Re: aufs2.1 vs grsecurity

2011-02-20 Thread sfjro
Dean Takemori: > Aha. I think I understand the issue now. =20 > > Loosely speaking, the PaX patch uses the compiler to prevent changes to=20= > > filesystem structures that "ought not" to be changed. On the other hand=20= > > aufs is by design not an ordinary filesystem and performes some "magic

Re: aufs2.1 vs grsecurity

2011-02-20 Thread Dean Takemori
Date: Sun, 20 Feb 2011 14:16:41 +0200 From: [1]pagee...@freemail.hu On 19 Feb 2011 at 15:39, Dean Takemori wrote: But it's not clear to me what the "most correct" or most futureproof way to merge three moving targets (kernel, grsec and aufs2.1) together. Sugge

Re: aufs2.1 vs grsecurity

2011-02-20 Thread sfjro
Hello Takemori, Dean Takemori: > Sources: > linux-2.6.32.28 > grsecurity-2.2.1-2.6.32.28-201102121148.patch > aufs2.1-32 (2011/02/14 standalone git snapshot) > > > linux-2.6.32.28/fs/aufs/dynop.c: In function 'dy_aop': > > linux-2.6.32.28/fs/aufs/dynop.c:179:2: error: assignment of read-only > >

aufs2.1 vs grsecurity

2011-02-19 Thread Dean Takemori
Hi, I am attempting to build a custom hardened linux-live (http://www.linux-live.org/) CD using grsecurity (http://grsecurity.net/index.php) and aufs2.1 (http://aufs.sourceforge.net/) Sources: linux-2.6.32.28 grsecurity-2.2.1-2.6.32.28-201102121148.patch aufs2.1-32 (2011/02/14 standalone git s