[gentoo-dev] Re: [PATCH] profiles: update pie use-flag masks for sys-devel/gcc

2017-05-11 Thread Duncan
Matthias Maier posted on Thu, 11 May 2017 19:17:51 -0500 as excerpted: > In light of the recent discussion, I will restore the status quo for the > pie use-flag: masked on non-hardened profiles, unmasked and forced on > hardened profiles. > > The next step will be to switch the pie use-flag on

[gentoo-dev] Re: [PATCH] profiles: update pie use-flag masks for sys-devel/gcc

2017-05-11 Thread Duncan
Jonathan Callen posted on Thu, 11 May 2017 23:25:24 -0400 as excerpted: > In this case, you would add a line like: > > >=sys-devel/gcc-6.3.0 -pie > > to the /etc/portage/profile/package.use.mask file (creating the > file/parent directory as needed). If a flag is masked/forced for all >

[gentoo-dev] Re: [PATCH] profiles: update pie use-flag masks for sys-devel/gcc

2017-05-11 Thread Jonathan Callen
On 05/11/2017 10:45 PM, Duncan wrote: > Matthias Maier posted on Thu, 11 May 2017 19:17:51 -0500 as excerpted: > >> In light of the recent discussion, I will restore the status quo for the >> pie use-flag: masked on non-hardened profiles, unmasked and forced on >> hardened profiles. >> >> The

Re: [gentoo-dev] [RFC] News item: GCC 6 defaults to USE="pie ssp", v2

2017-05-11 Thread Walter Dnes
On Tue, May 09, 2017 at 06:58:42PM -0500, Matthias Maier wrote > This is a reworded news item (assuming we proceed with the plan to > default-enable USE=pie). Suggestions for improving the emerge command to > fix static archives is highly welcomed. > > Matthias > > > > Title: GCC 6 defaults to

Re: [gentoo-dev] Removal of rxvt

2017-05-11 Thread Daniel Campbell
On 05/11/2017 08:57 AM, Jason A. Donenfeld wrote: > Hi folks, > > Rxvt is ancient. It's been replace by rxvt-unicode. Rxvt hasn't seen > updates in years. Recently it's been the subject of a security > vulnerability, and I suspect it's filled with other potential > vulnerabilities. Rxvt has no

Re: [gentoo-dev] Removal of rxvt

2017-05-11 Thread Matthias Maier
On Thu, May 11, 2017, at 10:57 CDT, "Jason A. Donenfeld" wrote: > Does anybody have any objections to me doing this? (I'll wait a week > from now before taking any actions.) There is a clear and easy upgrade path to rxvt-unicode, so please mask right away. Best, Matthias

Re: [gentoo-dev] [RFC] News item: GCC 6 defaults to USE="pie ssp", v2

2017-05-11 Thread Matthias Maier
> Has anyone checked 32-bit systems? "emerge -pv =sys-devel/gcc-6.3.0" > on a 2008 Core2duo 32-bit install (my GCC 6.3.0 testbed) shows "(-pie)". > I read that as the "pie" USE flag being hard-masked out. On my 64-bit > desktop, "pie" is the default. Yes, we are aware of this. Unfortunately,

[gentoo-dev] [PATCH] profiles: update pie use-flag masks for sys-devel/gcc

2017-05-11 Thread Matthias Maier
- mask pie for sys-devel/gcc unconditionally in base/ - selectively unmask pie use-flag for hardened/linux and hardened/linux/musl profiles --- profiles/arch/amd64/package.use.mask| 4 profiles/arch/base/package.use.mask | 4

[gentoo-dev] [PATCH] profiles: update pie use-flag masks for sys-devel/gcc

2017-05-11 Thread Matthias Maier
Hello all, In light of the recent discussion, I will restore the status quo for the pie use-flag: masked on non-hardened profiles, unmasked and forced on hardened profiles. The next step will be to switch the pie use-flag on default profiles from masked to unmasked/forced with a profile update.

Re: [gentoo-dev] Dropping ia64/ppc/sparc profiles to dev/exp

2017-05-11 Thread David Seifert
On Wed, 2017-05-10 at 22:01 -0700, Yury German wrote: > > On 5/10/17 12:40 PM, Anthony G. Basile wrote: > > On 5/10/17 3:29 PM, David Seifert wrote: > > So let's make sure we're on the same page -- here's my > > understanding. > > > > 1) For @system packages, we will have KEYWORDS="ppc" for the

Re: [gentoo-dev] Dropping ia64/ppc/sparc profiles to dev/exp

2017-05-11 Thread Yury German
David, I never said anything about stablizing. But that is fine, thank you for the answers. Blueness, When are you proposing to making the changes. As we are about to drop sparc from security supported arches, so we might as well add PPC to the list. On 5/10/17 11:50 PM, David Seifert wrote: >

