[gentoo-user] USE="jpeg" not part of hardened/linux/x86 profile

June 07th, 2012 - 01:50 am ET by Grant | Report spam
One of my desktops runs a hardened profile:

# eselect profile list
Available profile symlink targets:
[1] default/linux/x86/10.0
[2] default/linux/x86/10.0/selinux
[3] default/linux/x86/10.0/desktop
[4] default/linux/x86/10.0/desktop/gnome
[5] default/linux/x86/10.0/desktop/kde
[6] default/linux/x86/10.0/developer
[7] default/linux/x86/10.0/server
[8] hardened/linux/x86 *
[9] hardened/linux/x86/selinux

I noticed USE="jpeg" is not enabled by default so I took a look around
and noticed these:

# locate hardened/linux/x86
/usr/portage/profiles/hardened/linux/x86/10.0
/usr/portage/profiles/hardened/linux/x86/desktop
/usr/portage/profiles/hardened/linux/x86/developer
/usr/portage/profiles/hardened/linux/x86/minimal
/usr/portage/profiles/hardened/linux/x86/server

Why can't I eselect a profile like hardened/linux/x86/desktop which
would hopefully have more desktop-oriented USE defaults than
hardened/linux/x86?

- Grant
email Follow the discussionReplies 11 repliesReplies Make a reply

Similar topics

Replies

#1 Paul Hartman
June 07th, 2012 - 11:30 am ET | Report spam
On Thu, Jun 7, 2012 at 12:39 AM, Grant wrote:
One of my desktops runs a hardened profile:

# eselect profile list
Available profile symlink targets:
 [1]   default/linux/x86/10.0
 [2]   default/linux/x86/10.0/selinux
 [3]   default/linux/x86/10.0/desktop
 [4]   default/linux/x86/10.0/desktop/gnome
 [5]   default/linux/x86/10.0/desktop/kde
 [6]   default/linux/x86/10.0/developer
 [7]   default/linux/x86/10.0/server
 [8]   hardened/linux/x86 *
 [9]   hardened/linux/x86/selinux

I noticed USE="jpeg" is not enabled by default so I took a look around
and noticed these:

# locate hardened/linux/x86
/usr/portage/profiles/hardened/linux/x86/10.0
/usr/portage/profiles/hardened/linux/x86/desktop
/usr/portage/profiles/hardened/linux/x86/developer
/usr/portage/profiles/hardened/linux/x86/minimal
/usr/portage/profiles/hardened/linux/x86/server

Why can't I eselect a profile like hardened/linux/x86/desktop which
would hopefully have more desktop-oriented USE defaults than
hardened/linux/x86?



I have never used hardened and am not in any way informed about it,
but I seem to recall reading that hardened on desktop was not
supported and that it is primarily intended for use on servers.

Maybe that profile is masked. You may still be able to use it by
manually updating your profile symlink (rather than having eselect do
it for you).
Replies Reply to this message
#2 Grant
June 08th, 2012 - 02:00 am ET | Report spam
One of my desktops runs a hardened profile:

# eselect profile list
Available profile symlink targets:
 [1]   default/linux/x86/10.0
 [2]   default/linux/x86/10.0/selinux
 [3]   default/linux/x86/10.0/desktop
 [4]   default/linux/x86/10.0/desktop/gnome
 [5]   default/linux/x86/10.0/desktop/kde
 [6]   default/linux/x86/10.0/developer
 [7]   default/linux/x86/10.0/server
 [8]   hardened/linux/x86 *
 [9]   hardened/linux/x86/selinux

I noticed USE="jpeg" is not enabled by default so I took a look around
and noticed these:

# locate hardened/linux/x86
/usr/portage/profiles/hardened/linux/x86/10.0
/usr/portage/profiles/hardened/linux/x86/desktop
/usr/portage/profiles/hardened/linux/x86/developer
/usr/portage/profiles/hardened/linux/x86/minimal
/usr/portage/profiles/hardened/linux/x86/server

Why can't I eselect a profile like hardened/linux/x86/desktop which
would hopefully have more desktop-oriented USE defaults than
hardened/linux/x86?



