I don't get this kernel to compile after an initial install of stage3-x86-selinux. The process stops with this error: CC init/version.o LD init/built-in.o LD .tmp_vmlinux1 fs/built-in.o(.text+0xc7bc): In function `compute_creds': : undefined reference to `gr_check_user_change' fs/built-in.o(.text+0xc7f9): In function `compute_creds': : undefined reference to `gr_check_group_change' make: *** [.tmp_vmlinux1] Error 1 Reproducible: Always Steps to Reproduce: 1. 2. 3. bash-2.05b# emerge info !!! Your current profile is deprecated and not supported anymore. !!! Please upgrade to the following profile if possible: selinux/2004.1/x86 To upgrade do the following steps: # rm /etc/make.profile # ln -s /usr/portage/profiles/selinux/2004.1/x86 /etc/make.profile # emerge -u libselinux checkpolicy policycoreutils selinux-base-policy # emerge baselayout !!! SELinux not loaded: SELinux is not enabled. Portage 2.0.50-r1 (selinux-x86-1.4, gcc-3.3.2, glibc-2.3.2-r9, 2.4.20-xfs) ================================================================= System uname: 2.4.20-xfs i586 Pentium MMX Gentoo Base System version 1.4.3.13 Autoconf: sys-devel/autoconf-2.58 Automake: sys-devel/automake-1.7.7 ACCEPT_KEYWORDS="x86" AUTOCLEAN="yes" CFLAGS="-O2 -mcpu=i686 -fomit-frame-pointer" CHOST="i386-pc-linux-gnu" COMPILER="gcc3" CONFIG_PROTECT="/etc /usr/kde/2/share/config /usr/kde/3/share/config /usr/share/config /var/qmail/control" CONFIG_PROTECT_MASK="/etc/gconf /etc/env.d" CXXFLAGS="-O2 -mcpu=i686 -fomit-frame-pointer" DISTDIR="/usr/portage/distfiles" FEATURES="autoaddcvs ccache sandbox sfperms strict" GENTOO_MIRRORS="http://gentoo.oregonstate.edu http://distro.ibiblio.org/pub/Linux/distributions/gentoo" MAKEOPTS="-j2" PKGDIR="/usr/portage/packages" PORTAGE_TMPDIR="/var/tmp" PORTDIR="/usr/portage" PORTDIR_OVERLAY="" SYNC="rsync://rsync.gentoo.org/gentoo-portage" USE="berkdb crypt ncurses pam perl python readline selinux ssl tcpd x86 zlib"
Created attachment 32705 [details] kernel config causing the error
Addition: I tested a little more, it compiles with grsecurity enabled. Still I can't see the sense of this as i dont't need grsecurity otherwise.
This was fixed UPSTREAM already.
06:42PM <tocharian> solar: you can close 53053 if you want, I tested with latest hardened-dev-sources and that isn't valid anymore