Your message dated Mon, 11 Feb 2008 22:02:04 +0000
with message-id <[EMAIL PROTECTED]>
and subject line Bug#416560: fixed in harden-doc 3.13
has caused the Debian Bug report #416560,
regarding harden-doc: suggests obsolete testing-security repositories
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [EMAIL PROTECTED]
immediately.)


-- 
416560: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=416560
Debian Bug Tracking System
Contact [EMAIL PROTECTED] with problems
--- Begin Message ---
Package: harden-doc
Version: 3.11
Severity: normal

Hi!

Section 10.1.4 _Security support for the testing branch_[1] states:

| Users willing to take advantage of this support should add the
| following lines to their /etc/apt/sources.list (instead of the
| lines described in Execute a security update, Section 4.2):
| 
|    deb http://secure-testing.debian.net/debian-secure-testing 
etch/security-updates main contrib non-free
|    # This line makes it possible to donwload source packages too
|    deb-src http://secure-testing.debian.net/debian-secure-testing 
etch/security-updates main contrib non-free

This suggestion refers to the secure-testing.debian.net
repositories, which are now obsolete.
According to the latest DTSA[2], testing-security updates are now
provided by security.debian.org:

| To use the Debian testing security archive, add the following lines
| to your /etc/apt/sources.list:
| 
| deb http://security.debian.org/ testing/updates main contrib non-free
| deb-src http://security.debian.org/ testing/updates main contrib non-free

See also the announcement of the repository switch[3] for further
details.

I think that this information should be fixed ASAP, since users who
do what is currently suggested by section 10.1.4 (that is to say,
use secure-testing.debian.net) will miss any testing-security update
issued after June 2006.
And this does *not* sound good...  ;-)


[1] 
http://www.debian.org/doc/manuals/securing-debian-howto/ch10.en.html#s-security-support-testing
[2] 
http://lists.alioth.debian.org/pipermail/secure-testing-announce/2007-March/000033.html
[3] 
http://lists.alioth.debian.org/pipermail/secure-testing-announce/2006-May/000029.html


--- End Message ---
--- Begin Message ---
Source: harden-doc
Source-Version: 3.13

We believe that the bug you reported is fixed in the latest version of
harden-doc, which is due to be installed in the Debian FTP archive:

harden-doc_3.13.dsc
  to pool/main/h/harden-doc/harden-doc_3.13.dsc
harden-doc_3.13.tar.gz
  to pool/main/h/harden-doc/harden-doc_3.13.tar.gz
harden-doc_3.13_all.deb
  to pool/main/h/harden-doc/harden-doc_3.13_all.deb



A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [EMAIL PROTECTED],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Javier Fernandez-Sanguino Pen~a <[EMAIL PROTECTED]> (supplier of updated 
harden-doc package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [EMAIL PROTECTED])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.7
Date: Mon, 11 Feb 2008 21:56:37 +0100
Source: harden-doc
Binary: harden-doc
Architecture: source all
Version: 3.13
Distribution: unstable
Urgency: low
Maintainer: Javier Fernandez-Sanguino Pen~a <[EMAIL PROTECTED]>
Changed-By: Javier Fernandez-Sanguino Pen~a <[EMAIL PROTECTED]>
Description: 
 harden-doc - Useful documentation to secure a Debian system
Closes: 396387 402637 412482 416560 419483 420378 454001
Changes: 
 harden-doc (3.13) unstable; urgency=low
 .
   * Fix encoding in debian/changelog and debian/copyright (Closes: #454001)
   * Move Homepage to package header
   * Make it Build-Depend on latex-cjk-chinese-arphic-gkai00mp instead of
     on tfm-arphic-gkai00mp
   * Update to latest CVS version:
      - Fix references to Lion and Ramen worm (Closes: #396387)
      - Fix location of testing-security repositories (Closes:  #416560)
      - Update documentation to refer to linux-image in the examples
        instead of kernel-image (Closes: #419483)
      - Fix typos spotted by Francesco Poli  (Closes: #420378)
      - Fix minor bugs in Snort appendix (Closes: #402637)
      - Fix location of syslog options (Closes: 412482)
Files: 
 d538001687acb2881b2b53a14322ff74 768 doc extra harden-doc_3.13.dsc
 05398db9349146c56b4079a842971561 1354469 doc extra harden-doc_3.13.tar.gz
 63f72c9ed14d746ea9062852b3c011d1 4452982 doc extra harden-doc_3.13_all.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFHsML/sandgtyBSwkRAgHsAJ41Bvtm/nOPaSztDYVkCrWv0nDuGwCeINhR
nwJXSNKdIjrvdCiKpGHzvlo=
=ra+z
-----END PGP SIGNATURE-----



--- End Message ---

Reply via email to