Groups | Search | Server Info | Login | Register


Groups > linux.debian.bugs.dist > #1153874

Bug#1040914: dev-ref: update best practices around security (Re: Securing Debian Manual too old?)

From Holger Levsen <holger@layer-acht.org>
Newsgroups linux.debian.bugs.dist, linux.debian.security, linux.debian.policy
Subject Bug#1040914: dev-ref: update best practices around security (Re: Securing Debian Manual too old?)
Date 2023-07-12 12:50 +0200
Message-ID <GQFzX-ae3-5@gated-at.bofh.it> (permalink)
References <GQsCJ-2bI-21@gated-at.bofh.it>
Organization linux.* mail to news gateway

Cross-posted to 3 groups.

Show all headers | View raw


[Multipart message — attachments visible in raw view] - view raw

package: developers-reference
x-debbugs-cc: debian-security@lists.debian.org

hi,

On Tue, Jul 11, 2023 at 10:46:20PM +0200, Moritz Mühlenhoff wrote:
> > I found the Securing Debian Manual
> > (https://www.debian.org/doc/manuals/securing-debian-manual/index.en.html).
> > This version is from 2017.
> 
> This document is in fact too outdated and not in a shape we should
> prominently present it on the Debian website, thanks for flagging it.
> It even predates systemd and no mention of it at all...
> 
> Can you please "reportbug www.debian.org" asking to remove it from the
> website?

https://www.debian.org/doc/manuals/developers-reference/best-pkging-practices.en.html#best-practices-around-security

currently contains this text:

<quote>

Best practices around security
================================================================================================================================

A set of suggestions and links to other reference documents around
security aspects for packaging can be found at the `Developer's Best
Practices for OS Security chapter inside the Securing Debian Manual
<https://www.debian.org/doc/manuals/securing-debian-manual/ch09.en.html>`__.

</quote>

and unsure what to do now, as I'd like to keep the anchor and chapter, so
just dropping this would be wrong. Help welcome.

> It's also packaged as src:harden-doc and probably stick around in
> case someone wants to improve it going forward.

I'm not even sure this is useful to keep around. :/


-- 
cheers,
	Holger

 ⢀⣴⠾⠻⢶⣦⠀
 ⣾⠁⢠⠒⠀⣿⡁  holger@(debian|reproducible-builds|layer-acht).org
 ⢿⡄⠘⠷⠚⠋⠀  OpenPGP: B8BF54137B09D35CF026FE9D 091AB856069AAA1C
 ⠈⠳⣄

Just today, over 800 women will have died due to preventable pregnancy and
birth complications, over 130 due to femicide.
https://www.who.int/news-room/fact-sheets/detail/maternal-mortality
https://en.wikipedia.org/wiki/Femicide#Worldwide

Back to linux.debian.bugs.dist | Previous | Next | Find similar


Thread

Bug#1040914: dev-ref: update best practices around security (Re: Securing Debian Manual too old?) Holger Levsen <holger@layer-acht.org> - 2023-07-12 12:50 +0200

csiph-web