Bug#811451: linux-grsec-base: Some useful confs

2016-01-26 Thread Yves-Alexis Perez
On mer., 2016-01-27 at 03:36 +, ban...@openmailbox.org wrote: > On 2016-01-26 10:15, Yves-Alexis Perez wrote: > > > > I don't touch any KVM settings so it /should/ work as is. Without more > > information I can't do anything. Also please try not to report new  > > stuff on > > existing bugs. >

Bug#811451: linux-grsec-base: Some useful confs

2016-01-26 Thread bancfc
On 2016-01-26 10:15, Yves-Alexis Perez wrote: I don't touch any KVM settings so it /should/ work as is. Without more information I can't do anything. Also please try not to report new stuff on existing bugs. Regards, Right but for virtualization support I had to choose the hypervisor expli

Bug#811451: linux-grsec-base: Some useful confs

2016-01-26 Thread Yves-Alexis Perez
On lun., 2016-01-25 at 22:24 +, ban...@openmailbox.org wrote: > > So at one point one should draw a line. It's dead easy to edit the  > > config, so > > one has just to make sure people can find the information. I don't  > > really want > > to make a debconf script for that, but it could be a p

Bug#811451: linux-grsec-base: Some useful confs

2016-01-25 Thread bancfc
On 2016-01-19 20:54, Yves-Alexis Perez wrote: Note, as the blog post says, that it's *secure* default, because each and every use is different, and people have to make their own choices. It might make sense to ship multiple config files (or rather, have different packages), like “desktop” or

Bug#811451: linux-grsec-base: Some useful confs

2016-01-19 Thread Yves-Alexis Perez
On mar., 2016-01-19 at 03:02 +, ban...@openmailbox.org wrote: > Please take a look and decide if you can include it for better  > usability. Please provide diffs against current package version or git, and attach them to the bug. Explain why you think it makes sense to have them in the package

Bug#811451: linux-grsec-base: Some useful confs

2016-01-18 Thread bancfc
Package: linux-grsec-base Version: 4 Severity: normal Dear Maintainer, I've been working on some grsec.conf settings for our distro (based on recommendations you made in your last blog post) but I see the most appropiate place for them is upstream. Please take a look and decide if you can in