7029 want per-process exploit mitigation features (secflags) 7030 want basic address space layout randomization (aslr) 7031 noexec_user_stack should be a secflag 7032 want a means to forbid mappings around NULL.
*** 73,82 **** --- 73,83 ---- boot-archive.xml \ console-login.xml \ early-manifest-import.xml \ identity.xml \ manifest-import.xml \ + process-security.xml \ rmtmpfiles.xml \ vtdaemon.xml SYSTEMMANIFESTS = $(SYSTEMSVCS:%=$(ROOTSVCSYSTEM)/%)