Apache 2.0

Miguel Mendez flynn at energyhq.es.eu.org
Thu May 29 06:17:29 PDT 2003


On Thu, 29 May 2003 18:04:11 +0800
"ÀîöÎ Xin LI" <delphij at freebsdchina.org> wrote:

> Please allow a reasonable time for maintainers and portmgr@ to
> determine whether the port will be upgraded. During a port freeze, it
> usually takes more time to have a port upgraded, even when the update

Hmm, either you didn't understand what I meant or I wasn't clear enough.
I wasn't, by any means, demanding that this package is updated
immediately. It was simply an honest question: Whether it can be updated
before 5.1 gets out. I'm very aware of the fact that, during a ports
freeze, portmgr@ are the ones to decide if a commit goes in or not. Even
if the port is not updated, I think a message should be added, something
like:

***************************************************
Warning: enabling mod_dav may pose a security risk.
***************************************************

And let the admin decide whether she is willing to use it. Marking the
port as FORBIDDEN is not a solution at all, IMHO.

> I have submitted a patch PR as ports/52768, you may want to access it
> through the web:
> http://www.freebsd.org/cgi/query-pr.cgi?pr=52768

Thanks, I'll have a look at it.

> Please trust portmgr@ and maintainer of the port, because they are
> more familiar to the port, and all of them consider security as an
> important issue. They always do the Good Thing(TM) :P

Yes, I do trust them :)

Cheers,
-- 
        Miguel Mendez - flynn at energyhq.es.eu.org
        EnergyHQ :: http://www.energyhq.tk
        Tired of Spam? -> http://www.trustic.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-ports/attachments/20030529/ddd9c2ae/attachment.bin


More information about the freebsd-ports mailing list