Re: [gentoo-dev] Why is IUSE=hpn mandatory in openssh ?

2014-04-09 Thread Kristian Fiskerstrand
that it is openssh compounds that. +1 for removing the + and leaving this optional (default off). Just to pitch in that as a user I'm in favor of this approach as well. - -- - Kristian Fiskerstrand Blog: http://blog.sumptuouscapital.com Twitter: @krifisk

Re: [gentoo-dev] Re: Changes in installed ebuilds

2014-06-24 Thread Kristian Fiskerstrand
ebuilds (hereunder changes to dependencies) should get a revision bump and go through normal stabilization procedures. - -- - Kristian Fiskerstrand Blog: http://blog.sumptuouscapital.com Twitter: @krifisk - Public PGP key 0xE3EDFAE3 at hkp

Re: [gentoo-dev] old masked for testing entries

2014-06-30 Thread Kristian Fiskerstrand
issues on the rest of the servers. Upgrading is relatively easy, mostly involving cleaning the environment, which will be re-generated with the updated version. - -- - Kristian Fiskerstrand Blog: http://blog.sumptuouscapital.com Twitter: @krifisk

Re: [gentoo-dev] Re: don't rely on dynamic deps

2014-07-22 Thread Kristian Fiskerstrand
after all testing, whereby at the point it reaches stable, the deps are hopefully more likely to be correct to begin with. Does anyone have any insight into where these changes most often occur? - -- - Kristian Fiskerstrand Blog: http://blog.sumptuouscapital.com Twitter

Re: [gentoo-dev] Followup notes: {cvs,git,git.overlays}.gentoo.org migration; awol: some overlays commits, gitweb

2014-08-19 Thread Kristian Fiskerstrand
:62:48:97:49:6a:f5:ad:66:88 (RSA) - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQIcBAEBCgAGBQJT87hMAAoJEPw7F94F4TaghKEQAJDCdvT2K/de+uhbdBkgScYQ

[gentoo-dev] Lastrite: media-sound/cowbell

2014-08-26 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 # Kristian Fiskerstrand k...@gentoo.org (26 Aug 2014) # Open security bug #386221 (CVE-2010-3353) # Does not seem actively maintained # Masked for removal in 30 days media-sound/cowbell - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp

Re: [gentoo-dev] maintainer-needed@ packages need you!

2014-08-30 Thread Kristian Fiskerstrand
with my entropykeys so can take that one at least. We should also consider removing some of the packages listed there. [1]:http://dev.gentoo.org/~mgorny/maintainer-needed.txt - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618

Re: [gentoo-dev] Re: sys-devel/gcc::mgorny up for testing

2014-12-07 Thread Kristian Fiskerstrand
restrictive AGPL-3 license). - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQIcBAEBCgAGBQJUhLI0AAoJEPw7F94F4TagRZcQAJyjF0xSxiwawZCa12vVu/nK xt8G1QaXyy89g/hcnRuqaK23

Re: [gentoo-dev] Re: sys-devel/gcc::mgorny up for testing

2014-12-07 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 12/07/2014 10:05 PM, Tim Harder wrote: On 2014-12-07 15:02, Kristian Fiskerstrand wrote: The most important consumer is app-text/pdftk Unfortunately, there is still no replacement for the latter which works as good, especially if you have

Re: [gentoo-dev] Gentoo-sources - should we stable?

2015-01-15 Thread Kristian Fiskerstrand
(at least without a great deal of travelling). Thankfully have all servers upgraded to get rid of 2.6 series though :) - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE

Re: [gentoo-dev] Re: [gentoo-commits] gentoo-x86 commit in dev-python/watchdog: watchdog-0.8.3.ebuild ChangeLog

2015-02-19 Thread Kristian Fiskerstrand
before bumping a package that is new to me and I'm not familiar enough with to know it is in Herd X would be a perfectly acceptable answer. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP

Re: [gentoo-dev] Re: [gentoo-commits] gentoo-x86 commit in dev-python/watchdog: watchdog-0.8.3.ebuild ChangeLog

2015-02-19 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 02/19/2015 10:31 AM, Patrick Lauer wrote: On Thursday 19 February 2015 10:07:30 Kristian Fiskerstrand wrote: On 02/19/2015 09:57 AM, Markos Chandras wrote: On 02/19/15 06:10, Mike Gilbert wrote: What saddens me the most

