mirror of
https://github.com/freebsd/freebsd-src.git
synced 2024-11-27 22:12:43 +00:00
src.conf.5: regen after RELRO knob addition
This commit is contained in:
parent
2f3a961487
commit
a8af3aee4b
@ -1,6 +1,6 @@
|
|||||||
.\" DO NOT EDIT-- this file is @generated by tools/build/options/makeman.
|
.\" DO NOT EDIT-- this file is @generated by tools/build/options/makeman.
|
||||||
.\" $FreeBSD$
|
.\" $FreeBSD$
|
||||||
.Dd June 8, 2022
|
.Dd June 22, 2022
|
||||||
.Dt SRC.CONF 5
|
.Dt SRC.CONF 5
|
||||||
.Os
|
.Os
|
||||||
.Sh NAME
|
.Sh NAME
|
||||||
@ -196,6 +196,13 @@ Build all binaries with the
|
|||||||
.Dv DF_BIND_NOW
|
.Dv DF_BIND_NOW
|
||||||
flag set to indicate that the run-time loader should perform all relocation
|
flag set to indicate that the run-time loader should perform all relocation
|
||||||
processing at process startup rather than on demand.
|
processing at process startup rather than on demand.
|
||||||
|
The combination of the
|
||||||
|
.Va BIND_NOW
|
||||||
|
and
|
||||||
|
.Va RELRO
|
||||||
|
options provide "full" Relocation Read-Only (RELRO) support.
|
||||||
|
With full RELRO the entire GOT is made read-only after performing relocation at
|
||||||
|
startup, avoiding GOT overwrite attacks.
|
||||||
.It Va WITHOUT_BLACKLIST
|
.It Va WITHOUT_BLACKLIST
|
||||||
Set this if you do not want to build
|
Set this if you do not want to build
|
||||||
.Xr blacklistd 8
|
.Xr blacklistd 8
|
||||||
@ -651,8 +658,8 @@ Avoid installing examples to
|
|||||||
Include experimental features in the build.
|
Include experimental features in the build.
|
||||||
.It Va WITH_EXTRA_TCP_STACKS
|
.It Va WITH_EXTRA_TCP_STACKS
|
||||||
Build extra TCP stack modules.
|
Build extra TCP stack modules.
|
||||||
.It Va WITHOUT_FDT
|
.It Va WITH_FDT
|
||||||
Do not build Flattened Device Tree support as part of the base system.
|
Build Flattened Device Tree support as part of the base system.
|
||||||
This includes the device tree compiler (dtc) and libfdt support library.
|
This includes the device tree compiler (dtc) and libfdt support library.
|
||||||
.It Va WITHOUT_FILE
|
.It Va WITHOUT_FILE
|
||||||
Do not build
|
Do not build
|
||||||
@ -1416,6 +1423,11 @@ by proxy.
|
|||||||
.It Va WITHOUT_RBOOTD
|
.It Va WITHOUT_RBOOTD
|
||||||
Do not build or install
|
Do not build or install
|
||||||
.Xr rbootd 8 .
|
.Xr rbootd 8 .
|
||||||
|
.It Va WITHOUT_RELRO
|
||||||
|
Do not apply the Relocation Read-Only (RELRO) vulnerability mitigation.
|
||||||
|
See also the
|
||||||
|
.Va BIND_NOW
|
||||||
|
option.
|
||||||
.It Va WITH_REPRODUCIBLE_BUILD
|
.It Va WITH_REPRODUCIBLE_BUILD
|
||||||
Exclude build metadata (such as the build time, user, or host)
|
Exclude build metadata (such as the build time, user, or host)
|
||||||
from the kernel, boot loaders, and uname output, so that builds produce
|
from the kernel, boot loaders, and uname output, so that builds produce
|
||||||
|
Loading…
Reference in New Issue
Block a user