Hi,
how about making a clear visible option to just apply things that do not brake nothing at all, never, that is
- randomize PIDs
- randomize ports
- hide processes from other users
- perhaps: bigger entropy pool
and perhaps try to convince Linus to put that part of grsecurity into mainstream kernel, it doesnt have any disadvantages does it?