I'm sure that this topic is not new but it is probably one that should be 
brought up regularly incase there are new options as to how to address the 
issue.

My company, and other companies I work with (and I'm very sure we are not alone 
in this) would find it extremely valuable if there was a system/process where 
all the core LRP's were monitored for security bulletins. When one of these 
bulletins were to be released it would trigger a process of updating the LRP 
ASAP and letting everyone on, what may be a new list, that the update was 
available, a LEAF errata per say.

I think that people, including us, would contribute $ to see this put together, 
while not making it any kind of premium service, but available to everyone. It 
could just be a voluntary donation thing, or/also involve one or more bounties. 
It would also be valuable if this task was taken on by something other than 
just an individual or group of individuals, but a business that has a large 
stake in things, or some organization with some structure. The idea on this is 
credibility and stability, not only in reality but from a perception standpoint.
(Translate, I have to show my boss something that he can put some faith in.)

What do you think? What kind of discussion has happened in the past on this 
topic? Or what am I missing that is already in place to take care of this? (and 
yes I will be searching the list archive to see what I can find, but we all 
know this is not as simple as it looks.)

Thanks!

Richard Amerman

> -----Original Message-----
> From: troy [mailto:[EMAIL PROTECTED] 


> How do you handle security patches for packages? For example, 
> if you were running a "full" Debian distro, a simple "apt-get 
> update" would insure that you pull down the latest security 
> patches... What is the approach to making sure UClibc is secure...?  


-------------------------------------------------------
SF.Net email is sponsored by: Discover Easy Linux Migration Strategies
from IBM. Find simple to follow Roadmaps, straightforward articles,
informative Webcasts and more! Get everything you need to get up to
speed, fast. http://ads.osdn.com/?ad_idt77&alloc_id492&op=click
------------------------------------------------------------------------
leaf-user mailing list: [email protected]
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/

Reply via email to