Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 20 Aug 2003 13:34:31 -0400
From:      Greg Weiss <gregw_work@yahoo.com>
To:        doc@FreeBSD.org
Subject:   feedback, security documentation
Message-ID:  <3F43B127.2030807@yahoo.com>

next in thread | raw e-mail | index | archive | help

Being totally new to FreeBSD (but not Unix or BSD), I thought I'd give
you a heads up to the first thing I noticed in your documentation.

The FreeBSD Handbook, in the Security section, talks about setting up
a system securely but seems to totally omit the security process;
ie how to keep your machine patched against the exploits that
constantly arrive in the wild.  Where to find notifications of
security patches, etc.

Which is the first thing I went to look for since I received a system
already setup.

I did eventually find info in the "errata" portion of the release
notes, but it probably is worth mentioning elsewhere for newcomers
like myself.

Perhaps a 10.3.10 section, titled "Check regularly for security advisories",
with at a minimum, something like this:

         <p>Keeping your system updated with the latest security patches
         is an important aspect of system security.  You may want to
         subscribe to various email lists for this purpose.  You can
         find FreeBSD security advisories within the release notes
         of the latest version of FreeBSD, at:
http://www.freebsd.org/releases/4.8R/errata.html
http://www.freebsd.org/releases/5.0R/errata.html
         </p>

I hope you will accept this constructive cricism in the positive light it is 
intended. Thanks for the fine work.

Good luck,
   Greg Weiss



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3F43B127.2030807>