On 4/9/2014 8:25 AM, Dag-Erling Smørgrav wrote:
Pawel Biernacki <[email protected]> writes:I understand that this is voluntary role and you have another (real life) responsibilities that’s why I'd like to propose an idea of (at least partially) paid position of Security Officer, because we all need quick and efficient response in cases like that.Having a paid Security Officer would not have made any difference.DES
Agreed.In this particular case FreeBSD's team responded very quickly once the threat was known and a resolution path was made available in a very expeditious fashion.
The real problem here is the depth of damage and the amount of work to rectify it, particularly for those who have certificates issued by someone else where **they** may have been compromised. But this has nothing to do with FreeBSD.
-- -- Karl [email protected]
smime.p7s
Description: S/MIME Cryptographic Signature