I have never used hardened and am not in any way informed about it,
but I seem to recall reading that hardened on desktop was not
supported and that it is primarily intended for use on servers.



Can anyone confirm that a hardened profile is only supported for
servers? I'm seeking a more desktop-friendly hardened profile but I
don't want to use an unsupported one.

- Grant

Maybe that profile is masked. You may still be able to use it by
manually updating your profile symlink (rather than having eselect do
it for you).
Replies Reply to this message
#3 Pandu Poluan
June 08th, 2012 - 03:40 am ET | Report spam

On Jun 8, 2012 12:59 PM, "Grant" wrote:

>> One of my desktops runs a hardened profile:
>>
>> # eselect profile list
>> Available profile symlink targets:
>> [1] default/linux/x86/10.0
>> [2] default/linux/x86/10.0/selinux
>> [3] default/linux/x86/10.0/desktop
>> [4] default/linux/x86/10.0/desktop/gnome
>> [5] default/linux/x86/10.0/desktop/kde
>> [6] default/linux/x86/10.0/developer
>> [7] default/linux/x86/10.0/server
>> [8] hardened/linux/x86 *
>> [9] hardened/linux/x86/selinux
>>
>> I noticed USE="jpeg" is not enabled by default so I took a look around
>> and noticed these:
>>
>> # locate hardened/linux/x86
>> /usr/portage/profiles/hardened/linux/x86/10.0
>> /usr/portage/profiles/hardened/linux/x86/desktop
>> /usr/portage/profiles/hardened/linux/x86/developer
>> /usr/portage/profiles/hardened/linux/x86/minimal
>> /usr/portage/profiles/hardened/linux/x86/server
>>
>> Why can't I eselect a profile like hardened/linux/x86/desktop which
>> would hopefully have more desktop-oriented USE defaults than
>> hardened/linux/x86?
>
> I have never used hardened and am not in any way informed about it,
> but I seem to recall reading that hardened on desktop was not
> supported and that it is primarily intended for use on servers.

Can anyone confirm that a hardened profile is only supported for
servers? I'm seeking a more desktop-friendly hardened profile but I
don't want to use an unsupported one.

- Grant




IIRC, once upon a time I selected the "default...server" profile, and got
informed by eselect that "I better be using the hardened profile for a
server" (or something to that effect).

So, yes I think 'hardened' is more aimed toward servers than desktops.

Rgds,


<p><br>
On Jun 8, 2012 12:59 PM, &quot;Grant&quot; &lt;<a href="mailto:"></a>&gt; wrote:<br>
&gt;<br>
&gt; &gt;&gt; One of my desktops runs a hardened profile:<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; # eselect profile list<br>
&gt; &gt;&gt; Available profile symlink targets:<br>
&gt; &gt;&gt;  [1]   default/linux/x86/10.0<br>
&gt; &gt;&gt;  [2]   default/linux/x86/10.0/selinux<br>
&gt; &gt;&gt;  [3]   default/linux/x86/10.0/desktop<br>
&gt; &gt;&gt;  [4]   default/linux/x86/10.0/desktop/gnome<br>
&gt; &gt;&gt;  [5]   default/linux/x86/10.0/desktop/kde<br>
&gt; &gt;&gt;  [6]   default/linux/x86/10.0/developer<br>
&gt; &gt;&gt;  [7]   default/linux/x86/10.0/server<br>
&gt; &gt;&gt;  [8]   hardened/linux/x86 *<br>
&gt; &gt;&gt;  [9]   hardened/linux/x86/selinux<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; I noticed USE=&quot;jpeg&quot; is not enabled by default so I took a look around<br>
&gt; &gt;&gt; and noticed these:<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; # locate hardened/linux/x86<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/10.0<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/desktop<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/developer<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/minimal<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/server<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; Why can&#39;t I eselect a profile like hardened/linux/x86/desktop which<br>
&gt; &gt;&gt; would hopefully have more desktop-oriented USE defaults than<br>
&gt; &gt;&gt; hardened/linux/x86?<br>
&gt; &gt;<br>
&gt; &gt; I have never used hardened and am not in any way informed about it,<br>
&gt; &gt; but I seem to recall reading that hardened on desktop was not<br>
&gt; &gt; supported and that it is primarily intended for use on servers.<br>
&gt;<br>
&gt; Can anyone confirm that a hardened profile is only supported for<br>
&gt; servers?  I&#39;m seeking a more desktop-friendly hardened profile but I<br>
&gt; don&#39;t want to use an unsupported one.<br>
&gt;<br>
&gt; - Grant<br>
&gt;</p>
<p>IIRC, once upon a time I selected the &quot;default...server&quot; profile, and got informed by eselect that &quot;I better be using the hardened profile for a server&quot; (or something to that effect). </p>
<p>So, yes I think &#39;hardened&#39; is more aimed toward servers than desktops. </p>
<p>Rgds, <br>
</p>

