[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: (semi-)automatic unclaim of packages with more than 2 weeks of inactivity (and missing DLAs on www.do)



Hi Emilio,

On Sat, Feb 29, 2020 at 02:02:41PM +0100, Emilio Pozuelo Monfort wrote:
> On 19/02/2020 10:45, Emilio Pozuelo Monfort wrote:
> > btw I wonder if that script shouldn't leave elsewhere, such as in the webwml
> > repo or in the security-tracker.
> I have moved it to the security-tracker in [1]. 

hah. I discussed this in person last weekend with Salvatore and then didnt do
this as he didn't like it. (As expressed in the ticket, where I'd like to
continue this discussion mostly/if possible.)

Last weekend I concluded to ping the debian-www people again (as I cannot myself
do merges in their cron.git) and now that you went ahead I cannot say I'm
unhappy you did so ;) (But I can say that I will happily accept a revert from
the security team if they decide to really really not want this script in their repo.
We'll find a way to make us all happy eventually!)

> I made it more useful for DSAs
> by ignoring regression updates, as those are not (currently) imported to the
> website. 

I'd add a warning as a reminder that regression updates are ignored.

> That let me found a few entries were data/DSA/list just had the wrong
> year, and by fixing those I got the list down to this:
> 
> $ bin/check-advisories --website-path ../../webwml
> ERROR: .data or .wml file missing for DSA 4342-1 (reserved by Michael Gilbert)
> ERROR: .data or .wml file missing for DSA 3156-1 (reserved by Luciano Bello)
> ERROR: .data or .wml file missing for DSA 3043-1 (reserved by Moritz Muehlenhoff)
> ERROR: .data or .wml file missing for DSA 2360-1 (reserved by Michael Gilbert)
> ERROR: .data or .wml file missing for DSA 1975-1 (reserved by Stefan Fritsch)

wheeehoooo! nice contribution to stable-security! :)

& thank you for all of this!


-- 
cheers,
	Holger

-------------------------------------------------------------------------------
               holger@(debian|reproducible-builds|layer-acht).org
       PGP fingerprint: B8BF 5413 7B09 D35C F026 FE9D 091A B856 069A AA1C

Our civilization is being sacrificed for the opportunity of a very small number
of people to continue making enormous amounts of money...  It is the sufferings
of the many  which pay  for the luxuries  of the few...  You say  you love your
children  above all else,  and yet  you are stealing  their future  in front of 
their very eyes...

Attachment: signature.asc
Description: PGP signature


Reply to: