I am wondering if the JFS team can please do 2 things to help enhance
the security of the JFS products.

1. Please GPG or PGP-sign each source code and patch release of JFS.
Make it easy to verify a JFS download over GPG and/or PGP. 

2. Publish MD5 checksums for each source code and patch release of JFS.

As you know, the sendmail source code was recently trojanned.


Bob Cochran
Greenbelt, Maryland, USA

Jfs-discussion mailing list

Reply via email to