[development] RFC: letting modules phone home to check for new releases

Derek Wright drupal at dwwright.net
Wed Nov 22 04:27:54 UTC 2006


On Nov 21, 2006, at 8:21 PM, Darren Oh wrote:

> Anyway, as has been said before, some system like this is  
> inevitable in the future.

thanks in large part to the system i wrote and put in place. ;)  now,  
i'm taking responsibility for that, and making sure that no one uses  
the fruits of my labors to build any insecure tools in the name of  
"usability".

> I just hoped to dampen the negative reaction.

then help design a secure system that doesn't have the failings that  
are generating the negative reactions.  we're not opposed to making  
it easier to update your site when it's out of date (as merlin said,  
a small # of us have been busting our asses to make that happen for  
months now).  what we're opposed to are the careless approaches to  
security being put forward (no personal offense to anyone in  
particular).

i want this to *help* the security team, not make our lives worse.

that's why i'm reacting negatively.

hope that's clear...

thanks,
-derek





More information about the development mailing list