Re: [gentoo-dev] First release of Gentoo Keys

2015-01-13 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/13/2015 05:58 AM, Andrew Savchenko wrote: On Mon, 12 Jan 2015 19:44:46 +0100 Kristian Fiskerstrand wrote: On 01/12/2015 07:29 PM, Rich Freeman wrote: On Mon, Jan 12, 2015 at 1:06 PM, Kristian Fiskerstrand k...@gentoo.org wrote: One

Re: [gentoo-dev] First release of Gentoo Keys

2015-01-12 Thread Kristian Fiskerstrand
of --edit-key to make a compliant key. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQIcBAEBCgAGBQJUtAvMAAoJEPw7F94F4TagBsEQALMRpYPlAsVm/J/3cqA57BYH

Re: [gentoo-dev] First release of Gentoo Keys

2015-01-12 Thread Kristian Fiskerstrand
) won't give algorithm choice at all unless --full-gen-key is used but generate using the defaults. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQIcBAEBCgAGBQJUtA0

Re: [gentoo-dev] First release of Gentoo Keys

2015-01-12 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/12/2015 07:29 PM, Rich Freeman wrote: On Mon, Jan 12, 2015 at 1:06 PM, Kristian Fiskerstrand k...@gentoo.org wrote: One issue with DSA/ElGamal is the requirement for a random k value while signing/encrypting, Thanks - that was very

Re: [gentoo-dev] Re: vmware team needs help

2015-02-14 Thread Kristian Fiskerstrand
solution? Does anyone have experience with solutions such as [PHABRICATOR]? other similar systems? References: [PHABRICATOR] http://phabricator.org - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP

Re: [gentoo-dev] Re: vmware team needs help

2015-02-14 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 02/14/2015 04:34 PM, Michael Orlitzky wrote: On 02/14/2015 10:00 AM, Kristian Fiskerstrand wrote: Does anyone have experience with solutions such as [PHABRICATOR]? other similar systems? References: [PHABRICATOR] http://phabricator.org

[gentoo-dev] Lastrite: app-crypt/pinentry-qt

2015-02-09 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 # Kristian Fiskerstrand k...@gentoo.org (09 Feb 2015) # Dead upstream, will be removed in 30 days. # Qt support is provided by app-crypt/pinentry[qt4] app-crypt/pinentry-qt - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks

Re: [gentoo-dev] Re: [gentoo-commits] gentoo-x86 commit in dev-libs/libusbhp: ChangeLog Manifest libusbhp-1.0.2.ebuild metadata.xml

2015-02-16 Thread Kristian Fiskerstrand
is taking such actions without communicating that with the developer. If you don't let people know they do mistakes, it's likely they will do them again. I very much agree with this statement - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD

Kernel Security masks (was: Re: [gentoo-dev] qa last rites multiple packages)

2015-01-07 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/07/2015 07:48 PM, Kristian Fiskerstrand wrote: On 01/07/2015 07:22 PM, Mike Gilbert wrote: On Wed, Jan 7, 2015 at 1:11 PM, William Hubbs willi...@gentoo.org wrote: ... My two cents is that this is particularly true for kernel sources

Re: [gentoo-dev] qa last rites multiple packages

2015-01-07 Thread Kristian Fiskerstrand
for the mask to ensure an upgrade path, however as we don't currently have a structured mechanism for kernels I support the mask personally. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP

Re: [gentoo-dev] Naming of repositories: gento-x86 edition, bike shedding wanted

2015-03-14 Thread Kristian Fiskerstrand
) Personally I would find this a bit confusing so I'd prefer a separate namespace or no namespace, if going for a separate namespace it might allow for sub-trees down the road, etc... alternatively a separate namespace, but how to name it? maybe repos or tree? - -- Kristian Fiskerstrand Public

Re: [gentoo-dev] [heads-up] Use-case for the meta-distro (FOSDEM-talk)

2015-03-17 Thread Kristian Fiskerstrand
-case using Gentoo/Prefix in production: Indeed a very good talk that I enjoyed following. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJVB

Re: [gentoo-dev] Current Gentoo Git setup / man-in-the-middle attacks

2015-03-29 Thread Kristian Fiskerstrand
PKIX CA setup, nor would it protect with regards to server compromise. So the only viable way to secure ebuild repositories is proper OpenPGP usage. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN

