Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 9 Apr 2013 13:03:33 -0400
From:      Robert Simmons <rsimmons0@gmail.com>
To:        freebsd-ports@freebsd.org
Subject:   Re: Growing list of required(ish) ports
Message-ID:  <CA%2BQLa9AuRSnWTuekDkVky9SKFThRggmPrjcMppTvVdSNRvh6jQ@mail.gmail.com>
In-Reply-To: <1365526115.3607.6.camel@localhost>
References:  <CA%2BQLa9Af3CC=FKMkrnmSL_-frW7ZvCQJ3=q7xkHUz5-3YyE3fQ@mail.gmail.com> <51622F44.3050604@FreeBSD.org> <CA%2BQLa9C5pfcRWrLXEiKzZEvVYd5W=wbN9i5wjtp=m92Fn8oq5w@mail.gmail.com> <CA%2B7WWSfwGBfXRcmc0UJ2ebguq5%2B-pYY82eopicpPcgeKxUCj3A@mail.gmail.com> <CAN6yY1ttmkiV_ns1qfhjd8ROiZ8WfUfmaj%2Ba1N6Ezapj3-QNcw@mail.gmail.com> <CAOjFWZ6EMjsBLHde-x7ZAx1qPmCB%2BvOSyCt-WWkmxtYfJsCJQw@mail.gmail.com> <CA%2Bt49PLz4-kg-=umrPm5Aad6Wjj=Ud=n=js39EJ-dEzJ60MmrQ@mail.gmail.com> <1365441764.4112.1.camel@localhost> <51641315.3080704@bluerosetech.com> <1365526115.3607.6.camel@localhost>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Apr 9, 2013 at 12:48 PM, Florent Peterschmitt
<florent@peterschmitt.fr> wrote:
> Le mardi 09 avril 2013 =E0 06:09 -0700, Darren Pilgrim a =E9crit :
>> On 2013-04-08 10:22, Florent Peterschmitt wrote:
>> > Yep, OpenSSH is tiny enought to keep it in base system. It would be a
>> > big loss not to have it by default, securely installed in the base
>> > system.
>>
>> I really wish it wasn't.  Having OpenSSH (and thus OpenSSL) in the base
>> means FreeBSD has an outdated version installed by default.  You have to
>> install openssl from ports in order to have modern cipher support, TLS
>> v1.1/1.2, DTLS, etc.  This puts two sets of openssl libs on the system
>> and creates recurrent headaches with builds where the autoconfiguration
>> selects the wrong set of libs.
>
> Hum, I didn't thought about that. So I think it would be possible to
> have a secondary =AB branch =BB for the distribution including something
> like =AB special ports =BB which can be retrieved, built and managed (for
> porters) quickly.
>
> Anybody think something like that is relevant and possible to do ?

One thing to note is that these parts of base are kept just about as
up-to-date as ports over in the HEAD branch.  In the case of OpenSSH,
HEAD is way way more up to date than ports.  These changes are also
fairly quickly MFC'd over to stable.  The real hiccup is that these
changes don't dribble out of freebsd-update.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CA%2BQLa9AuRSnWTuekDkVky9SKFThRggmPrjcMppTvVdSNRvh6jQ>