From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) by finch.gentoo.org (Postfix) with ESMTP id 8840C1381F3 for ; Sun, 16 Jun 2013 04:01:25 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 516B4E097A; Sun, 16 Jun 2013 04:01:18 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) (using TLSv1 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id 64E08E08F9 for ; Sun, 16 Jun 2013 04:01:17 +0000 (UTC) Received: from phjr-macbookpro.local (adsl-75-37-14-10.dsl.pltn13.sbcglobal.net [75.37.14.10]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: phajdan.jr) by smtp.gentoo.org (Postfix) with ESMTPSA id 30DA333E3A6 for ; Sun, 16 Jun 2013 04:01:14 +0000 (UTC) Message-ID: <51BD387C.4050800@gentoo.org> Date: Sat, 15 Jun 2013 21:01:00 -0700 From: =?UTF-8?B?IlBhd2XFgiBIYWpkYW4sIEpyLiI=?= User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.7; rv:17.0) Gecko/20130509 Thunderbird/17.0.6 Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-dev@lists.gentoo.org Reply-to: gentoo-dev@lists.gentoo.org MIME-Version: 1.0 To: gentoo-dev@lists.gentoo.org Subject: Re: [gentoo-dev] RFC: Moving project pages to wiki.gentoo.org References: <51B48FA1.9080403@gentoo.org> In-Reply-To: <51B48FA1.9080403@gentoo.org> X-Enigmail-Version: 1.5.1 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="----enig2TKGOFSEMRWCTNEFEFIHN" X-Archives-Salt: 1b8516e8-4d7c-4ce8-8072-b791bf5d14d5 X-Archives-Hash: 42e4337672ca76988646ac4b2e9e7ec5 This is an OpenPGP/MIME signed message (RFC 4880 and 3156) ------enig2TKGOFSEMRWCTNEFEFIHN Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable On 6/9/13 7:22 AM, Alex Legler wrote: > I'd appreciate some input on below plan to move project pages to the Wi= ki: Alex, thanks for working on this! Some feedback: 1. How will the project pages be protected against "unwanted" edits? I think it's valuable to have some official pages where you know only Gentoo devs can edit them. 2. How will the staffing needs page be updated after dropping gorg? 3. How secure is the wiki? Do we have regular backups and security updates procedures in place? I know you're member of the security team and infra team is doing its job well, but I just wanted to check. Dynamic web applications arguably have bigger attack surface than effectively a bunch of static files only editable after you gain server access. Pawe=C5=82 ------enig2TKGOFSEMRWCTNEFEFIHN Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG/MacGPG2 v2.0.17 (Darwin) iEYEARECAAYFAlG9OIAACgkQuUQtlDBCeQK0bACfZhpheSuwm5gokljRDjFwDnHR WCsAnA7vZJMP9/tfmln4IsoaVfqgkJh4 =MNHK -----END PGP SIGNATURE----- ------enig2TKGOFSEMRWCTNEFEFIHN--