Re: [gentoo-dev] Re: [gentoo-dev-announce] Service relaunch: archives.gentoo.org

2015-02-26 Thread Kristian Fiskerstrand
[Sent from my iPad, as it is not a secured device there are no cryptographic keys on this device, meaning this message is sent without an OpenPGP signature. In general you should *not* rely on any information sent over such an unsecure channel, if you find any information controversial of

Re: [gentoo-dev] Anti-spam changes: proposal to drop spammy mail

2015-05-11 Thread Kristian Fiskerstrand
, if a webmail interface or something was used it could be accessed through that for the forwarding users. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE

Re: [gentoo-dev] Becoming a Gentoo developer?

2015-04-17 Thread Kristian Fiskerstrand
, it simply isn't economical. As have been pointed out, there are other ways to contribute (proxied maintenance, overlay, editing wiki, support etc) that is likely a better starting point than becoming a dev directly. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks

Re: [gentoo-dev] rfc: go packages vs repositories

2015-06-12 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 06/12/2015 10:49 PM, William Hubbs wrote: On Fri, Jun 12, 2015 at 10:02:41PM +0200, Kristian Fiskerstrand wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 ... That said, I understand the structure. I don't like it, but I

Re: [gentoo-dev] rfc: go packages vs repositories

2015-06-12 Thread Kristian Fiskerstrand
whether an update is security related. That said, I understand the structure. I don't like it, but I understand it, given that it is primarily only intended to be used within container/docker environments. Good luck trying to get it to play nice with a package manager though... - -- Kristian

Re: [gentoo-dev] Creating a Gentoo built with Address Sanitizer

2015-07-02 Thread Kristian Fiskerstrand
. Depending on how much interest there is this may be something Gentoo wants to consider as an official project and publish official stage tarballs. This might be something that can be interesting for the Auditing subproject of Security as well - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3

Re: [gentoo-dev] [PATCH] document openssh-7.0 dsa key change #557388

2015-08-13 Thread Kristian Fiskerstrand
. (as a side note, it seems OpenSSH was not updated for FIPS-186-3 that adds other key lengths to DSA, but refers to DSA to mean FIPS-186-2) - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP

Re: [gentoo-dev] Infra plans regarding $Id$ - official answer...

2015-08-14 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 08/14/2015 04:54 PM, Rich Freeman wrote: On Fri, Aug 14, 2015 at 8:45 AM, Kristian Fiskerstrand k...@gentoo.org wrote: 2. The question is why manifests are modified for rsync. In git manifests are thin (only distfiles are there), in rsync

Re: [gentoo-dev] Infra plans regarding $Id$ - official answer...

2015-08-14 Thread Kristian Fiskerstrand
, otherwise it can open up for malicious alterations of these files. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJVzeLTAAoJECULev7WN52F9z8H/1Es0XTZP2eBmVyMSfVf65T7

OpenPGP verification (was Re: [gentoo-dev] Git, GPG Signing, and Manifests)

2015-07-17 Thread Kristian Fiskerstrand
of the upstream distribution key that is reasonably verified by the developer. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJVqLpCAAoJECULev7WN52FtmYH/3ySS

Re: OpenPGP verification (was Re: [gentoo-dev] Git, GPG Signing, and Manifests)

2015-07-17 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 07/17/2015 11:48 AM, hasufell wrote: On 07/17/2015 10:18 AM, Kristian Fiskerstrand wrote: On 07/17/2015 03:13 AM, NP-Hardass wrote: Additionally, I feel that a signature is a means of acknowledging that a package has been looked over

Re: [gentoo-dev] Re: ssl vs openssl vs libressl vs gnutls USE flag foo

2015-10-28 Thread Kristian Fiskerstrand
se to me at teh time. Such a setup makes sense to me as well, although likely want it to be more generic and maybe use a prioritized list rather than a use expand per package / group of packages. Maybe something similar to python_compat can be used for the TLS / crypto provider - -- Kristian Fiskerstra

Re: [gentoo-dev] Re: ssl vs openssl vs libressl vs gnutls USE flag foo

2015-10-28 Thread Kristian Fiskerstrand
ine this it might make sense to not refer to ssl (is anything actually using SSL these days? I certainly hope not), tls is the natural replacement unless we want to go for something more generic. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 30

