package (tinyca2) not longer present in F15, what to do about it?

Stephen Gallagher sgallagh at redhat.com
Tue Aug 9 14:40:44 UTC 2011


On Tue, 2011-08-09 at 08:42 -0400, Tom Horsley wrote:
> On Tue, 09 Aug 2011 08:10:39 -0400
> Stephen Gallagher wrote:
> 
> > I should note, however, that tinyca2 development appears dead upstream.
> > It last saw a release on July 25, 2006! So chances are good that it's no
> > longer safe for inclusion in Fedora.
> 
> Or maybe it just does a job, does it well, and needs no frenetic
> change for the sake of change?

I find it very difficult to believe that at no time in the last five
years that no security vulnerabilities could have been identified in a
Certificate Authority.

I certainly wouldn't place my trust in it.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20110809/500abe78/attachment.bin 


More information about the users mailing list