[tor-bugs] #17305 [Tor Browser]: Make our Gitian setup able to build hardened Linux bundles (64bit)

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Oct 21 11:12:27 UTC 2015

#17305: Make our Gitian setup able to build hardened Linux bundles (64bit)
 Reporter:  gk                                |          Owner:  gk
     Type:  task                              |         Status:  assigned
 Priority:  Very High                         |      Milestone:
Component:  Tor Browser                       |        Version:
 Severity:  Normal                            |     Resolution:
 Keywords:  tbb-gitian, TorBrowserTeam201510  |  Actual Points:
Parent ID:  #17304                            |         Points:
  Sponsor:  SpnsorU                           |

Comment (by gk):

 hardened-builds (https://gitweb.torproject.org/user/gk/tor-browser-
 bundle.git/log/?h=hardened-builds) has the progress I made so far. It
 seems everything is working, just the updater bits are still missing.

 I think what I want is a new channel, say, "hardened" while making sure at
 the same time that the hardened series is basically the alpha series +
 special compile time/runtime hardening features.

 So, if we are on the hardening branch and are doing something like `make
 alpha` there should be a bundle like `tor-browser-
 linux64-5.5a3-hardened_ALL.tar.xz` showing up at the end whith an update
 channel set to "hardened".

 The incrementals in turn would be created from `tor-browser-
 linux64-5.5a2-hardened_ALL.mar` (if it were existing).

 Does that make sense?

Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17305#comment:7>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online

More information about the tor-bugs mailing list