Re: [gentoo-dev] Re: Gentoo-hosted code review

2015-11-02 Thread Kristian Fiskerstrand
o and other tools separate, so the demo > is running again plain anongit (and that seems to work fine). > > The way I see it, keeping review and committing/pushing separate is a good thing, and removes a lot of the concerns about hosting a review platform as it is sufficient with read-a

Re: [gentoo-dev] Depending on a range of slots

2015-11-02 Thread Kristian Fiskerstrand
pointing to the upstream UPGRADING instructions[0] References: [0] https://bitbucket.org/skskeyserver/sks-keyserver/src/867fbbe9720c269761472a64f047d416021a4e4a/UPGRADING?at=default=file-view-default -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD

Re: [gentoo-dev] Re: ChangeLog

2015-11-01 Thread Kristian Fiskerstrand
for a full git clone and want to see > regularly ChangeLogs nevertheless! > > I wouldn't be too worried about that, although I do hope that we get proper OpenPGP signing[0] into the main tree sooner rather than later. References: [0] https://wiki.gentoo.org/wiki/Project:Gentoo-keys -

Re: [gentoo-dev] ChangeLog

2015-11-04 Thread Kristian Fiskerstrand
ook forwards to and Gentoo Keys project is working hard on. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJWOjIcAAoJECULev7WN52FivEH/RssmJdQLug2E4B0ZUMUBDum fp5

Re: [gentoo-dev] Re: [gentoo-commits] repo/gentoo:master commit in: dev-libs/libgit2/

2015-10-10 Thread Kristian Fiskerstrand
ave a resource to read through. For that to be useful though it should have an explanation as to why it is wrong and how to correct it, and be reasonably ordered so that it is possible to reference a single issue from e.g. a separate review. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://po

Re: [gentoo-dev] Dynamic dependencies

2015-10-11 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 10/11/2015 01:21 PM, Rich Freeman wrote: > On Thu, Sep 17, 2015 at 7:57 AM, Kristian Fiskerstrand > <k...@gentoo.org> wrote: >> >> Another thing that strikes me is separation of stable vs ~arch >> behavio

Re: [gentoo-dev] unnecessary revbump

2015-10-06 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 10/06/2015 09:32 PM, hasufell wrote: >> > > I am going to repeat myself: I am not touching _any_ stable > ebuild. > I'm certainly in favour of that sentiment - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3

Re: [gentoo-dev] Dynamic dependencies

2015-09-17 Thread Kristian Fiskerstrand
sabled on a few of my computers for quite some time, specifically the workstations (desktop/laptop), and the sun hasn't dropped out of the sky yet. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED F

Re: [gentoo-dev] Dynamic dependencies

2015-09-17 Thread Kristian Fiskerstrand
ted if doing in-place eclass changes? - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJV+qq0AAoJECULev7WN52FkUIH/2P2tqTNf5YAU7VnB4Mx/glv Ccqu/rlS+bJsBpJJRombIUwYnKOu

Re: [gentoo-dev] Request to add ~> atom prefix operator on Portage.

2015-09-14 Thread Kristian Fiskerstrand
'. It strikes me that this likely is better solved using subslots, if it is ABI compatability you're wishing to retain? - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBA

Re: [gentoo-dev] symlinks in the tree

2015-09-12 Thread Kristian Fiskerstrand
I see an increase in maintenance complexity in particular with regards to stabilization and version cleanup without any obvious benefit. If the argument is the duplicate ebuild info after a copy is too much, there are likely too many versions for that package around. - -- Kristian Fiskerstrand Public PGP

Re: [gentoo-dev] LibreSSL import plan

2015-09-30 Thread Kristian Fiskerstrand
st increasing our maintenance, and security tracking, etc burdens without any strong benefits? - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN

Re: [gentoo-dev] LibreSSL import plan

2015-09-30 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 09/30/2015 01:51 PM, Rich Freeman wrote: > On Wed, Sep 30, 2015 at 7:29 AM, Kristian Fiskerstrand > <k...@gentoo.org> wrote: >> >> The way I see it this is relevant to the discussion at hand. > > Adm

