kernel-2.eclass: deblobbed kernels are supported for security, bug #555878.
authorAnthony G. Basile <blueness@gentoo.org>
Fri, 9 Oct 2015 12:24:54 +0000 (08:24 -0400)
committerAnthony G. Basile <blueness@gentoo.org>
Fri, 9 Oct 2015 12:25:04 +0000 (08:25 -0400)
eclass/kernel-2.eclass

index 94231ecee5c5924422d806e8dbbf8d3eca30568f..0f47b8c3db802cece142a35695d10a0308122322 100644 (file)
@@ -798,10 +798,13 @@ postinst_sources() {
        # if we have USE=symlink, then force K_SYMLINK=1
        use symlink && K_SYMLINK=1
 
-       # if we're using a deblobbed kernel, it's not supported
-       [[ $K_DEBLOB_AVAILABLE == 1 ]] && \
-               use deblob && \
-               K_SECURITY_UNSUPPORTED=deblob
+       # We do support security on a deblobbed kernel, bug #555878.
+       # If some particular kernel version doesn't have security
+       # supported because of USE=deblob or otherwise, one can still
+       # set K_SECURITY_UNSUPPORTED on a per ebuild basis.
+       #[[ $K_DEBLOB_AVAILABLE == 1 ]] && \
+       #       use deblob && \
+       #       K_SECURITY_UNSUPPORTED=deblob
 
        # if we are to forcably symlink, delete it if it already exists first.
        if [[ ${K_SYMLINK} > 0 ]]; then