Hi,

On 09/06/10 22:38, Thiago Macieira wrote:
> FYI, a number of patches were posted to the D-Bus mailing list a
> couple of days ago.
> 
> As expected, the mailing list's reaction was "use PolKit"...

I wonder, why was it expected ?

Looking through the dbus archive, the mailing list reaction to the patch
was,

 "On the GP desktop space we've been trying to move away from dbus'
 built in authorization because it's not really flexible (as you've
 discovered), and in the end, just too crazy."

which seems fairly sensible response. In contrast (from the same thread),

 "I think the policykit was considered, I don't know why it was not
 accepted."

Not good enough explanation why you are trying to push something into an
upstream project.

 "Perhaps later."

This reads like 'this is a quick hack we came up with for now'.

 "For all I know, we use bus policy because it does not require any
 changes to D-Bus services or clients and it is lightweight enough."

I am deeply suspicious of any security framework that claims to be
lightweight; lightweight is always but a synonym for 'nor really that
secure'.

So, why are we not planing to use PolicyKit ?

Tomas
_______________________________________________
MeeGo-dev mailing list
[email protected]
http://lists.meego.com/listinfo/meego-dev

Reply via email to