Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 14 Dec 1996 09:51:40 +0100 (MET)
From:      J Wunsch <j@uriah.heep.sax.de>
To:        peter@spinner.DIALix.COM (Peter Wemm)
Cc:        fenner@parc.xerox.com, mpp@freefall.freebsd.org, freebsd-bugs@freefall.freebsd.org
Subject:   Re: pending/2089
Message-ID:  <199612140851.JAA23821@uriah.heep.sax.de>
In-Reply-To: <199612140325.LAA14176@spinner.DIALix.COM> from Peter Wemm at "Dec 14, 96 11:25:09 am"

next in thread | previous in thread | raw e-mail | index | archive | help
As Peter Wemm wrote:

> I think we should change the default send-pr so that either:
>   1: it removes confidential submission support altogether and suggests
>      that if it's security related they should mail security-officer, or
>   2: yells loudly at the user and makes sure that they understand that
>      marking something confidential prevents the bug-fixers from seeing it
>      and practically ensures that it will be ignored.

1) is fairly impractical in that it increases the load of our
security-officers, since people often overestimate the degree of their
problem.  Only ``can get root by this in a second'' problems are
probably worth to go this route.  All others will be fixed much
quicker by using a normal PR.

2) Good idea.  Probably not too late to still make it into 2.2.

-- 
cheers, J"org

joerg_wunsch@uriah.heep.sax.de -- http://www.sax.de/~joerg/ -- NIC: JW11-RIPE
Never trust an operating system you don't have sources for. ;-)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199612140851.JAA23821>