Re: [gentoo-dev] Dynamic dependencies

2015-10-01 Thread Kristian Fiskerstrand
u please elaborate on what the issue actually is for the purpose of this discussion? - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJWDYVWAAoJECULev7WN52FRIkI

Re: [gentoo-dev] Dynamic dependencies

2015-10-01 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 10/01/2015 09:22 PM, Ciaran McCreesh wrote: > On Thu, 1 Oct 2015 21:11:22 +0200 Kristian Fiskerstrand > <k...@gentoo.org> wrote: >> On 10/01/2015 09:12 PM, Ciaran McCreesh wrote: >>> On Thu, 1 Oct 2015 15:0

Re: [gentoo-dev] OpenRC 0.18 changes -O _netdev

2015-10-01 Thread Kristian Fiskerstrand
x-1.21.0 mount has -O (capital O) option support. I can do mount -a -O no_netdev and and mount -a -O _netdev with mount honoring _netdev in fstab." - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -

Re: [gentoo-dev] OpenRC 0.18 changes -O _netdev

2015-10-01 Thread Kristian Fiskerstrand
ported? - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJWDaCgAAoJECULev7WN52FcBQIAJ42dU7n9DOgNf9lDr4jn566 I7Qf7W3DhYWpHyhsxO25bTdLka6

OpenPGP verification of source files (was: Re: [gentoo-dev] Updating all Manifest to contain SHA256 SHA512 WHIRLPOOL)

2015-09-18 Thread Kristian Fiskerstrand
s have a well thought out setup for key management locally and in fact verify the OpenPGP signatures vs known good keys, and that appropriate measures are being taken in the case of non-maintainer commits that doesn't reduce the level of security. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFA

[gentoo-dev] Re: News item: Apache "-D PHP5" needs update to "-D PHP"

2016-01-04 Thread Kristian Fiskerstrand
possible to have a conditional approach where either one can be used, or maybe set the new variable/defin if the old one is used? - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED

Re: [gentoo-dev] Re: News item: Apache "-D PHP5" needs update to "-D PHP"

2016-01-04 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/04/2016 09:41 AM, Kristian Fiskerstrand wrote: > On 01/04/2016 01:26 AM, Sebastian Pipping wrote: >> Hi! > > Such a change should really be avoided if possible. Would it be > possible to have a conditional approach wh

Re: [gentoo-dev] Re: News item: Apache "-D PHP5" needs update to "-D PHP"

2016-01-04 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/04/2016 02:30 PM, Kristian Fiskerstrand wrote: > On 01/04/2016 09:41 AM, Kristian Fiskerstrand wrote: >> On 01/04/2016 01:26 AM, Sebastian Pipping wrote: >>> Hi! > > > > >> Such a change should

Re: [gentoo-dev] [RFC] New project: Crypto

2015-12-28 Thread Kristian Fiskerstrand
[Sent from my iPad, as it is not a secured device there are no cryptographic keys on this device, meaning this message is sent without an OpenPGP signature. In general you should *not* rely on any information sent over such an unsecure channel, if you find any information controversial or

Re: [gentoo-dev] [RFC] New project: Crypto

2015-12-28 Thread Kristian Fiskerstrand
-expected send a response and request a signed confirmation] > On 27 Dec 2015, at 23:49, Andrew Savchenko <birc...@gentoo.org> wrote: > > Hi! > >> On Wed, 25 Nov 2015 21:21:37 +0100 Kristian Fiskerstrand wrote: >>> ... > >> I'm trying to reclaim

Re: [gentoo-dev] [RFC] New project: Crypto

2015-12-28 Thread Kristian Fiskerstrand
-expected send a response and request a signed confirmation] > On 28 Dec 2015, at 16:07, Kristian Fiskerstrand <k...@gentoo.org> wrote: > > > The main issue is key storage, though. For signatures you can use a dedicated > signing subkey, however you get in problem

[gentoo-dev] Re: News item: GRUB security update

2015-12-19 Thread Kristian Fiskerstrand
s?) linking to the GLSA. Even a blog in private blog as part of Planet Gentoo would likely work (but official blog would work nicer). -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 signature.asc Description: OpenPGP digital signature

Re: [gentoo-dev] Need clear semantics for packages with binary entities

2015-12-30 Thread Kristian Fiskerstrand
is more from a security point of view than performance, and the question makes perfect sense. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQ

