[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Security team and NMUs



-----BEGIN PGP SIGNED MESSAGE-----

>>>>> On Sat, 5 Jun 1999 02:47:05 +0200, Wichert Akkerman <wichert@cs.leidenuniv.nl> said:

 Wichert> As some people may have noted we're in the process of
 Wichert> creating security.debian.org, which will be a location where
 Wichert> security fixes are installed as fast as possible, without
 Wichert> having to wait for a daily dinstall and mirror run. To make
 Wichert> this truely effective though the security team has to be
 Wichert> able to make packages available as fast as possible.

 Wichert> Therefore I would like to give the security team
 Wichert> authorization to make a NMU of a package if a
 Wichert> security-problem has been discovered without having go
 Wichert> through the normal NMU-procedure. This NMU is only used for
 Wichert> security.debian.org though, and not uploaded to master until
 Wichert> the maintainer has been contacted and the proper NMU
 Wichert> procedure has been followed.

 Wichert> Can everyone agree with that?

Second from me.  One nice thing is to be able to say that we respond
to security problems quickly.  This would make it that much easier to
respond. 


- -- 
@James LewisMoss <dres@ioa.com>         |  Blessed Be!
@    http://www.ioa.com/~dres           |  Linux is kewl!
@"Argue for your limitations and sure enough, they're yours." Bach

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3a
Charset: noconv
Comment: Processed by Mailcrypt 3.4, an Emacs/PGP interface

iQCVAwUBN1lhRoT2wb37Yw0VAQE++QP/Zf1mPPJHJ7G0YWjugfF5pFMRtU4JjSSR
dPjhCCecjpYlJD6wCLQgf8nW+HGCGNirZ45Lrior+8vOsBINuNzMC/XrQHbGu5Ux
DVYUzvxSp7EFsGRmUfiaQPe+fdZNI2eL+HPY52hcgdFm2grIxpGemteyETrFE+qK
TC73pet2HVE=
=yrts
-----END PGP SIGNATURE-----


Reply to: