artswrapper defanged

Neil Stevens neil at qualityassistant.com
Tue Jul 16 15:29:45 BST 2002


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Tuesday July 16, 2002 07:22, Harri Porten wrote:
> On Tue, 16 Jul 2002, Neil Stevens wrote:
> > On Tuesday July 16, 2002 02:39, Rik Hemsley wrote:
> > > Security should be enabled by default, not disabled.
> >
> > But you didn't just change defaults, you destructively removed
> > features without giving an option to turn them back on!  With the job
> > only half-done, leaving features removed in this state, your changes
> > are just going to get reverted unless you finish the job.
>
> If nobody else finished the job then so be it.

If someone left an unfinished job in the code Stefan is responsible for, 
then he can finish or revert it at his will.

>
> > > How many people need artsd to provide them with 'realtime' sound ?
> > > It looks like it's only Brahms users.
> >
> > I do.  And who are you to question what features are needed in
> > Stefan's code anyway?  Is this about security, or about you imposing
> > your will on aRts?
>
> It's about security.

Then let's focus on security, not start trying to eliminate features.

> > > And no sane sysadmin will install KDE for her users, because KDE
> > > doesn't care about security. It installs useless (to users on such a
> > > system) programs suid, requiring her to go and fix the holes.
> >
> > What do you know about security?  You're attempting to apply a blanket
> > security model to all KDE users!
>
> So you disagree with a secure setting better being "on" by default ?

Harri: do you know what Rik did?  He didn't just change a default setting.  
He totally disabled realtime, completely ifdefing it out.

Further, in my original reply to Rik, after he made the commit, I already 
did express agreement with the idea of not installign artswrapper suid by 
default.  That has never been in dispute.


- -- 
Neil Stevens - neil at qualityassistant.com
"I always cheer up immensely if an attack is particularly wounding
because I think, well, if they attack one personally, it means they
have not a single political argument left." - Margaret Thatcher
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE9NC3Zf7mnligQOmERAnQwAKCCEiSwejtq6z4QEpHlUKRZnaZG4QCdG6P2
3itd0FSJ+0/7AkToVGWIgRI=
=W7/k
-----END PGP SIGNATURE-----





More information about the kde-core-devel mailing list