Your message dated Sat, 15 Jan 2011 01:53:13 +0100
with message-id <[email protected]>
and subject line Re: Bug#609966: tor: Please enable hardening options
has caused the Debian Bug report #609966,
regarding tor: Please enable hardening options
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
609966: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=609966
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: tor
Version: 0.2.1.26-6
Severity: normal
User: [email protected]
Usertags: hardening
Hi,
Tor being a sensitive daemon facing on the internet, having it compiled
with hardening options seems relevant [1]. This should mitigate some bugs
like the one it has already faced in its history.
I've compiled myself a version using the hardening-wrapper, and am running
it since a while now without any troubles, so I guess that might be
enabled at the debian package level.
For more information on how to proceed, you can read instructions on the
debian wiki. It's just a matter of adding the hardening-wrapper package to
the build-dep and exporting DEB_BUILD_HARDENING=1 in debian/rules.
Thanks.
[1] http://wiki.debian.org/Hardening
--- End Message ---
--- Begin Message ---
Version: 0.2.2.7-alpha-2
On Fri, 14 Jan 2011, [email protected] wrote:
> Hi,
>
> For the record, Tor's debian package distributed by torproject already
> includes this compile time options, since 0.2.2.14-alpha according to its
> changelog (https://gitweb.torproject.org/tor.git/blob/HEAD:/ChangeLog)
Irrelevant changelog. However, the 0.2.2.x tree of tor packages in
debian use hardening for about a year now.
--
| .''`. ** Debian GNU/Linux **
Peter Palfrader | : :' : The universal
http://www.palfrader.org/ | `. `' Operating System
| `- http://www.debian.org/
--- End Message ---