Arg!

In order to submit a patch, isn't it a requirement that all rights of the patch 
be transferred over to the ASF?

I think we need to consult legal on this, because if the Innovation Center owns 
a copyright and/or license to the WSS4J code, that is not so good.

I would be -1 for accepting a patch that comes with copyrights.

Tom Jordahl


-----Original Message-----
From: Daniel Kulp [mailto:[email protected]] 
Sent: Monday, November 29, 2010 10:51 AM
To: [email protected]
Cc: Benson Margulies
Subject: Re: [VOTE] Release WSS4J 1.5.10

On Monday 29 November 2010 10:44:37 am Benson Margulies wrote:
> Do we really have to credit patches?

If they request it, yes.   They hold the copyright on the material in that 
patch and, while they license it to us under the  Apache License, the Apache 
License specifically states we need to keep notices intact that the copyright 
holders request/require.

In this case, the submitter has asked that the copyright notice be in the 
NOTICE.     Thus, we need to keep it there.

Dan


> 
> On Mon, Nov 29, 2010 at 10:31 AM, Tom Jordahl <[email protected]> wrote:
> > Conditional +1 (binding)
> > 
> > I noticed that the NOTICE file has the following:
> > 
> > "This product includes software Copyright University of Southampton IT
> > Innovation Centre, 2006 (http://www.it-innovation.soton.ac.uk)."
> > 
> > I couldn't figure out what software this was - if I am using
> > wss4j-1.5.10.jar, do I have to worry about this?  This should be removed
> > or we should be clearer about what this means (i.e. what part do I need
> > to exclude if I ship a product with wss4j in it).
> > 
> > Also, the date in the NOTICE file is 2009, probably should be 2010.
> > 
> > I only examined the binary zip, did not try to build the source.
> > 
> > Tom Jordahl
> > 
> > -----Original Message-----
> > From: Colm O hEigeartaigh [mailto:[email protected]]
> > Sent: Friday, November 26, 2010 12:17 PM
> > To: [email protected]
> > Subject: [VOTE] Release WSS4J 1.5.10
> > 
> > To the Apache Web Services Community,
> > 
> > This is a call for votes for the wss4j-1.5.10 release. This release
> > contains an upgrade to use XML Security 1.4.4, some important fixes
> > for supporting chained certificates and processing SAML assertions, as
> > well as a couple of other issues.
> > 
> > The distribution was built from the following SVN tag;
> > 
> > http://svn.apache.org/viewvc/webservices/wss4j/tags/1_5_10/
> > 
> > The distribution can be found at the following URL:
> > 
> > http://people.apache.org/~coheigea/stage/wss4j/1.5.10/dist/
> > 
> > You can also point maven at the following URL to pull down the 1.5.10
> > release POM, source, and class JARs:
> > 
> > http://people.apache.org/~coheigea/stage/wss4j/1.5.10/maven/
> > 
> > This vote will stay open for at least 72 hours.
> > 
> > Here is my +1 (binding).
> > 
> > Thanks,
> > 
> > Colm.
> > 
> > ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [email protected]
> > For additional commands, e-mail: [email protected]
> > 
> > 
> > ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [email protected]
> > For additional commands, e-mail: [email protected]
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [email protected]
> For additional commands, e-mail: [email protected]

-- 
Daniel Kulp
[email protected]
http://dankulp.com/blog

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to