Packages with the hardened use flag

Global definition: Activate default security enhancements for toolchain (gcc, glibc, binutils).

app-admin / clsync : Live sync tool based on inotify, written in GNU C

app-crypt / cfssl : Cloudflare's PKI and TLS toolkit

app-emulation / containerd : A daemon to control runC

app-emulation / docker : The core functions you need to create Docker images and run Docker containers

app-emulation / docker-cli : the command line binary for docker

app-emulation / docker-machine : Machine management for a container-centric world

app-emulation / flannel : An etcd backed network fabric for containers

app-emulation / kompose : Tool to move from docker-compose to Kubernetes

app-emulation / runc : runc container cli tools

dev-lang / gnat-gpl : GNAT Ada Compiler - GPL version

dev-lang / python : An interpreted, interactive, object-oriented programming language

dev-libs / jemalloc : Jemalloc is a general-purpose scalable concurrent allocator

dev-ruby / rjb : Rjb is a Ruby-Java software bridge

games-emulation / dosbox : DOS emulator

mail-client / thunderbird : Thunderbird Mail Client

net-analyzer / suricata : High performance Network IDS, IPS and Network Security Monitoring engine

net-im / ricochet : Privacy-focused instant messaging through Tor hidden services

net-misc / bfgminer : Modular Bitcoin ASIC/FPGA/GPU/CPU miner in C

net-misc / cgminer : Bitcoin CPU/GPU/FPGA/ASIC miner in C

net-misc / cni-plugins : Standard networking plugins for container networking

net-misc / udpcast : Multicast file transfer tool

net-nds / gssproxy : daemon to proxy GSSAPI context establishment and channel handling

sys-cluster / kube-apiserver : Kubernetes API server

sys-cluster / kube-controller-manager : Kubernetes Controller Manager

sys-cluster / kube-proxy : Kubernetes Proxy service

sys-cluster / kube-scheduler : Kubernetes Scheduler

sys-cluster / kubeadm : CLI to Easily bootstrap a secure Kubernetes cluster

sys-cluster / kubectl : CLI to run commands against Kubernetes clusters

sys-cluster / kubelet : Kubernetes Node Agent

sys-cluster / minikube : Single Node Kubernetes Cluster

sys-devel / distcc : Distribute compilation of C code across several machines on a network

sys-devel / gcc : The GNU Compiler Collection

sys-kernel / gentoo-kernel : Linux kernel built with Gentoo patches

  • Use selection of hardening options recommended by Kernel Self Protection Project

sys-libs / uclibc-ng : C library for developing embedded Linux systems

sys-process / ctop : Top-like interface for container-metrics

www-client / firefox : Firefox Web Browser

x11-libs / gnome-pty-helper : GNOME Setuid helper for opening ptys