[Yum] Security issues with include= implementation in yum.conf

seth vidal skvidal at phy.duke.edu
Mon Oct 6 02:30:22 UTC 2003


On Sun, 2003-10-05 at 21:57, Ryan Tomayko wrote:
> On Sun, 2003-10-05 at 16:48, seth vidal wrote:
> > I think I'm going to go with the feature and just flag the potential
> > concerns in the man page to warn the user of the dangers of trusting
> > remote configs.
> > 
> > Ryan, Does that work for you?
> 
> Absolutely. It seems to me that if we start down a road of protecting
> admins from themselves, the feature in general becomes too much of a
> hassle.
> 

ok - then when you get a chance to make that patch all urlgrabber-y, we
can look at merging it in.

-sv





More information about the Yum mailing list