Re: [gentoo-dev] Dropping ia64/ppc/sparc profiles to dev/exp

2017-05-11 Thread Dirkjan Ochtman
On Thu, May 11, 2017 at 8:50 AM, David Seifert wrote: > 1. ppc(= 32 bit) will be massively dekeyworded, ppc64 will stay > unchanged (also given that it is an active arch in general and gets CPU > upgrades from IBM/OpenPOWER). Sounds good. You started the thread also talking

Re: [gentoo-dev] Should Sphinx really depends on PYTHON_COMPAT/PYTHON_USEDEP for `dev-python/*` ebuilds?

2017-05-11 Thread Michał Górny
Hi, Few janitorial notes for a start: 1. please fix your line wrapping since your messages are wrapped twice now, and it's really hard to read with single words on every second line; 2. hardcore Python topics belong on gentoo-python@ but I guess we'll continue here, 3. please keep your

Re: [gentoo-dev] Dropping ia64/ppc/sparc profiles to dev/exp

2017-05-11 Thread Anthony G. Basile
On 5/11/17 3:17 AM, Yury German wrote: > David, > > I never said anything about stablizing. But that is fine, thank you for > the answers. > > Blueness, > > When are you proposing to making the changes. As we are about to drop > sparc from security supported arches, so we might as well add PPC

[gentoo-dev] Removal of rxvt

2017-05-11 Thread Jason A. Donenfeld
Hi folks, Rxvt is ancient. It's been replace by rxvt-unicode. Rxvt hasn't seen updates in years. Recently it's been the subject of a security vulnerability, and I suspect it's filled with other potential vulnerabilities. Rxvt has no upstream. I tried reaching out to the former upstream, and it's

Re: [gentoo-dev] [RFC] New global USE flag: unwind

2017-05-11 Thread Mart Raudsepp
Ühel kenal päeval, N, 11.05.2017 kell 11:29, kirjutas Chí-Thanh Christopher Nguyễn: > Suggested description: Add support for stack traces and function > name  > resolution via sys-libs/libunwind > > That description is a little unwieldy though, better suggestions are  > welcome. I think it's

[gentoo-dev] Re: [RFC] News item: GCC 6 defaults to USE="pie ssp"

2017-05-11 Thread Martin Vaeth
Hanno Böck wrote: > > I could add my voice that I ran pie by default for a while I can confirm that the situation apparently has changed drastically since my last attempt. My previous assertion is no longer valid: Currently, I recompile world on x86 system with default pie, so

[gentoo-dev] [RFC] New global USE flag: unwind

2017-05-11 Thread Chí-Thanh Christopher Nguyễn
Suggested description: Add support for stack traces and function name resolution via sys-libs/libunwind That description is a little unwieldy though, better suggestions are welcome. Currently in use by the following packages: dev-cpp/glog:unwind - Use sys-libs/libunwind for stack unwinding

Re: [gentoo-dev] [RFC] New global USE flag: unwind

2017-05-11 Thread Michał Górny
On czw, 2017-05-11 at 11:29 +0200, Chí-Thanh Christopher Nguyễn wrote: > Suggested description: Add support for stack traces and function name > resolution via sys-libs/libunwind Maybe skip the library name. Note that there's also llvm-libunwind, and some packages may be actually happy with

Re: [gentoo-dev] [RFC] New global USE flag: unwind

2017-05-11 Thread Chí-Thanh Christopher Nguyễn
Michał Górny schrieb: On czw, 2017-05-11 at 11:29 +0200, Chí-Thanh Christopher Nguyễn wrote: Suggested description: Add support for stack traces and function name resolution via sys-libs/libunwind Maybe skip the library name. Note that there's also llvm-libunwind, and some packages may be

[gentoo-portage-dev] [PATCH] emerge: add --onlydeps-with-rdeps=<y|n> option (bug 294719)

2017-05-11 Thread Zac Medico
From: William Throwe Add --onlydeps-with-rdeps=n option in order to omit pure run-time dependencies with --onlydeps. The dependencies that get pulled in are those that are necessary for the equivalent --buildpkgonly command to succeed. The default --onlydeps behavior remains

[gentoo-dev] Re: [RFC] News item: GCC 6 defaults to USE="pie ssp"

2017-05-11 Thread Martin Vaeth
Luis Ressel wrote: > Martin Vaeth wrote: > >> For instance, you cannot even compile the kernel without special >> patches (which disable pie) if you use a gcc which default-enables >> pie. > > Now I'm curious. Wouldn't that also affect the hardened gcc? I would