Re: [gentoo-dev] [RFC] New project: Crypto

2015-12-29 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 12/28/2015 07:35 PM, Rich Freeman wrote: > On Mon, Dec 28, 2015 at 10:07 AM, Kristian Fiskerstrand > <k...@gentoo.org> wrote: >>> On 28 Dec 2015, at 15:58, James Le Cuirot <ch...@gentoo.org> >>> wrote: &g

[gentoo-dev] [RFC] New project: Crypto

2015-11-25 Thread Kristian Fiskerstrand
a new project. References: [0] https://wiki.gentoo.org/wiki/Project:Crypto - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE

Re: [gentoo-dev] rfc: adding sbin directories to PATH for all users

2015-11-25 Thread Kristian Fiskerstrand
dn't be in sbin in the first place but in bin. In any case; I don't see any good reason to change the traditional behavior of sbin only being in path for root. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3

Re: [gentoo-dev] [RFC] New project: Crypto

2015-11-25 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 11/25/2015 08:20 PM, Daniel Campbell wrote: > On 11/25/2015 09:12 AM, Kristian Fiskerstrand wrote: >> Hi, > >> As recently discussed herds are migrating to projects, and in >> that connection we've now set

Re: [gentoo-dev] rfc: adding sbin directories to PATH for all users

2015-11-25 Thread Kristian Fiskerstrand
was installing things when I inherited it from the previous > maintainer. > > If William's PATH proposal is not implemented, I would be happy to > move it all to /bin if so desired. Just file a bug. If moving it in the first place, wouldn't it go to /usr/bin as not being essential

Re: [gentoo-dev] [RFC] New global USE flag: webp

2016-06-04 Thread Kristian Fiskerstrand
On 06/04/2016 09:45 PM, Kristian Fiskerstrand wrote: > On 06/04/2016 09:39 PM, Michael Orlitzky wrote: >> On 06/04/2016 03:30 PM, M. J. Everitt wrote: >>> The existing use description might be considered slightly confusing, >>> potentially .. >>> >>

Re: [gentoo-dev] [RFC] New global USE flag: webp

2016-06-04 Thread Kristian Fiskerstrand
On 06/04/2016 09:50 PM, M. J. Everitt wrote: > On 04/06/16 20:45, Kristian Fiskerstrand wrote: >> would a REQUIRED_USE in newer versions make sense to force the new use >> flag for people upgrading as a deprecation period? >> > What's the migration path/timeline look like

Re: [gentoo-dev] [RFC] New global USE flag: webp

2016-06-04 Thread Kristian Fiskerstrand
nable webp support for GD in php-7.x > > would a REQUIRED_USE in newer versions make sense to force the new use flag for people upgrading as a deprecation period? -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618

Re: [gentoo-dev] [RFC] New global USE flag: webp

2016-06-04 Thread Kristian Fiskerstrand
On 06/04/2016 09:53 PM, Michael Orlitzky wrote: > On 06/04/2016 03:45 PM, Kristian Fiskerstrand wrote: >> >> would a REQUIRED_USE in newer versions make sense to force the new use >> flag for people upgrading as a deprecation period? >> > > You mean like requiri

Re: Facilitating user contributed ebuilds (Was: [gentoo-dev] The future of the Sunrise project)

2016-06-11 Thread Kristian Fiskerstrand
ntain a few packages in their own area of interest. There is also a gentoo-proxy-ma...@lists.gentoo.org list for these kinds of questions that is likely more appropriate -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7

Re: Facilitating user contributed ebuilds (Was: [gentoo-dev] The future of the Sunrise project)

2016-06-11 Thread Kristian Fiskerstrand
On 06/12/2016 04:20 AM, james wrote: > > Is there an archive to this wonderful list? I cannot seem to find the > archive? https://bugs.gentoo.org/show_bug.cgi?id=581370 -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109

Re: Facilitating user contributed ebuilds (Was: [gentoo-dev] The future of the Sunrise project)

2016-06-11 Thread Kristian Fiskerstrand
On 06/12/2016 05:53 AM, james wrote: > On 06/11/2016 08:29 PM, Kristian Fiskerstrand wrote: >> On 06/12/2016 04:20 AM, james wrote: >>> >>> Is there an archive to this wonderful list? I cannot seem to find the >>> archive? >> >> https://bugs.gen

