Debian

Ondrej Sury sury.ondrej na globe.cz
Neděle Květen 11 19:52:32 CEST 2003


Jaroslav Aster <xaster na fi.muni.cz> writes:

Prosim nesirte bludy...  a nejprve si neco o Debianu prectete.

Q: How is security handled for testing and unstable?

A: The short answer is: it's not. Testing and unstable are rapidly moving
   targets and the security team does not have the resources needed to
   properly support those. If you want to have a secure (and stable) server
   you are strongly encouraged to stay with stable. However, the security
   secretaries will try to fix problems in testing and unstable after they
   are fixed in the stable release.

Napriklad:

 verze libc6 z testing:
  Version: 2.3.1-16

 verze libc6 z testing/updates
  Version: 2.2.5-9.woody.3

Pripada vam to jako vyssi verze?  Sice nevim, kde se na security.debian.org
vzal adresar s testingem, ale urcite *neni* podporovany a udrzovany.

Mimochodem diskuze o sambe prave probiha na debian-devel a ta samba je tam
opravdu derava, ale protoze balicky padaj do testingu automaticky a
momentalne je myslim 6 RC bugu u slapd a samba zavisi na libldap2, tak tam
jeste nejakou dobu opravena verze nebude.

Takze to zopakuju jeste jednou: SECURITY updates jsou dostupne pouze pro STABLE.

O.

> Ondrej Sury wrote:
>>
>> pro testing nejsou SECURITY updaty...  napriklad ted je v nem samba s exploitem...
>> 
>
> myslim, ze nemluvite pravdu. tedy nevim, jestli je v testing nova samba, 
> ale security updaty jsou viz.
>
> deb http://security.debian.org/ testing/updates main contrib
> deb-src http://security.debian.org/ testing/updates main contrib

-- 
Ondrej Sury - co/CTO                Globe Internet s.r.o. http://globe.cz/
Tel: +420(2)35365000 Fax: +420(2)35365009     Planickova 1, 162 00 Praha 6


Další informace o konferenci Linux