[Gt-eos] how to handle security issues

Mischa Salle msalle at nikhef.nl
Sun May 19 13:34:06 CEST 2019


Hi all,

we don't currently have a secure channel for discussing vulnerabilities,
neither a bugtracker, nor even a secure email address.
What are your thoughts on this?
EGI is providing us kindly with the announce email address as you know:
announcement at gridcf.org so the question is whether we should ask them
also for a security at gridcf.org list, which unlike this list (gt-eos)
should not be publicly archived...
A private bugtracker might be a useful tool too. Not sure how we should
arrange that though?

Thoughts?

Mischa
-- 
Nikhef                      Room  H155
Science Park 105            Tel.  +31-20-592 5102
1098 XG Amsterdam           Fax   +31-20-592 5155
The Netherlands             Email msalle at nikhef.nl
  __ .. ... _._. .... ._  ... ._ ._.. ._.. .._..
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 4521 bytes
Desc: not available
URL: <http://mailman.egi.eu/pipermail/discuss/attachments/20190519/382278dd/attachment.p7s>


More information about the discuss mailing list