Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 21 Jan 2025 17:11:02 -0500
From:      Brandon Allbery <allbery.b@gmail.com>
To:        Tomek CEDRO <tomek@cedro.info>
Cc:        Warner Losh <imp@bsdimp.com>, bob prohaska <fbsd@www.zefox.net>,  Sulev-Madis Silber <freebsd-current-freebsd-org111@ketas.si.pri.ee>,  freebsd-current@freebsd.org
Subject:   Re: /usr/src and /usr/ports not git directories ?
Message-ID:  <CAKFCL4XCijAsNJJw%2Bx_K%2B0M5VAebXLLWKoT%2BECT6J4wwVFNfCQ@mail.gmail.com>
In-Reply-To: <CAFYkXjk7PPHNiTJftGo980DABOO0t-rK9t%2BoPnLY-5n%2B1qjEAg@mail.gmail.com>
References:  <Z4vk3009iSwuzG4K@www.zefox.net> <Z4__B0EQM-ce0qPE@cell.glebi.us> <C509F94C-2AC2-414F-90C0-355C69869D72@ketas.si.pri.ee> <Z5AQ1GcwX_MZw69G@www.zefox.net> <CANCZdfoHUsZusqMg_gWN5mB9P3xByGv_GfELi9Dd63CHto1igw@mail.gmail.com> <CAFYkXjk7PPHNiTJftGo980DABOO0t-rK9t%2BoPnLY-5n%2B1qjEAg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
--000000000000ba1d07062c3ea714
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

I would offer a data point: the first thing I did was install sudo from a
package. The second thing I did was replace it with a build from the ports
package installed with 14.2-RELEASE=E2=80=A6 which _downgraded_ it. This se=
ems bad
for any security-impacting port.

On Tue, Jan 21, 2025 at 4:37=E2=80=AFPM Tomek CEDRO <tomek@cedro.info> wrot=
e:

> On Tue, Jan 21, 2025 at 10:29=E2=80=AFPM Warner Losh wrote:
> > (..)
> > I think we should replace the populate /usr/src from a tarball with....
> populate it
> > with a tarball that represents a 1-deep checkout tree at the rev we
> built the release
> > from. This lets users have the source, has minimal overhead and also
> lets users update
> > or turn the shallow checkout into a deep one, etc. A shallow checkout i=
s
> quite a bit
> > less than a full tree, though still more than just the raw files. I've
> not done poking to
> > see size comparisons.
>
> Still having tarball of src and ports snapshots in the full release
> images is important to have, users could select which one they want to
> use, that seems best solution :-)
>
> --
> CeDeROM, SQ7MHZ, http://www.tomek.cedro.info
>
>

--=20
brandon s allbery kf8nh
allbery.b@gmail.com

--000000000000ba1d07062c3ea714
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">I would offer a data point: the first thing I did was inst=
all sudo from a package. The second thing I did was replace it with a build=
 from the ports package installed with 14.2-RELEASE=E2=80=A6 which _downgra=
ded_ it. This seems bad for any security-impacting port.</div><br><div clas=
s=3D"gmail_quote gmail_quote_container"><div dir=3D"ltr" class=3D"gmail_att=
r">On Tue, Jan 21, 2025 at 4:37=E2=80=AFPM Tomek CEDRO &lt;<a href=3D"mailt=
o:tomek@cedro.info">tomek@cedro.info</a>&gt; wrote:<br></div><blockquote cl=
ass=3D"gmail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid=
 rgb(204,204,204);padding-left:1ex">On Tue, Jan 21, 2025 at 10:29=E2=80=AFP=
M Warner Losh wrote:<br>
&gt; (..)<br>
&gt; I think we should replace the populate /usr/src from a tarball with...=
. populate it<br>
&gt; with a tarball that represents a 1-deep checkout tree at the rev we bu=
ilt the release<br>
&gt; from. This lets users have the source, has minimal overhead and also l=
ets users update<br>
&gt; or turn the shallow checkout into a deep one, etc. A shallow checkout =
is quite a bit<br>
&gt; less than a full tree, though still more than just the raw files. I&#3=
9;ve not done poking to<br>
&gt; see size comparisons.<br>
<br>
Still having tarball of src and ports snapshots in the full release<br>
images is important to have, users could select which one they want to<br>
use, that seems best solution :-)<br>
<br>
-- <br>
CeDeROM, SQ7MHZ, <a href=3D"http://www.tomek.cedro.info" rel=3D"noreferrer"=
 target=3D"_blank">http://www.tomek.cedro.info</a><br>;
<br>
</blockquote></div><div><br clear=3D"all"></div><div><br></div><span class=
=3D"gmail_signature_prefix">-- </span><br><div dir=3D"ltr" class=3D"gmail_s=
ignature"><div dir=3D"ltr"><div><div dir=3D"ltr"><div>brandon s allbery kf8=
nh</div><div><a href=3D"mailto:allbery.b@gmail.com" target=3D"_blank">allbe=
ry.b@gmail.com</a></div></div></div></div></div>

--000000000000ba1d07062c3ea714--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?CAKFCL4XCijAsNJJw%2Bx_K%2B0M5VAebXLLWKoT%2BECT6J4wwVFNfCQ>