I'm sure that this topic is not new but it is probably one that should be brought up regularly incase there are new options as to how to address the issue.
My company, and other companies I work with (and I'm very sure we are not alone in this) would find it extremely valuable if there was a system/process where all the core LRP's were monitored for security bulletins. When one of these bulletins were to be released it would trigger a process of updating the LRP ASAP and letting everyone on, what may be a new list, that the update was available, a LEAF errata per say. I think that people, including us, would contribute $ to see this put together, while not making it any kind of premium service, but available to everyone. It could just be a voluntary donation thing, or/also involve one or more bounties. It would also be valuable if this task was taken on by something other than just an individual or group of individuals, but a business that has a large stake in things, or some organization with some structure. The idea on this is credibility and stability, not only in reality but from a perception standpoint. (Translate, I have to show my boss something that he can put some faith in.) What do you think? What kind of discussion has happened in the past on this topic? Or what am I missing that is already in place to take care of this? (and yes I will be searching the list archive to see what I can find, but we all know this is not as simple as it looks.) Thanks! Richard Amerman > -----Original Message----- > From: troy [mailto:[EMAIL PROTECTED] > How do you handle security patches for packages? For example, > if you were running a "full" Debian distro, a simple "apt-get > update" would insure that you pull down the latest security > patches... What is the approach to making sure UClibc is secure...? ------------------------------------------------------- SF.Net email is sponsored by: Discover Easy Linux Migration Strategies from IBM. Find simple to follow Roadmaps, straightforward articles, informative Webcasts and more! Get everything you need to get up to speed, fast. http://ads.osdn.com/?ad_idt77&alloc_id492&op=click ------------------------------------------------------------------------ leaf-user mailing list: [email protected] https://lists.sourceforge.net/lists/listinfo/leaf-user Support Request -- http://leaf-project.org/
