[Secure-testing-commits] r24573 - org
Yves-Alexis Perez
corsac at moszumanska.debian.org
Wed Dec 4 12:04:58 UTC 2013
Author: corsac
Date: 2013-12-04 12:04:58 +0000 (Wed, 04 Dec 2013)
New Revision: 24573
Modified:
org/agenda-2014.txt
Log:
make a whole section for distribution hardening
Modified: org/agenda-2014.txt
===================================================================
--- org/agenda-2014.txt 2013-12-04 11:29:55 UTC (rev 24572)
+++ org/agenda-2014.txt 2013-12-04 12:04:58 UTC (rev 24573)
@@ -62,11 +62,22 @@
- Compile a list of test instructions for key packages
-- distribution hardening (hardening flags, mount flags, default open ports,
- kernel hardening, heap protection, reducing the attack surfase, etc.),
- planning for release goal speedup?
- Adding new flags to dpkg-buildflags? (-fstack-protector-strong, others?)
+Distribution hardening
+======================
+- hardening build flags:
+ - release goal status
+ - PIC/PIE situation
+ - adding new flags to dpkg-buildflags? (-fstack-protector-strong, others?)
+ - planning for release goal speedup? [corsac: what does it means?]
+
+- mount flags and default partitioning
+
+- default open ports
+
+- kernel hardening: memory protections (heap/stack/...), reducing the attack surface
+
+
LTS
===
More information about the Secure-testing-commits
mailing list