From nobody Fri Oct 18 15:39:03 2024 X-Original-To: emulation@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4XVTQK1WQyz5ZMhD for ; Fri, 18 Oct 2024 15:39:05 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R11" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4XVTQJ5t25z4fcN for ; Fri, 18 Oct 2024 15:39:04 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1729265944; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=h8ClhIuyLX6n/+xPw5XELukeIe+nXtjkBK3ZJNQ26f0=; b=otLSmFuhy79SGizzN6Zk0n9WhmmWan2Ia+ZO9lm0GDpgQtZcRkC5rcBEgZard0XRTtaG1M 8jisKSXJoXzVVpm3ERk+A/HfE18bwVup40O8aTAswzkaRSZKh+RDXCr8OLUPCyctKq6Pt5 NmWHABmtWQIhEU89qe5BC4UqIpy73D3R710WraLdgDJxoK+ZYUhydFNYzG3qEw6Q6k7Ndr kxa+I/bUDH6+q+WCCPSm+oqyg/B+leY8/6aSkglYrd3JyRU/wEarIqq3PRW0rVV1yx9fQf tILBjAirfRLSQe91DhHpraADiXzIsRN/FOjd8yUXi1j4Z9kIjOS81HNg19JrZg== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1729265944; a=rsa-sha256; cv=none; b=Ntfl8JZTZ8x360WkY36OaAOsUWucn5ZoF2b3FFDz8kFxeLDXOzlB6b/+jESTxZxt6Hyj8u lHoXE/ZdhDnalcZOjxd/gZqxLWwBaw8W2N5qqClt5hWBF995KhmkE2g37phDx1eHtdVA/O pqb+kNerwMojwHMv37T8N9+PThwjdbiBz9zJRlu0l6Cqi2fbn193QyQXPN5oFF3G0zzN/2 sN9CIBoEeXa0EnR+hWQhprgJjLybqPqSc5u9gLnqbBhH6uUbExtlQTQ0laiaNmI9JxLxID SFQb0zCfQk8E0oUwdRrhFtk5J2nvNVXXowrj24slqEkNduYLv/cSQd4CpVKjTg== Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4XVTQJ5L9hzg76 for ; Fri, 18 Oct 2024 15:39:04 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 49IFd4Sf077699 for ; Fri, 18 Oct 2024 15:39:04 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 49IFd4e0077698 for emulation@FreeBSD.org; Fri, 18 Oct 2024 15:39:04 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: emulation@FreeBSD.org Subject: [Bug 281837] Handbook "CentOS Base System from FreeBSD Packages" recommends deprecated packages Date: Fri, 18 Oct 2024 15:39:03 +0000 X-Bugzilla-Reason: CC X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Documentation X-Bugzilla-Component: Books & Articles X-Bugzilla-Version: Latest X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Many People X-Bugzilla-Who: fernape@FreeBSD.org X-Bugzilla-Status: Closed X-Bugzilla-Resolution: Works As Intended X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: fernape@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Development of Emulators of other operating systems List-Archive: https://lists.freebsd.org/archives/freebsd-emulation List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-emulation@FreeBSD.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D281837 --- Comment #41 from Fernando Apestegu=C3=ADa --- (In reply to Alexander Ziaee from comment #36) Yes, but sysexits are unlikely to show security issues in the future unlike= a port. See the approach we do for "unamaintained" ports: "The ${dp_PKGBASE} port currently does not have a maintainer. As a result, = it is more likely to have unresolved issues, not be up-to-date, or even be remove= d in the future..." This is pretty explicit about the state of the port and its implications. I don't think it is a good idea to conceal that from the users. I understand some (many?) linux programs need 32-bit compatibility. I just = want users to *understand the risks* of installing c7 ports. Some people install linux emulation to run things that can be run in 64 bits mode. Those people should also be pointed to rl9 ports since they are way m= ore modern and they are still updated. Also, the warning at the beginning of the Centos section was explicitly pla= ce there as a consequence of some feedback in the review. How about this? It is less alarming (IMO), but clear enough: ``` The emulators/linux_base-c7 port is no longer maintained upstream and will = not receive further security updates. Users who require 32-bit compatibility may continue to use emulators/linux_base-c7, though caution is advised due to potential security vulnerabilities. For users working in a 64-bit environme= nt, it is recommended to migrate to the Rocky Linux Base System (emulators/linux_base-rl9), which is actively maintained and supported. ``` --=20 You are receiving this mail because: You are on the CC list for the bug.=