On Wed, Dec 14, 2011 at 01:16:40AM +0700, Jonas Smedegaard wrote: > [snip] > > I agree with you that some flags were set properly in the past. > Unfortunately some packages depend on the old broken behaviour, so it > can not be corrected now. > > You can add the following at the top of your rules file to make CDBS > handle compile flags more sensibly: > > CDBS_FIX_COMPILE_FLAGS = 1
I see. This makes automatic enabling of hardening flags for cdbs based packages difficult. I've updated the instructions on the wiki to mention this issue [1]. Regards, Simon [1]: https://wiki.debian.org/ReleaseGoals/SecurityHardeningBuildFlags -- + privacy is necessary + using gnupg http://gnupg.org + public key id: 0x92FEFDB7E44C32F9
pgp7Vpv8sMDdv.pgp
Description: PGP signature