RE: ARRRRGH! Guys, who's breaking -STABLE's GMIRROR code?!



-----Original Message-----
From: owner-freebsd-stable@xxxxxxxxxxx
[mailto:owner-freebsd-stable@xxxxxxxxxxx] On Behalf Of Patrick J Okui
Sent: Sunday, September 10, 2006 10:22 AM
To: Karl Denninger
Cc: freebsd-stable@xxxxxxxxxxx
Subject: Re: ARRRRGH! Guys, who's breaking -STABLE's GMIRROR code?!

You can track changes to a particular release - say by using
RELENG_6_1 rather than RELENG_6. In which case, would you
still say you are tracking STABLE?

Well, that depends.

For security and "critical fixes" (as the handbook phrases it) you can
track RELENG_6_1 (in the case of 6.1-RELEASE) and be happy.

But what happens if the needed fix isn't security or "critical" in the
minds of the FreeBSD developers? At that point you either need to wait
for the next RELEASE, manually merge fixes into your production source
(which depending on the fix(s) could be non-trivial) or cross your
fingers and follow -STABLE.

This problem isn't specific to FreeBSD (or unix in general) by Any
means, of course.

Sure, we could broaden the scope of RELENG_X_Y. Or introduce a new
branch that's closer to -STABLE yet tuned for something like, "security,
critical and major fixes" for production systems. I'm not sure either
of those options are preferable, would be effective in alleviating the
problem, or even workable in the first place.

Personally, I've been served quite well for many years with the current
configuration. Since I don't track -STABLE on anything important (or
more accurately have yet NEEDED to do so), I've never been hit by any of
these transient issues that crop up from time to time and can elicit
loud complaints.

--Chris
_______________________________________________
freebsd-stable@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-stable
To unsubscribe, send any mail to "freebsd-stable-unsubscribe@xxxxxxxxxxx"



Relevant Pages

  • Re: To Anyone who has Internet Explorer Installed or any other browser (Everybody)
    ... know the first thing about security. ... know about plans, fixes, manufacturer data, and -- perhaps most ... features) has less chance of dangerous flaws. ... why is it that Microsoft is STILL ...
    (alt.computer.security)
  • Re: checking for all known viruses vs. fixing the system
    ... ]>>> install a trojan horse on every computer so that they can automatically ... ]>>> change system software and configuration remotely any time they want to. ... and that said fixes may disable 3rd party software. ... ]> called it a security fix". ...
    (comp.security.misc)
  • Re: latest firefox version for fc4
    ... Visiting mozilla.org I see that the current version of firefox is ... which fixes certain security issues. ... Don't like running things that may have security issues:( ... Well I mean for them to package it with the packages for FC4. ...
    (Fedora)
  • Supercookie
    ... While doing an online security scan, I was told I can a vulnerability because ... AuditMyPC.com's Quick Security Fixes ... Microsoft has added this SuperCookie to Internet ... Explorer 6 and it may also work in all previous versions of Internet Explorer ...
    (microsoft.public.security)
  • FW:FreeBSD hiding security stuff
    ... Whats the intention behind the FreeBSD developers policy? ... Betreff: FreeBSD hiding security stuff ... A few FreeBSD developers apparently have found some security issue ...
    (freebsd-hackers)