minipli / linux-unofficial_grsec

Unofficial forward ports of the last publicly available grsecurity patch
Other
150 stars 30 forks source link

join forces? #8

Closed blshkv closed 7 years ago

blshkv commented 7 years ago

I'm looking for a replacement of grsecurity patch and found a link (https://www.gentoo.org/support/news-items/2017-08-19-hardened-sources-removal.html) to your site.

Meanwhile, there is a new initiative from multi-distro (Gentoo, Arch and hopefully Debian) emerging: https://github.com/copperhead/linux-hardened/wiki

This all is confusing and I was wondering, could you join forces with these guys?

pedrib commented 7 years ago

Hi Anton,

I think you are confusing KSPP (kernel self protection project) with copperheadOS.

The former is a multi distro effort to improve kernel security, and I had been underway for some time, even before grsecurity closed down the patches.

The latter uses the kernel in the github link you provided, and it doesn't target x86 for example, so would be useless for most personal computers.

On Mon, 21 Aug 2017 at 06:05, Anton Bolshakov notifications@github.com wrote:

I'm looking for a replacement of grsecurity patch and found a link ( https://www.gentoo.org/support/news-items/2017-08-19-hardened-sources-removal.html) to your page.

Meanwhile, there is a new initiative from multi-distro (Gentoo, Arch and hopefully Debian) emerging: https://github.com/copperhead/linux-hardened/wiki

This all is confusing and I was wondering, could you join forces with these guys?

— You are receiving this because you are subscribed to this thread. Reply to this email directly, view it on GitHub https://github.com/minipli/linux-unofficial_grsec/issues/8, or mute the thread https://github.com/notifications/unsubscribe-auth/AFEMqAixLQLbtJXN2m-HVx-1sngzKuDtks5saRAQgaJpZM4O84qf .

-- Pedro Ribeiro Vulnerability and Reverse Engineer / Cyber Security Specialist

pedrib@gmail.com PGP: 17EE 7884 06C9 DCA3 76A6 99E9 BC04 BAD1 DDF2 A2CE

blshkv commented 7 years ago

Pedro, it is very confusing indeed. So I have download both patches and look through the code. It's simply unreasonable to compare both projects. I do not understand why gentoo hardened team made a redirect to the link. No more questions, thanks!