On Fri, 5 Dec 2003 10:39, Steve Kemp <[EMAIL PROTECTED]> wrote: > I've been experimenting with producing a hardened Debian derivitive > as a small piece of paid work. This mostly means compiling things with > a stackguard compiler, using format guard, and enforcing policies, etc.
Are you using any extra patches to GCC? Or just a GCC built with the propolice option? How difficult is it to bootstrap this? Can you compile glibc with these options without affecting anything else? -- http://www.coker.com.au/selinux/ My NSA Security Enhanced Linux packages http://www.coker.com.au/bonnie++/ Bonnie++ hard drive benchmark http://www.coker.com.au/postal/ Postal SMTP/POP benchmark http://www.coker.com.au/~russell/ My home page