Mailing List Archive

Hardened Gentoo 2005.1 Release
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi all,

2005.1 has now been officially released and here's what you can expect
to find related to Hardened:

- - x86 stages for both the 2.4 and 2.6 kernel profiles [1]
- - expiremental amd64 non-multilib stages [2]
- - x86 SELinux stages for both the hardened and non-hardened profiles [3]
- - an x86 hardened livecd [4].

[1] releases/x86/2005.1/stages/x86/hardened/
[2] experimental/amd64/hardened/stages/
[3] experimental/x86/hardened/stages/
[4] experimental/x86/hardened/livecd/

Alternative to finding everything on the mirrors, it's available through
bittorrent at http://tracker.netdomination.org/.

The x86 hardened stages are much the same as always, just newer than the
old.

The new SELinux stages should be a bit refreshing as they are the first
since November 2004. A fresh install should now remain fresh a little
longer avoiding the need to upgrade everything right away.

The amd64 profile has undergone some changes recently while building the
stages. Testing of the stages would be greatly appreciated so that
hopefully amd64 can be more well supported. It's important to note that
the hardened/amd64 profile is strictly non-multilib, as are the stages.

The x86 hardened livecd has undergone some changes and polishing since
the earlier expiremental releases. Apart from all the forensics and
network tools previously found on the CD, it now features an RSBAC
kernel as well as enforcing policy, and a SELinux kernel, which when
booted makes the CD suitable for performing SELinux installs, the latest
CD able to do so since June 2004.

It's important to note that when running the CD with the SELinux kernel,
SELinux should not be put into enforcing mode. In all likelihood, it'll
lockup fast and hard.

I plan to release, via xdelta, and fresh ISO's, updates to the CD on a
somewhat regular basis looking at between 1-2 months between 'official'
releases, to make updates for the kernel as well as for other security
issues bound to crop up in other packages.

As usual, all bug reports should go to bugzilla [5], and be filed under
the 'Gentoo Linux' product with 'Hardened' selected as the component.
For the LiveCD, please report bugs in the 'Gentoo LiveCD (all flavors)'
product with 'Hardened' selected as the component.

[5] https://bugs.gentoo.org/

Share and enjoy,

- - Robert Paskowitz <r2d2@gentoo.org>


P.S. This e-mail has been sent to both gentoo-dev and gentoo-hardened
mailing lists, please bring all discussion to gentoo-hardened@gentoo.org.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (Darwin)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFC+mOjZwjIiODIZ4oRAnzXAJwKsgc8xEBmkNDeGJCPqEYC8mhbswCdHx/L
7cWJuLDYxtQzqXhUHsu6MHA=
=Njgy
-----END PGP SIGNATURE-----
--
gentoo-dev@gentoo.org mailing list