Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20080602141759.GM10078@fuse.inversepath.com>
Date: Mon, 2 Jun 2008 14:17:59 +0000
From: Andrea Barisani <lcars@...rt.org>
To: oss-security@...ts.openwall.com
Subject: Re: code reviews (was: ARP handler Inspection tool
	released)

On Mon, Jun 02, 2008 at 06:10:53PM +0400, Solar Designer wrote:
> 
> In case we do, I would not mind having such community code reviews occur
> on this list.  I think they would be on-topic.  In fact, Sebastian
> Krahmer even created a section on the wiki for the code reviews - but
> neither he nor anyone else contributed to it.  Sebastian?  Anyone else?
> Please defend yourselves. ;-)
>

I personally think that open code reviews are a very good idea, and it's
something OSS projects would greatly benefit from.

That's why oCERT was also started for helping in security audits and code
review requests (we are already doing some). But if requestor doesn't mind a
public scrutiny oss-security sure feels like the good place for it.

So I wouldn't mind and I'd actually see this as a benefit for this list.

Cheers

-- 
Andrea Barisani |                Founder & Project Coordinator
          oCERT | Open Source Computer Emergency Response Team

<lcars@...rt.org>                         http://www.ocert.org
 0x864C9B9E 0A76 074A 02CD E989 CE7F AC3F DA47 578E 864C 9B9E
        "Pluralitas non est ponenda sine necessitate"

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.