Denis Solovyov skrev:
>>> Why do you want to install with third-party RPMs?
>>> Why is building from sources not suitable?  It is easy and will
> VTH> Pretty much the same reasons you use original RPMs: maintainability and
> VTH> efficiency.
> 
> I believe that everything you said concerns to original TSL RPMs, but
> not for third-party (such as RH) RPMs. I don't think that one may feel
> safe using RPMs from other distros. The initial question was exacly
> about non-original RPMs. I'd advise to build software from source if
> it is not in TSL RPMs.

If you have 1-2 boxes and have the responsibility yourself, I would agree.
Shared responsibility or more boxes and I would invest the time to build
 my own RPMs. I totally agree that just rebuilding a FC SRPM is a bad
idea, you must adjust dependencies according to TSL and adjust the
init-scripts (at the very least).

> 
> # wc -l < /var/log/rpmpkgs
> 312
> 
> We really use TSL's RPMs, it is really useful and easy, but for many
> years we have a local rule that every software which listens a port
> (i.e. accesible for everyone from Internet) should be customizely built
> from sources. Our policy claims that it's more suitable...

Interesting policy! Written by a sysadmin labour union? ;)
Security the reason behind it?


Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
tsl-discuss mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-discuss

Reply via email to