summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeLines
...
* fragments: Remove CONFIG_SND_HDA_PREALLOC_SIZE=2048Wolfgang Müller2022-06-04-3/+0
| | | | | | | | | | Starting with kernels in the 5.15 branch, this setting is no longer changeable from its value of '0' on x86 systems [1]. The pulseaudio ebuild still recommends setting this value, which is possibly misleading. See [2]. [1] https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/sound/hda/Kconfig?id=c31427d0d21e198c74d5d92082c4b8194b257f82 [2] https://bugs.gentoo.org/show_bug.cgi?id=716252
* fragments: Remove CONFIG_NF_LOG_BRIDGE=yWolfgang Müller2022-06-04-1/+0
| | | | | | This particular option was merged into NF_LOG_SYSLOG in kernel commit 77ccee96a674 (netfilter: nf_log_bridge: merge with nf_log_syslog, 2021-03-25)
* fragments: Remove reference to CONFIG_UNUSED_SYMBOLSWolfgang Müller2022-06-04-2/+0
| | | | This option does no longer exist in the 5.15 branch.
* fragments: Add fragment for ZFSWolfgang Müller2022-06-04-0/+1
| | | | | ZFS requires CONFIG_ZLIB_DEFLATE which is selected by CONFIG_CRYPTO_DEFLATE.
* fragments: Add requisite option for KSPWolfgang Müller2022-06-04-0/+1
|
* fragments: Update to latest KSP recommendationsWolfgang Müller2021-08-13-0/+5
| | | | | | The Gentoo KSP recommendations have changed slightly again, now requiring three different settings instead of just one. Additionally, in order to enable KSP at all, CONFIG_MODIFY_LDT_SYSCALL needs to be unset.
* fragments: Enable CONFIG_SECURITYWolfgang Müller2021-08-13-0/+2
| | | | | | An upcoming commit updates to the latest KSP recommendations and requires this particular setting as a direct dependency for CONFIG_SECURITY_YAMA.
* fragments: Use expert mode by defaultWolfgang Müller2021-08-13-0/+2
| | | | | An upcoming commit which updates to the latest KSP recommendations requires expert mode for one setting. Enable it here.
* fragments: Remove obsoleted KSP switchWolfgang Müller2021-07-20-1/+0
| | | | | | The newer versions of sys-kernel/gentoo-sources do not have this switch anymore, instead relying only on the architecture-specific switches. Remove it.
* fragments: Enable GENTOO_KERNEL_SELF_PROTECTIONWolfgang Müller2021-07-03-0/+3
| | | | | | | | | This setting pulls in a set of recommended settings [1] from the Kernel Self Protection Project. We are pretty sure that we exhaustively set all these manually already, but since Gentoo upstream provides this option, make use of it too. [1] https://kernsec.org/wiki/index.php/Kernel_Self_Protection_Project/Recommended_Settings
* templates: Enable profile/systemd on nabokovWolfgang Müller2021-04-17-0/+1
|
* fragments: Add fragment enabling support for systemdWolfgang Müller2021-04-16-0/+1
| | | | | This fragment relies on the Gentoo patchsets for the Linux kernel, as the config option is not an upstream one.
* fragments: Enable CONFIG_BT_HS by defaultWolfgang Müller2021-03-06-0/+1
| | | | This will support high-speed bluetooth interfaces.
* fragments: Enable CONFIG_RASWolfgang Müller2021-03-06-0/+1
| | | | This is needed for CONFIG_EDAC* but is not enabled by default upstream.
* fragments: Remove superfluous options for 5.10Wolfgang Müller2021-03-06-3/+0
| | | | | These options have either been merged into others or enabled unconditionally.
* templates: Enable the PL2303 serial-to-USB driver on nabokovWynn Wolf Arbor2020-10-25-0/+1
|
* fragments: Add fragment with the PL2303 serial-to-USB driverWynn Wolf Arbor2020-10-25-0/+2
|
* templates: Move wireguard support to the base templateWynn Wolf Arbor2020-08-28-2/+1
| | | | This is a feature we generally want on all of our systems.
* fragments: Remove AUDIT_WATCH and AUDIT_TREE from security/auditWynn Wolf Arbor2020-08-28-2/+0
| | | | | | These two options have been replaced [1] by CONFIG_AUDITSYSCALL. [1] https://patchwork.kernel.org/patch/10686725/
* Remove CONFIG_CIFS_ACLWynn Wolf Arbor2020-08-07-1/+0
| | | | This option is now contained in CIFS_POSIX
* templates: Enable wireguard for demeterWynn Wolf Arbor2020-08-07-0/+1
|
* templates: Enable wireguard for nabokovWynn Wolf Arbor2020-08-07-0/+1
|
* fragments: Add fragment enabling wireguard supportWynn Wolf Arbor2020-08-07-0/+1
|
* Add fragment that enables filesystem encryptionWynn Wolf Arbor2020-02-29-0/+2
|
* Add new netfilter/nftables optionsWynn Wolf Arbor2020-02-29-0/+3
|
* Enable PCI by defaultWynn Wolf Arbor2020-02-29-0/+1
| | | | This option was apparently changed to default to no on the 5.4 series
* Improve security by disabling vsyscall table for legacy appsWynn Wolf Arbor2020-02-29-0/+3
|
* Remove deprecated kernel optionsWynn Wolf Arbor2020-02-29-22/+0
|
* Remove merge.shWynn Wolf Arbor2020-02-29-23/+0
| | | | This functionality has been moved to another tool.
* Allow multiple routing tables for IPv6Wynn Wolf Arbor2020-02-29-0/+2
|
* Initial importWynn Wolf Arbor2020-02-29-0/+380