From owner-svn-doc-projects@FreeBSD.ORG Wed Jan 30 23:21:03 2013 Return-Path: Delivered-To: svn-doc-projects@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by hub.freebsd.org (Postfix) with ESMTP id 173FC275 for ; Wed, 30 Jan 2013 23:21:03 +0000 (UTC) (envelope-from dru.lavigne@att.net) Received: from nm20-vm0.access.bullet.mail.sp2.yahoo.com (nm20-vm0.access.bullet.mail.sp2.yahoo.com [98.139.44.174]) by mx1.freebsd.org (Postfix) with ESMTP id D3549CD7 for ; Wed, 30 Jan 2013 23:21:02 +0000 (UTC) Received: from [98.139.44.98] by nm20.access.bullet.mail.sp2.yahoo.com with NNFMP; 30 Jan 2013 23:21:02 -0000 Received: from [98.139.44.89] by tm3.access.bullet.mail.sp2.yahoo.com with NNFMP; 30 Jan 2013 23:21:02 -0000 Received: from [127.0.0.1] by omp1026.access.mail.sp2.yahoo.com with NNFMP; 30 Jan 2013 23:21:02 -0000 X-Yahoo-Newman-Property: ymail-3 X-Yahoo-Newman-Id: 238234.76794.bm@omp1026.access.mail.sp2.yahoo.com Received: (qmail 71450 invoked by uid 60001); 30 Jan 2013 23:21:02 -0000 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s1024; t=1359588062; bh=+ClemNjQD15xrqPXuBzExIwMt7gLnFsebGVt0UnndZ0=; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-Mailer:Message-ID:Date:From:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type:Content-Transfer-Encoding; b=cjo7VFFHVsVjfX/hxMriPbHat9p1iftgbRrAksteVtN+QuBTiOG3Gp8KrpCCOw5OgdLWJ3Kjl1H+IN5uzNbD2hLZCjjPQfhxEyxYrJFGsxURvFwN1rVrQXSYC/hHw+hhB0wz6FtmDLbFB45V5kC1mAviTEcuznEuU1uOoIzUp5A= X-YMail-OSG: fttxf6oVM1kFXHhi2FrcShn4orA6e.2iY38mm8H510sb7sF Lfziid4bmFyKFKn6mvDLTBqy8_oeNgMPr0PYbI7FCEld_QNpBcFfZ_zHYpM0 YZgp8XKHanrXvcv4JQFB39g6ofdpAOaS5zKe7hLNlmxj6e2obqXlv68kxtX_ oYynJpZUJQUgqJ.Qp9kWDihjp6KKVo9b38WJO7fx0Ft7xq96N_JpyBdSp0cu n6pSAS1FKxHrdCEqqsqA0wVCM9ZlCYpSkcVtHRCmnSm51w5BtFKHG8NJcgrX qqYC0BHW4vz8dZzgoJ6rjO.j1oWV8HJLGonAjyXoSTdLs_9JPD9bU626fxZh LyH_dQ7vnqdfKjzzcEHu.RVO0018PwhuJzMs7YgIDRrxRd4g9MIDZXbGVj0N fC6OKF3sZBKL1HbGyjUIgTAMHTE8D_EM.BL_nHQDTUd2GvALaA5ByG80bIow 7gpM3Rtc1PHX_WaI6KM_0R3OP9Ct.zbkBpB8qa5UP_NnEfQBQGUASRYFdRy2 C_R6nGA-- Received: from [99.98.83.69] by web184903.mail.gq1.yahoo.com via HTTP; Wed, 30 Jan 2013 15:21:01 PST X-Rocket-MIMEInfo: 001.001, CgotLS0gT24gV2VkLCAxLzMwLzEzLCBYaW4gTGkgPGRlbHBoaWpAZGVscGhpai5uZXQ.IHdyb3RlOgo.IE9uIDAxLzMwLzEzIDEyOjE3LCBCZW5lZGljdCBSZXVzY2hsaW5nIHdyb3RlOgo.ID4gQW0gMzAuMDEuMTMgMjA6NTgsIHNjaHJpZWIgWGluIExpOgo.ID4.IE9uIDAxLzMwLzEzIDExOjAxLCBCZW5lZGljdCBSZXVzY2hsaW5nIHdyb3RlOgo.ID4.PiBBdXRob3I6IGJjciBEYXRlOiBXZWQgSmFuIDMwIDE5OjAxOjMzIDIwMTMgTmV3Cj4gUmV2aXNpb246IDQwODMxIAo.ID4.PiBVUkw6IGh0dHA6Ly9zdm4BMAEBAQE- X-Mailer: YahooMailClassic/15.1.2 YahooMailWebService/0.8.131.499 Message-ID: <1359588061.32525.YahooMailClassic@web184903.mail.gq1.yahoo.com> Date: Wed, 30 Jan 2013 15:21:01 -0800 (PST) From: Dru Lavigne Subject: Re: svn commit: r40831 - in projects/ISBN_1-57176-407-0/en_US.ISO8859-1/books/handbook: . preface To: bcr@FreeBSD.org, d@delphij.net In-Reply-To: <510993C4.8050400@delphij.net> MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Transfer-Encoding: quoted-printable Cc: svn-doc-projects@FreeBSD.org, doc-committers@FreeBSD.org, d@delphij.net X-BeenThere: svn-doc-projects@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: SVN commit messages for doc projects trees List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 30 Jan 2013 23:21:03 -0000 =0A=0A--- On Wed, 1/30/13, Xin Li wrote:=0A> On 01/30= /13 12:17, Benedict Reuschling wrote:=0A> > Am 30.01.13 20:58, schrieb Xin = Li:=0A> >> On 01/30/13 11:01, Benedict Reuschling wrote:=0A> >>> Author: bc= r Date: Wed Jan 30 19:01:33 2013 New=0A> Revision: 40831 =0A> >>> URL: http= ://svnweb.freebsd.org/changeset/doc/40831=0A> > =0A> >>> Log: Deactivate th= e build of the PGP Keys=0A> section from the =0A> >>> appendix. This will n= ot be part of the print=0A> edition, but will=0A> >>>=A0 still be kept in t= he online version.=0A> > =0A> >> Wouldn't that defeat the purpose of having= the PGP=0A> keys in =0A> >> handbook?=0A> > =0A> > =0A> > Hmm, the commit = message could be interpreted as reverse=0A> logic, now =0A> > that I reread= it.=0A> > =0A> > What I meant was that the PGP keys don't make sense in=0A= > a printed=0A> > book. No one will pull out their print edition to=0A> ver= ify an email=0A> > from a FreeBSD developer. :)=0A> > =0A> > In the online = version hwoever, it does make sense to=0A> have them =0A> > (although we co= uld debate having them on a separate=0A> webpage on =0A> > www.freebsd.org)= in case someone needs to=0A> copy/paste/verify keys.=0A> > Keys are also e= asier to update online rather than=0A> release a new=0A> > print edition ju= st to update the keys, right?=0A> > =0A> > I hope that answers your questio= n.=0A> =0A> That is exactly what I am concerned about.=0A> =0A> The reason = why PGP keys should appear in printed book and=0A> DVDs is that=0A> this es= tablishes a way to start your trust chain with.=A0=0A> It's wrong to=0A> bl= indly trust www.freebsd.org to be offering the right=0A> keys.=0A> =0A> At = very least, the book should have public key for the=0A> "Officers", and=0A>= probably also the fingerprint part of everyone's public key=0A> but with= =0A> public block part omitted.=0A=0A=0AMy concern with including the PGP k= eys in the print edition is the 100+ extra pages it adds to an already larg= e volume set. Only including the Officers and the fingerprints of devs woul= d alleviate much of this.=0A=0AThe preface also needs to be edited to inclu= de instructions on how to verify a key and why doing so is important, rathe= r than assuming that the user already knows this.=0A=0AIn the print edition= , is it sufficient to only provide instructions, the links to the fingerpri= nts and keys, and a caveat that the keys displayed on the website should no= t be blindly trusted but rather verified? Or is this pushing too far?=0A=0A= Cheers,=0A=0ADru