Bug#797836: Enable more hardening build flags

Michael Biebl biebl at debian.org
Wed Sep 2 22:58:35 BST 2015

Source: systemd
Version: 225-1
Severity: wishlist

Currently systemd uses the default set of hardening build flags as
returned by dpkg-buildflags

We should consider enabling more then the default set of build flags.
This will likely mean a performance hit which shouldn't be a major issue
though, [1] has more instructions.

[1] https://wiki.debian.org/HardeningWalkthrough#debhelper_9

-- Package-specific info:

-- System Information:
Debian Release: stretch/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (200, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.1.0-2-amd64 (SMP w/4 CPU cores)
Locale: LANG=de_DE.utf8, LC_CTYPE=de_DE.utf8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

-- no debconf information

More information about the Pkg-systemd-maintainers mailing list