This is a significant step up from the drop-in kernels I have posted previously. Thanks to a massive cleanup this is the first Xen PV kernel I’ve been able to build with heap randomization and stack smashing protection. Other improvements include:
- EXT4 support
- NFS4 support
- Full-range IPSec support (untested)
- Head-to-toe netfilter and crypto
- Per-process i/o stats (see iotop)!
As always, these kernels are monolithic (lack loadable module support) for security and do not require an initrd to boot a Xen virtual machine.
Your udev or other parts of userland may require upgrading or downgrading to play ball with this kernel version. I’m migrating from 3.2.12 without any issues.
Compiled from gentoo-sources-3.10.17