From 67ccafaa8c26b86264bd85bebc1dc66970f15a03 Mon Sep 17 00:00:00 2001 From: "Anthony G. Basile" Date: Fri, 9 Oct 2015 08:24:54 -0400 Subject: [PATCH] kernel-2.eclass: deblobbed kernels are supported for security, bug #555878. --- eclass/kernel-2.eclass | 11 +++++++---- 1 file changed, 7 insertions(+), 4 deletions(-) diff --git a/eclass/kernel-2.eclass b/eclass/kernel-2.eclass index 94231ecee5c59..0f47b8c3db802 100644 --- a/eclass/kernel-2.eclass +++ b/eclass/kernel-2.eclass @@ -798,10 +798,13 @@ postinst_sources() { # if we have USE=symlink, then force K_SYMLINK=1 use symlink && K_SYMLINK=1 - # if we're using a deblobbed kernel, it's not supported - [[ $K_DEBLOB_AVAILABLE == 1 ]] && \ - use deblob && \ - K_SECURITY_UNSUPPORTED=deblob + # We do support security on a deblobbed kernel, bug #555878. + # If some particular kernel version doesn't have security + # supported because of USE=deblob or otherwise, one can still + # set K_SECURITY_UNSUPPORTED on a per ebuild basis. + #[[ $K_DEBLOB_AVAILABLE == 1 ]] && \ + # use deblob && \ + # K_SECURITY_UNSUPPORTED=deblob # if we are to forcably symlink, delete it if it already exists first. if [[ ${K_SYMLINK} > 0 ]]; then