From owner-freebsd-current@FreeBSD.ORG Sat Jun 10 00:30:46 2006 Return-Path: X-Original-To: freebsd-current@freebsd.org Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 5C7AB16A418 for ; Sat, 10 Jun 2006 00:30:46 +0000 (UTC) (envelope-from rip@overflow.no) Received: from mail.mailwhiz.net (mail.mailwhiz.net [24.244.141.168]) by mx1.FreeBSD.org (Postfix) with ESMTP id 16E8A43D70 for ; Sat, 10 Jun 2006 00:30:45 +0000 (GMT) (envelope-from rip@overflow.no) Message-ID: <448A12BB.3040401@overflow.no> Date: Fri, 09 Jun 2006 20:30:51 -0400 From: Chris User-Agent: Thunderbird 1.5.0.2 (X11/20060522) MIME-Version: 1.0 To: Garance A Drosihn References: <20060526153422.GB25953@obiwan.tataz.chchile.org> <20060609095751.GI1273@obiwan.tataz.chchile.org> <4489DCAE.3070005@overflow.no> <20060609233148.GA88285@gothmog.pc> In-Reply-To: Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Mailman-Approved-At: Sat, 10 Jun 2006 02:29:46 +0000 Cc: Giorgos Keramidas , freebsd-current@freebsd.org Subject: Re: [fbsd] Integrating ProPolice/SSP into FreeBSD X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 10 Jun 2006 00:30:46 -0000 Garance A Drosihn wrote: > At 2:31 AM +0300 6/10/06, Giorgos Keramidas wrote: >> On 2006-06-09 16:40, Chris wrote: >> >> > I'm using it successfuly with the stackp-gap and the random >> > mmap on 6.1-RELEASE. No problems at all really :) Except >> > that I want a nob for gcc to use the protection by default. >> > We discussed this in another email. >> >> You can always use `/etc/make.conf' to set it globally, right? > For the system itself, yes, but as the below text also says: not for customs built programs. > Not quite globally. That will only set it for programs > whose makefiles .include /usr/share/mk/sys.mk . That's > all of buildworld, but it wouldn't include programs that > people are building on their own. > Exactly :) This is however the default on the 4.x and 5.x patches as opposed to the 6.x and 7.x which has slight modified behaviour. I think Jeremie did this to make it as little intrusive as possible, which was a good thought, although I would like the option to make it very intrusive :) -Chris