Replies Reply to this message
#4 Ron Adee
June 08th, 2012 - 11:00 am ET | Report spam

Hi. I'm Ron A.

I do believe "eselect profile list" shows a hardened desktop option, if I'm
mistaking I DO have a hardened desktop that runs openbox seamlessly.

Not sure as to the default USE flags, because I always review and add them
via /etc/portage/package.use. I do know of an gentoo based distro that has
a working e17 environment using the hardened tool-chain.

I've learned much through gentoo and these mail lists. 1st post to list.
Gentoo++
On Jun 8, 2012 12:33 AM, "Pandu Poluan" wrote:


On Jun 8, 2012 12:59 PM, "Grant" wrote:
>
> >> One of my desktops runs a hardened profile:
> >>
> >> # eselect profile list
> >> Available profile symlink targets:
> >> [1] default/linux/x86/10.0
> >> [2] default/linux/x86/10.0/selinux
> >> [3] default/linux/x86/10.0/desktop
> >> [4] default/linux/x86/10.0/desktop/gnome
> >> [5] default/linux/x86/10.0/desktop/kde
> >> [6] default/linux/x86/10.0/developer
> >> [7] default/linux/x86/10.0/server
> >> [8] hardened/linux/x86 *
> >> [9] hardened/linux/x86/selinux
> >>
> >> I noticed USE="jpeg" is not enabled by default so I took a look around
> >> and noticed these:
> >>
> >> # locate hardened/linux/x86
> >> /usr/portage/profiles/hardened/linux/x86/10.0
> >> /usr/portage/profiles/hardened/linux/x86/desktop
> >> /usr/portage/profiles/hardened/linux/x86/developer
> >> /usr/portage/profiles/hardened/linux/x86/minimal
> >> /usr/portage/profiles/hardened/linux/x86/server
> >>
> >> Why can't I eselect a profile like hardened/linux/x86/desktop which
> >> would hopefully have more desktop-oriented USE defaults than
> >> hardened/linux/x86?
> >
> > I have never used hardened and am not in any way informed about it,
> > but I seem to recall reading that hardened on desktop was not
> > supported and that it is primarily intended for use on servers.
>
> Can anyone confirm that a hardened profile is only supported for
> servers? I'm seeking a more desktop-friendly hardened profile but I
> don't want to use an unsupported one.
>
> - Grant
>

IIRC, once upon a time I selected the "default...server" profile, and got
informed by eselect that "I better be using the hardened profile for a
server" (or something to that effect).

So, yes I think 'hardened' is more aimed toward servers than desktops.

