On 06/22/2012 05:30 PM, Paul Wouters wrote:
> On Fri, 22 Jun 2012, Jacob Appelbaum wrote:
> 
>> I'd like to suggest that you take the gcc/compiler hardening code from
>> Tor's autoconf - I think you need it on by default and it's rather well
>> tested now for all of the major platforms:
>>
>> https://gitweb.torproject.org/tor.git/blob/f96f319b9e9fba5ff52eba2daec2247080f268ee:/configure.in#l557
>>
> 
> Distro's have their own configs to set CFLAGS related options. Be
> careful with interfering with those.
> 
> Paul
> 

I think that by default, users should be secure and people who package
should do the the slightly heavier lifting.

I'd be happy to write such a patch if it is of interest.

All the best,
Jake
_______________________________________________
OTR-users mailing list
[email protected]
http://lists.cypherpunks.ca/mailman/listinfo/otr-users

Reply via email to