[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Packages that download/install unsecured files



Philipp Kern wrote:
> On 2009-09-18, Tom Feiner <feiner.tom@gmail.com> wrote:
>> Looks like this method works well for clamav-data and other similar packages
>> which needs to update databases frequently on stable/oldstable.
> 
> clamav-data is scheduled for deletion as soon as volatile moves onto
> ftp-master, so that's no precedent.  (I.e. there is opposition against
> daily builds entering the archive without real developers signing them.)
> 

Ah, I was not aware of this. So what is the best practice in this case, where
a package needs an updated database on a regular basis (monthly basis in case
of geoip)?

Thanks,
    Tom Feiner

Attachment: signature.asc
Description: OpenPGP digital signature


Reply to: