Eirik Byrkjeflot Anonsen wrote:
> 2. What systems do we have in place that enables us to detect "evil
>    commits" once they actually make their way into the repository?  What
>    is the probability that they will be noticed?  Can we do anything to
>    increase this probability?

Distributed version control.   Developers should notice when attempting to push
to git if head had changed unexpectedly.   I'm sure google can find you some
background reading about how this works in git.

> 3. When incidents are detected (break-ins, abuse of admin rights, evil
>    commits, what have you...), what processes are in place to deal with
>    this?  What information is published, and in which fora, and when?
>    What investigations are performed, and what actions are carried out
>    as a result of such investigations?  Where are these processes
>    documented?

Those would be questions for our hosting provider, freedesktop.org.
X.Org does not control the freedesktop.org machines.   There is a large
overlap in the groups, but we do not have the authority to speak for them.

-- 
        -Alan Coopersmith-        alan.coopersm...@oracle.com
         Oracle Solaris Platform Engineering: X Window System

_______________________________________________
xorg@lists.freedesktop.org: X.Org support
Archives: http://lists.freedesktop.org/archives/xorg
Info: http://lists.freedesktop.org/mailman/listinfo/xorg
Your subscription address: arch...@mail-archive.com

Reply via email to