portaudit -C

Victor Sudakov vas at mpeks.tomsk.su
Mon Sep 22 01:26:20 UTC 2014


Craig Rodrigues wrote:
> >
> > portaudit says, "The portaudit tool is now obsolete, please remove
> > portaudit and use the command 'pkg audit' instead."
> >
> > portaudit had a very useful function: "portaudit -C":
> >
> > -C  Print a vulnerability report for the port in the current working
> > directory. Mostly useful for port developers.
> >
> > How do I do it with "pkg audit"?
> >
> 
> Hi,
> 
> You can do something like this:
> 
>  cd /usr/ports/net/asterisk11
>  make -d x check-vulnerable

# make -d x check-vulnerable
make: illegal argument to d option -- x

We need a different "x". 

BTW the "check-vulnerable" target is not documented in ports(7), I had
to hunt for in in /usr/ports/Mk/*

Maybe we need some "pretty-print-vulnerable" target once portaudit is
now obsolete?

> 
> or
> 
> cd /usr/ports/net/asterisk11
> pkg audit `make -V PKGNAME`

This requires that net/asterisk11 be already installed, doesn't it?

-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
sip:sudakov at sibptus.tomsk.ru


More information about the freebsd-pkg mailing list