From owner-svn-doc-all@freebsd.org Tue Oct 25 16:35:20 2016 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id A8A82C21FAE; Tue, 25 Oct 2016 16:35:20 +0000 (UTC) (envelope-from gjb@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 83AD9218; Tue, 25 Oct 2016 16:35:20 +0000 (UTC) (envelope-from gjb@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id u9PGZJIe060707; Tue, 25 Oct 2016 16:35:19 GMT (envelope-from gjb@FreeBSD.org) Received: (from gjb@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id u9PGZJVa060706; Tue, 25 Oct 2016 16:35:19 GMT (envelope-from gjb@FreeBSD.org) Message-Id: <201610251635.u9PGZJVa060706@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: gjb set sender to gjb@FreeBSD.org using -f From: Glen Barber Date: Tue, 25 Oct 2016 16:35:19 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r49578 - head/en_US.ISO8859-1/htdocs/security X-SVN-Group: doc-head MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 25 Oct 2016 16:35:20 -0000 Author: gjb Date: Tue Oct 25 16:35:19 2016 New Revision: 49578 URL: https://svnweb.freebsd.org/changeset/doc/49578 Log: Refactor Security page for further clarity, and break into sections that can be directly linked. PR: 213526 Submitted by: linimon Sponsored by: The FreeBSD Foundation Modified: head/en_US.ISO8859-1/htdocs/security/security.xml Modified: head/en_US.ISO8859-1/htdocs/security/security.xml ============================================================================== --- head/en_US.ISO8859-1/htdocs/security/security.xml Tue Oct 25 16:28:41 2016 (r49577) +++ head/en_US.ISO8859-1/htdocs/security/security.xml Tue Oct 25 16:35:19 2016 (r49578) @@ -21,6 +21,20 @@ possible. This page will provide information about what to do in the event of a security vulnerability affecting your system

+

Table of Contents

+ + + +

Reporting FreeBSD security incidents

FreeBSD security issues specific to the base system @@ -36,18 +50,56 @@ href="reporting.html">reporting FreeBSD security incidents page.

-

Table of Contents

+ +

Recent FreeBSD security vulnerabilities

+ +

A full list of all security vulnerabilities affecting the base + system can be found on this + page.

+ + +

Understanding FreeBSD security advisories

+ +

Advisories affecting the base system are sent to the following + mailing lists:

- -

Recent FreeBSD security vulnerabilities

+

The list of released advisories can be found on the FreeBSD Security Advisories page.

+ +

Advisories are always signed using the FreeBSD Security Officer + PGP key and are archived, along + with their associated patches, at the http://security.FreeBSD.org/ + web server in the advisories + and patches + subdirectories.

+ +

The FreeBSD Security Officer provides security advisories for + -STABLE Branches and the Security Branches. + (Advisories are not issued for the -CURRENT Branch, + which is primarily oriented towards &os; developers.)

+ +
    +
  • The -STABLE branch tags have + names like stable/10. The corresponding builds have + names like FreeBSD 10.1-STABLE.

  • -

    A full list of all security vulnerabilities can be found on this page.

    +
  • Each FreeBSD Release has an associated Security Branch. + The Security Branch tags have names like releng/10.1. + The corresponding builds have names like FreeBSD + 10.1-RELEASE-p4.

  • +
+ +

Issues affecting the FreeBSD Ports Collection are covered separately in the FreeBSD VuXML + document.

How to update your system

@@ -70,6 +122,9 @@

Supported FreeBSD releases

+

Each release is supported by the Security Officer for a limited + time only.

+

The designation and expected lifetime of all currently supported branches and their respective releases @@ -78,19 +133,10 @@ branch or release will end. Please note that these dates may be pushed back if circumstances warrant it.

-

Effective &os; 11.0-RELEASE, the support model has been - changed to allow more rapid development while also providing - timely security updates for all supported releases.

- -

Under the new support model, each major version's stable branch - is explicitly supported for 5 years, while each individual point - release is only supported for three months after the next point - release.

- -

The details and rationale behind this change can be found in the - official - announcement sent in February 2015.

+

Older releases are not maintained and users are strongly + encouraged to upgrade to one of the supported releases mentioned + above. A list of unsupported releases can be found here.