Jeffrey Walton writes:

 > The best I can tell, Mailman 2 did the wrong thing.

Against what threats with what level of security do you have in mind?

 > Confer: list managers did not fix Mailman 2 (nor did they use other
 > software which was secure). Why would you expect them to research
 > and securely configure Mailman 3?

I don't expect them to do so, until they get embarrassed (or worse)
for not doing so.  What else is new?

Security inherently requires research and configuration.  Asking for
"secure out of the box" is meaningless; it's what happens after it
comes out of the box that matters.

------------------------------------------------------
Mailman-Users mailing list Mailman-Users@python.org
http://mail.python.org/mailman/listinfo/mailman-users
Mailman FAQ: http://wiki.list.org/x/AgA3
Security Policy: http://wiki.list.org/x/QIA9
Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/
Unsubscribe: 
http://mail.python.org/mailman/options/mailman-users/archive%40jab.org

Reply via email to