Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> you might be happier with a commercial vendor

Might be a viable option.

I just don't know a commercial vendor, that also gives more transparency.

I knew, that there are also fixes from the Debian team, that add to the core functionality. But still my problem is the transparency. It is just very difficult in such a case, to find out the relevant changes, if you lack the time to observe all security changes in the distribution.

When such a thing pops up, like today, it is very tedious work for people like me, to find all the strings involved. So many packages, that can potentially involved, so many applications (eg. WebServer, SSH-Server, ...) and everywhere could be a hole. Here, I would appreciate, some more focused information, about the particular distribution.

I am using Debian because of its good reputation -- but of course if you could point out a commercial distribution with more transparency, it would be worthwhile!



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: