Using portsuprade only for security

Daniel Bye danielby at slightlystrange.org
Tue May 5 12:57:06 UTC 2009


On Tue, May 05, 2009 at 08:37:28AM -0400, Daniel Underwood wrote:
> I ran a portsupgrade scan, and was presented with a long list of
> installed ports and whether an update was available. In general, I
> prefer not to update ports/packages between FreeBSD releases. An
> obvious exception to this general rules is the patching of security
> vulnerabilities; of course not all available updates are security
> fixes.
> 
> So my question is: how or where can I monitor security
> vulnerabilities? Or, how can I keep my system up-to-date with respect
> to security, without applying every non-security update?

Subscribe to security-notifications@ (for base system security alerts),
and install ports-mgmt/portaudit.

-- 
Daniel Bye
                                                                     _
                                              ASCII ribbon campaign ( )
                                         - against HTML, vCards and  X
                                - proprietary attachments in e-mail / \
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 196 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20090505/d081c2fd/attachment.pgp


More information about the freebsd-questions mailing list