On 9 June 2015 at 22:30, Mark Felder <f...@freebsd.org> wrote: > > How do we make the ports-secteam effective again? Team members? > Infrastructure? New documentation and procedures?
ports-secteam's scope has grown since it was created. The team needs new, active, members to be able to deal with the VuXML and quarterly branch portion of its work. We also need to creating tooling to make this easier: for instance it would be really awesome to automatically create VuXML entries from CVE/CPE data. > However, I'm not sure > "number of commits" is necessarily a valuable metric when considering > candidates... I agree. I *am* active as a ports-security member: I monitor relevent open & closed security lists for concerns that may affect FreeBSD. In addition I watch pkgng development for new security concerns. That said, I havn't committed to the ports tree very much lately. -- Eitan Adler _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"