Re: Facilitating user contributed ebuilds (Was: [gentoo-dev] The future of the Sunrise project)

2016-06-11 Thread Kristian Fiskerstrand
On 06/12/2016 04:57 AM, Kristian Fiskerstrand wrote: > On 06/12/2016 05:53 AM, james wrote: > >> I only see (2) posts in the ML, so is it active? > > It is a new ML, but it is active to the extent that you should expect to > see discussion on it > To elaborate o

[gentoo-dev] dev-util/nsis: Maintainer request

2016-06-05 Thread Kristian Fiskerstrand
dev-util/nsis curretly has no maintainer. It has a [critical security bug filed against it]. Does anyone want to pick it up? if not we'll start a last rite process for it. [critical security bug filed against it] https://bugs.gentoo.org/show_bug.cgi?id=568398 -- Kristian Fiskerstrand OpenPGP

[gentoo-dev] Packages up for grabs

2016-05-29 Thread Kristian Fiskerstrand
Due to bug #584246 the following packages have been dropped to maintainer-needed: app-doc/cppman app-text/grip app-text/cherrytree dev-db/sqlitestudio dev-python/path-and-address sys-apps/miller sys-process/nmon -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks

Re: [gentoo-dev] [RFC] bugs.g.o: Merging UNCONFIRMED & CONFIRMED into NEW

2016-06-16 Thread Kristian Fiskerstrand
e. But I currently make use of the UNCONFIRMED / CONFIRMED distinction as well , CONFIRMED often in relation to UPSTREAM keyword that I'm not actively working on myself -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-16 Thread Kristian Fiskerstrand
On 06/16/2016 03:19 PM, James Le Cuirot wrote: > I currently set InVCS for pending-stable fixes in conjunction with the > IN_PROGRESS state. I would like to keep InVCS at least. Exactly -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFD

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
On 06/17/2016 02:18 PM, Rich Freeman wrote: > On Fri, Jun 17, 2016 at 7:58 AM, Kristian Fiskerstrand <k...@gentoo.org> > wrote: >> On 06/17/2016 01:50 PM, Rich Freeman wrote: >>> It might be better to just close the original bug, and then open a new >>> STABLER

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
On 06/17/2016 03:02 PM, Kristian Fiskerstrand wrote: >> Can you clarify what you mean by that? >> >> If I have a tracker with 47 resolved blockers, how do I know which of >> those made it to stable? >> > > The once that are RESOLVED FIXED, before they

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-16 Thread Kristian Fiskerstrand
On 06/16/2016 11:57 PM, Andreas K. Huettel wrote: > How about introducing a state that explicitly means "resolved but needs > stabilization"? We already have InVCS keyword for this -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94C

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
On 06/17/2016 07:05 PM, Brian Dolbec wrote: > On Fri, 17 Jun 2016 18:46:16 +0200 > Kristian Fiskerstrand <k...@gentoo.org> wrote: > >> On 06/17/2016 06:41 PM, Rich Freeman wrote: >>> On Fri, Jun 17, 2016 at 12:00 PM, Kristian Fiskerstrand >>> <k...@gentoo

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-16 Thread Kristian Fiskerstrand
s to work with. I oppose a change to that behavior, although I would like to see it being used more consistently as it seems quite a few developers are neglecting the stable tree. -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
On 06/17/2016 03:48 PM, Rich Freeman wrote: > On Fri, Jun 17, 2016 at 9:02 AM, Kristian Fiskerstrand <k...@gentoo.org> > wrote: >> On 06/17/2016 02:18 PM, Rich Freeman wrote: >> >>> If I'm a maintainer and I resolve a bug, how do I know if I should >>> m

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
On 06/17/2016 03:58 PM, Rich Freeman wrote: > On Fri, Jun 17, 2016 at 9:52 AM, Michał Górny <mgo...@gentoo.org> wrote: >> On Thu, 16 Jun 2016 15:14:44 +0200 >> Kristian Fiskerstrand <k...@gentoo.org> wrote: >> >>> On 06/16/2016 03:02 PM

Re: [gentoo-dev] Lastrites: games-fps/doom3-mitm, games-fps/ut2003-bonuspack-cm, games-fps/ut2004-airbuccaneers, games-fps/ut2004-alienswarm, games-fps/ut2004-fragops, games-fps/ut2004-hamsterbash, ga

