logo       


Choosing A Webhost:
A web hosting service is a type of Internet hosting service that allows individuals and organizations to provide their own website accessible via the World Wide Web. Web hosts are companies that provide space on a server they own for use by their clients as well as providing Internet connectivity, typically in a data center. Web hosts can also provide data center space and connectivity to the Internet for servers they do not own to be located in their data center, called colocation. more...

Re: Klamav Updates: msg#00030

Subject: Re: Klamav Updates
This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
Scott Kitterman napisał(a):
> These are all good points and were mostly ones I argued during the meeting. 
>  The fundamental concern I have is I know (now) that the packaged clamav 
> will interact with the local version without particularly complaining about 
> it.  This is sufficiently risky in my book to trump the other arguements.  
> There are other issues too, like the clamav updates downloaded by klamav 
> won't have any of the Debian/Ubuntu patches installed.

And what are these patches for? Are they really important or just change
paths, etc.?
Maybe Clamav should be packaged exactly as upstream, without patches, so
that it could update itself without problems?

> Recently the clamav support picture has improved significantly.  Is you 
> look at Feisty, it's had three security updates since release and all 
> security fixes from the later releases are incorporated.  Additionally, the 
> current version of clamav is available via feisty-backports.  Because of 
> the improved volunteer support through the packaging system, I think the 
> need for individuals to upgrade directly from upstream is much less than it 
> has generally been.

I think it is not enough. In case of outburst of some nasty virus the
update should be delivered within hours, maximum 1 day, and I do not
think this deadline can be met if it is repackaged.

And providing newer version in -backports is not a good idea. Not
everyone enables -backports, especially on servers, so they would be
excluded from important security update. This might be good enough for
feature release, not release which has to do with security.

        Krzysztof Lichota


Attachment: signature.asc
Description: OpenPGP digital signature


Ruby Jobs
Java Jobs
Jobs in California
more...
what
job title, keywords
where
city, state, zip
jobs by job search
<Prev in Thread] Current Thread [Next in Thread>
Google Custom Search

Recently Viewed:
db.firebase.por...    text.xml.xalan....    qnx.openqnx.dev...    user-groups.zar...    internationaliz...    kde.devel.konve...    finance.e-gold....    emacs.latex.pre...    gis.therion/200...    web.webmin.gene...    yellowdog.gener...    vserver/2003-08...    redhat.release....    sysutils.tivoli...    xfree86.expert/...    mail.becky.user...    hardware.netapp...    netbsd.ports.xe...    python.distutil...    boot-loaders.gr...    culture.interne...    java.springfram...    activedir/2006-...   
Home | blog view | USPTO Patent Archive | advertise | OSDir is an inevitable website. super tiny logo

Free Magazines

Cisco News
Receive a free quarterly e-newsletter with exclusive articles on how Cisco IT uses its own products and solutions to enable the business.
subscribe

Systems Management News, the newspaper for IT systems administration and data center managers! Each issue of Systems Management News is chock-full of news and analysis to help you understand what's happening in your field.
subscribe

The Enterprise Newsweekly eWeek is the essential technology information source for builders of e-business.
subscribe

Oracle Magazine Oracle Magazine contains technology strategy articles, sample code, tips, Oracle and partner news, how to articles for developers and DBAs, and more. Oracle (NASDAQ: ORCL) is the world's largest enterprise software company.
subscribe

Total Telecom Total Telecom is "The Economist of the communications industry".
subscribe