From: icedlava <ice...@gm...> - 2014-03-13 07:54:00
|
Tim, What do you think of the ideas for some security reporting process as I posted in separate thread? Any suggestions? Cheers, On 13 Mar 2014, at 18:09, Tim Schofield wrote: > Phil, > > I didn't put the details in for the reasons Jo has said, that it > would > help any malicious person. I did refer you to the email that Exson > sent you > regarding the matter, and that email did provide full details. > > If you wanted more information surely the correct thing to do was ask, > rather than block my forum access? > > Tim > > > On 12 March 2014 23:16, Phil Daintree <ph...@lo...> wrote: > >> There is no secrecy here. >> >> If there is some issue that you are aware of then obviously the meat >> of >> what the issue is about needs to be contained in the message to the >> list. >> It is insufficient to head up a message major vulnerability referring >> to >> private discussions - which I am unaware of BTW - and suggest there >> is some >> major problem without any substance in the mail of what the issue is! >> Of >> course not many people would post such FUD this way. >> >> I prefer to have any issues completely on the (developers) table so >> we >> can discuss them and come up with a solution if necessary quickly and >> advise the users ASAP. We are an open source project and well ... >> open. I >> do however, try to keep these forums/lists free of FUD/nonsense. >> >> I am aware of the $AllowAnyone issue which gave access to the GL >> Trial >> balance - which is now fixed and I have published a note to advise >> users. >> >> If there are any incorrect statements in messages to the list or the >> forum then I will try to remove them to avoid misleading anyone. >> Although >> this is not always easy. >> >> >> Phil >> >> Ph: +64 (0)275 567890 >> Skype: daintree >> http://www.logicworks.co.nz >> >> >> ------------------------------------------------------------------------------ >> Learn Graph Databases - Download FREE O'Reilly Book >> "Graph Databases" is the definitive new guide to graph databases and >> their >> applications. Written by three acclaimed leaders in the field, >> this first edition is now available. Download your free book today! >> http://p.sf.net/sfu/13534_NeoTech >> _______________________________________________ >> Web-erp-developers mailing list >> Web...@li... >> https://lists.sourceforge.net/lists/listinfo/web-erp-developers >> >> > > > -- > Course View Towers, > Plot 21 Yusuf Lule Road, > Kampala > T +256 (0) 312 314 418 > M +256 (0) 752 963 325 > www.weberpafrica.com > Twitter: @TimSchofield2 > Blog: http://weberpafrica.blogspot.co.uk/ |