Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-dev
Navigation:
Lists: gentoo-dev: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-dev@g.o
From: Alex Legler <a3li@g.o>
Subject: Re: Re: RFC Bugzilla interaction guide for devs & editbugs users
Date: Mon, 6 Sep 2010 14:36:31 +0200
On Mon, 6 Sep 2010 14:10:41 +0200, Christian Faulhammer
<fauli@g.o> wrote:

> Hi,
> 
> "Robin H. Johnson" <robbat2@g.o>:
> > 2.2. Security bugs
> >   The developer should comment, but ONLY members of the security
> > team should:
> >   - change whiteboard
> >   - add/remove arches
> 
>  As security may be grateful for any kind of help, those two actions
> is often done by the maintainers.
> 

We are indeed grateful for help, but we require people who change
things there to know what they are doing.

I understand that we're slow at times, but we regularly have to revisit
a bug because there was a change, but it wasn't done right. 
That's no help. Instead, it's creating more work (and frustration).

There is a specific guideline on how we handle our bugs, and we request
people who change bugs assigned to our team to follow them or to stay
away.

So, as for the guide, it should link to the vulnerability policy as
well include a note with the contents of the previous paragraph.

-- 
Alex Legler | Gentoo Security / Ruby
a3li@g.o | a3li@...
Attachment:
signature.asc (PGP signature)
References:
RFC Bugzilla interaction guide for devs & editbugs users
-- Robin H. Johnson
Re: RFC Bugzilla interaction guide for devs & editbugs users
-- Christian Faulhammer
Navigation:
Lists: gentoo-dev: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Re: RFC Bugzilla interaction guide for devs & editbugs users
Next by thread:
Re: RFC Bugzilla interaction guide for devs & editbugs users
Previous by date:
Re: RFC Bugzilla interaction guide for devs & editbugs users
Next by date:
Re: RFC Bugzilla interaction guide for devs & editbugs users


Updated Jun 29, 2012

Summary: Archive of the gentoo-dev mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.