On Sunday 04 November 2007 00:31:40 Aniruddha wrote:
> I would like to say goodbye. During an discussion on the Packman mailing
> list about the security policy of the Packman repo (see
> http://schiffbauer.net/pipermail/packman/2007-November/thread.html ) I
> realized openSUSE isn't what I looking for. To be honest this has also
> something to do with the rude manner in which my questions were
> answered.

The rudeness aspect I can certainly agree with. There is hardly ever a reason 
to be rude.

The security aspects however I can not. If you seriously believe that you can 
get more security out of gentoo, you are seriously mistaken. And if you are 
really basing your own commercial for-pay service on an upstream gratis 
volunteer service, you are a lawsuit waiting to happen

You may trust gentoo, but what if something happens? No one has paid gentoo 
anything, so why should they care? And even if they do care, they certainly 
won't get out of bed at 2am to help you solve your problems

If you are really serious about starting an IT company and selling service to 
your customers, you need to either be prepared to provide that service 
yourself, or contract with some other company to do that service for you. 
Gratis is nice, but there really are no deadlines in open source

And about your thread on packman, I hope you know that a "malicious change" 
can be as simple as changing a buffer size check from 10 to 11, or changing 
fgets to gets. No rootkit detector in the world will find that, but after 
such a change, a malicious user can walk right in

Anders

-- 
Madness takes its toll
-- 
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to