Author: corsac Date: 2013-12-04 12:04:58 +0000 (Wed, 04 Dec 2013) New Revision: 24573
Modified: org/agenda-2014.txt Log: make a whole section for distribution hardening Modified: org/agenda-2014.txt =================================================================== --- org/agenda-2014.txt 2013-12-04 11:29:55 UTC (rev 24572) +++ org/agenda-2014.txt 2013-12-04 12:04:58 UTC (rev 24573) @@ -62,11 +62,22 @@ - Compile a list of test instructions for key packages -- distribution hardening (hardening flags, mount flags, default open ports, - kernel hardening, heap protection, reducing the attack surfase, etc.), - planning for release goal speedup? - Adding new flags to dpkg-buildflags? (-fstack-protector-strong, others?) +Distribution hardening +====================== +- hardening build flags: + - release goal status + - PIC/PIE situation + - adding new flags to dpkg-buildflags? (-fstack-protector-strong, others?) + - planning for release goal speedup? [corsac: what does it means?] + +- mount flags and default partitioning + +- default open ports + +- kernel hardening: memory protections (heap/stack/...), reducing the attack surface + + LTS === _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits