Are source updating mechanisms vulnerable to MITM attacks?

QIU Quan jackqq at gmail.com
Fri Dec 25 01:53:25 UTC 2009


On Fri, Dec 25, 2009 at 03:55, Matthew Seaman
<m.seaman at infracaninophile.co.uk> wrote:
>
> freebsd-update(8), freebsd-update.conf(5)  You can use this just to pull
> down
> the system sources I believe, but only for release branches, not for
> -CURRENT
> or -STABLE.
>

Yes! freebsd-update(8) verifies download signatures. It's a good idea
to follow the release branch using freebsd-update, since all my
concern is following the security updates.

Thanks! :-)


-- 
裘佺 (QIU Quan) <jackqq at gmail.com>


More information about the freebsd-questions mailing list