Secure updating of OS and ports

Colin Percival colin.percival at wadham.ox.ac.uk
Tue Nov 18 05:34:07 PST 2003


At 09:56 18/11/2003 +0100, Dag-Erling Smørgrav wrote:
>Colin Percival <colin.percival at wadham.ox.ac.uk> writes:
> >    CVSup is insecure.  FreeBSD Update might do what you want, but
> > you'd have to trust me. :)
>
>...and three-hundred-odd FreeBSD developers.

   True, but there's a slight difference there -- people can look at the 
FreeBSD source code, but it's rather difficult to audit the binary updates 
I publish.

Colin Percival



More information about the freebsd-stable mailing list