Secure updating of OS and ports

Dag-ErlingSmørgrav des at des.no
Tue Nov 18 00:57:15 PST 2003


Colin Percival <colin.percival at wadham.ox.ac.uk> writes:
> At 06:02 17/11/2003 -0800, Carol Overes wrote:
> > I'm thinking of updating kernel and binaries with
> > patches form ftp.freebsd.org which are siganed with
> > the PGP key of the security officers. However, this
> > has to be hand-made patching. Does anyone know a
> > secure way via for example cvsup ?
>    CVSup is insecure.  FreeBSD Update might do what you want, but
> you'd have to trust me. :)

...and three-hundred-odd FreeBSD developers.

At some point you just have to stop doubting and start trusting.

DES
-- 
Dag-Erling Smørgrav - des at des.no


More information about the freebsd-stable mailing list