2016-01-08 Thread Kristian Fiskerstrand
king over this one - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIGNATURE- iQEcBAEBCgAGBQJWj+gFAAoJECULev7WN52FRmEH+QHMG+VkHu4yymmlZIekXOPj NOBSGPtqml48bs9smV2SByaI7x9DzpIsEz97ZaErOV7eXK

Re: [gentoo-dev] Herd likely up for grabs: net-irc

2016-01-17 Thread Kristian Fiskerstrand
new maintainers for its packages. > > net-irc/irssi: swegener@ I expect that this is actually actively maintained, but if not I'm interested in stepping up and taking it. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 303

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
m if there's not a big need for that. > I can imagine situations where URL field is used for bug description itself, and as such isn't available for use for commit message. I'd imagine this to be more a "see also" style field -- Kristian Fiskerstrand OpenPGP certificate re

Re: [gentoo-dev] [RFC] bugs.g.o: Killing VERIFIED state, possibly introducing STABILIZED

2016-06-17 Thread Kristian Fiskerstrand
the history of the issue available for the stabilization, filtering it out based on keyword is easy to do in saved search. -- Kristian Fiskerstrand OpenPGP certificate reachable at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 signature.asc Description: Ope

Re: [gentoo-dev] Changing order of default virtual/udev provider

2016-02-08 Thread Kristian Fiskerstrand
d I did. > > The non-systemd profiles should have eudev as default. > +1 from me on this change of default order. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 -BEGIN PGP SIG

Re: [gentoo-dev] Changing order of default virtual/udev provider

2016-02-09 Thread Kristian Fiskerstrand
emd in their flags? > Exactly, in particular since this isn't officially supported as standalone to begin with it can only help with stability of systems to change the default order. - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109

Re: [gentoo-dev] Re: Bug #565566: Why is it still not fixed?

2016-02-23 Thread Kristian Fiskerstrand
h git commit, additionally this will cause issues with retirement and similar situations (certificate revocation, subkey rotations, expiries). Git is a good tool for revision control (if used properly), but it is not a panacea - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyser

Re: [gentoo-dev] [RFD] Adopt-a-package, proxy-maintenance, and other musings

2016-01-21 Thread Kristian Fiskerstrand
complications when issues are detected, in particular security relevant ones. Attaching a CSV of bugs assigned to security with maintainer-needed CCed. e.g app-text/htmltidy has multiple reverse dependecies but is itself maintainer needed with at least two vulnerabilities (bug 561452) -- Kristian Fi

Re: [gentoo-dev] [RFD] Adopt-a-package, proxy-maintenance, and other musings

2016-01-21 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/21/2016 06:30 PM, Alexis Ballier wrote: > On Thu, 21 Jan 2016 18:25:21 +0100 Kristian Fiskerstrand > <k...@gentoo.org> wrote: > >> However it can cause complications when issues are detected, in >> partic

Re: [gentoo-dev] Re: News item: Upgrading Apache from 2.2 to 2.4

2016-01-27 Thread Kristian Fiskerstrand
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 01/27/2016 03:17 PM, Dirkjan Ochtman wrote: > On Fri, Jan 22, 2016 at 3:20 PM, Kristian Fiskerstrand > <k...@gentoo.org> wrote: >> Advanced notice, please > > Committed 2016-01-27-upgrading-to-apache-2_4 to ne

Re: [gentoo-dev] Re: News item: Upgrading Apache from 2.2 to 2.4

2016-01-22 Thread Kristian Fiskerstrand
ws item, then file the stabilization bugs so that people at > least have advance notice? Advanced notice, please - -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 ---

Re: [gentoo-dev] libressl: proposing a new project and calling for help

2016-02-15 Thread Kristian Fiskerstrand
ub.com/gentoo/libressl/wiki/Transition-plan#fixing-unstable-arch-ebuilds -- Kristian Fiskerstrand Public PGP key 0xE3EDFAE3 at hkp://pool.sks-keyservers.net fpr:94CB AFDD 3034 5109 5618 35AA 0B7F 8B60 E3ED FAE3 signature.asc Description: OpenPGP digital signature

  1   2   3   4   >