)). 
IMHO worth an inclusion in portage, the patch for 2.4.21 is the first one for 2.4.x with 
a version >0.
Comment 1 fbusse 2003-06-19 10:06:29 UTC
Created attachment 13549 [details]
2.4.21-owl-r1 ebuild
Comment 2 fbusse 2003-06-19 10:07:40 UTC
Created attachment 13550 [details]
The patch (2.4.21-ow1)
Comment 3 fbusse 2003-08-16 03:23:49 UTC
Created attachment 16163 [details]
Updated ebuild to -ow2
Comment 4 fbusse 2003-08-16 03:24:34 UTC
Created attachment 16164 [details]
Updated patch to -ow2
Comment 5 Matthew Rickard 2003-08-16 07:35:12 UTC
I agree that these sources should be included in portage.  Pfeifer, what do you think of adding these?
Comment 6 solar (RETIRED) gentoo-dev 2003-08-16 09:35:52 UTC
Due to the nature of -sources ebuilds I think we would want to have a maintainer for this package.

I also personally feel that as this package only contains 1 patch we should not have to repackage it thus avoiding having different md5sum signatures vs the ones solar_diz has for his tar.gz releases we could simply grab the src tarball from http://openwall.com/linux/linux-${OKV}-${PATCH_BASE}.tar.gz unpack, do some mv magic via the ebuild. Also to make it very easy to bump revisions the ebuild could be written so it does not require somebody to hand edit OKV & EXTRAVERSION's at every bump.

On another note.
Another user on the #gentoo-hardened irc channel ( Aetherios ) suggested that this be called openwall-sources vs owl-sources, the logic behind that was "owl" is the name of solar_diz's distribution and openwall is the name of the patch.
Comment 7 Jeff Moore 2003-08-17 20:27:06 UTC
Created attachment 16248 [details]
openwall-sources-2.2.25.ebuild

Ebuild for the 2.2.25 linux kernel patched with the openwall security patch
Comment 8 Jeff Moore 2003-08-17 20:33:23 UTC
Created attachment 16249 [details]
openwall-sources-2.4.21.ebuild

Heres the new openwall-sources ebuild using the ideas solar decided.
Comment 9 Jeff Moore 2003-08-19 21:52:25 UTC
Created attachment 16350 [details]
openwall-sources-2.4.21.2.ebuild

Here is the 'self-maintaining' ebuild for openwall-sources.  For instance, to
make this work for linux-2.2.25-ow1, copy it to
openwall-sources-2.2.25.1.ebuild  .   The extra number is the openwall release.
Comment 10 solar (RETIRED) gentoo-dev 2003-08-25 14:12:36 UTC
Hi guys this bug has not been forgotten about or ignored its just that thus far it seems we have exactly only two people interested in having openwall sources in portage, and unfortunately that's not going to be enough to justify the need. If this is really something you want to see in portage please run this bug# by a gentoo-* mailing list or two and see if there is more interest from others.
Comment 11 solar (RETIRED) gentoo-dev 2003-08-25 14:15:12 UTC
Oh btw 2.4.22 came out today.
Comment 12 Matthew Rickard 2003-10-05 07:21:36 UTC
It seems we don't have much interest in adding this to portage?  I suppose
anyone planning on running owl-sources can easily enough patch the kernel
on their own.

Should we close this?

Comment 13 solar (RETIRED) gentoo-dev 2003-10-05 08:28:26 UTC
changing resolution to INVALID due to lack of public interest