Rgds,





<p>Hi. I&#39;m Ron A.</p>
<p>I do believe &quot;eselect profile list&quot; shows a hardened desktop option, if I&#39;m mistaking I DO have a hardened desktop that runs openbox seamlessly. </p>
<p>Not sure as to the default USE flags, because I always review and add them via /etc/portage/package.use. I do know of an gentoo based distro that has a working e17 environment using the  hardened tool-chain.</p>
<p>I&#39;ve learned much through gentoo and these mail lists. 1st post to list. Gentoo++</p>
<div class="gmail_quote">On Jun 8, 2012 12:33 AM, &quot;Pandu Poluan&quot; &lt;<a href="mailto:"></a>&gt; wrote:<br type="attribution"><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<p><br>
On Jun 8, 2012 12:59 PM, &quot;Grant&quot; &lt;<a href="mailto:" target="_blank"></a>&gt; wrote:<br>
&gt;<br>
&gt; &gt;&gt; One of my desktops runs a hardened profile:<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; # eselect profile list<br>
&gt; &gt;&gt; Available profile symlink targets:<br>
&gt; &gt;&gt;  [1]   default/linux/x86/10.0<br>
&gt; &gt;&gt;  [2]   default/linux/x86/10.0/selinux<br>
&gt; &gt;&gt;  [3]   default/linux/x86/10.0/desktop<br>
&gt; &gt;&gt;  [4]   default/linux/x86/10.0/desktop/gnome<br>
&gt; &gt;&gt;  [5]   default/linux/x86/10.0/desktop/kde<br>
&gt; &gt;&gt;  [6]   default/linux/x86/10.0/developer<br>
&gt; &gt;&gt;  [7]   default/linux/x86/10.0/server<br>
&gt; &gt;&gt;  [8]   hardened/linux/x86 *<br>
&gt; &gt;&gt;  [9]   hardened/linux/x86/selinux<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; I noticed USE=&quot;jpeg&quot; is not enabled by default so I took a look around<br>
&gt; &gt;&gt; and noticed these:<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; # locate hardened/linux/x86<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/10.0<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/desktop<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/developer<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/minimal<br>
&gt; &gt;&gt; /usr/portage/profiles/hardened/linux/x86/server<br>
&gt; &gt;&gt;<br>
&gt; &gt;&gt; Why can&#39;t I eselect a profile like hardened/linux/x86/desktop which<br>
&gt; &gt;&gt; would hopefully have more desktop-oriented USE defaults than<br>
&gt; &gt;&gt; hardened/linux/x86?<br>
&gt; &gt;<br>
&gt; &gt; I have never used hardened and am not in any way informed about it,<br>
&gt; &gt; but I seem to recall reading that hardened on desktop was not<br>
&gt; &gt; supported and that it is primarily intended for use on servers.<br>
&gt;<br>
&gt; Can anyone confirm that a hardened profile is only supported for<br>
&gt; servers?  I&#39;m seeking a more desktop-friendly hardened profile but I<br>
&gt; don&#39;t want to use an unsupported one.<br>
&gt;<br>
&gt; - Grant<br>
&gt;</p>
<p>IIRC, once upon a time I selected the &quot;default...server&quot; profile, and got informed by eselect that &quot;I better be using the hardened profile for a server&quot; (or something to that effect). </p>
<p>So, yes I think &#39;hardened&#39; is more aimed toward servers than desktops. </p>
<p>Rgds, <br>
</p>
</blockquote></div>

Replies Reply to this message
#5 Jorge Martínez López
June 08th, 2012 - 11:20 am ET | Report spam
Hi there!

I run Hardened in my desktop and it mostly works.

When I switched profiles I looked at which use flags changed using
"emerge -pudvN world" and then I enabled them manually using ufed.

With Hardened forget using Skype. PaX will kill multimedia
applications such as Totem, use paxctl to solve this. I have some
issues with Phython applications such as Gwibber and Hotot, the only
way to solve it seems to use paxctl with the python binary, which I am
not willing to.

Greetings,
Jorge Martínez López http://www.jorgeml.net
Replies Reply to this message
Help Create a new topicNext page Replies Make a reply
Search Make your own search