OpenISCSIMainInclusionReport

Differences between revisions 2 and 3
Revision 2 as of 2008-01-29 19:55:33
Size: 1708
Editor: CPE0006258ec6c1-CM000a73655d0e
Comment:
Revision 3 as of 2008-08-06 16:40:56
Size: 1730
Editor: localhost
Comment: converted to 1.6 markup
Deletions are marked like this. Additions are marked like this.
Line 5: Line 5:
 0. ''Availability:'' [http://archive.ubuntu.com/ubuntu/pool/universe/o/open-iscsi/]; available for all supported architectures  0. ''Availability:'' [[http://archive.ubuntu.com/ubuntu/pool/universe/o/open-iscsi/]]; available for all supported architectures
Line 9: Line 9:
  * No recent [http://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=open-iscsi CVE] entries
  * No recent [http://secunia.com/search/?search=open-iscsi Secunia] history
  * No recent [[http://cve.mitre.org/cgi-bin/cvekey.cgi?keyword=open-iscsi|CVE]] entries
  * No recent [[http://secunia.com/search/?search=open-iscsi|Secunia]] history
Line 17: Line 17:
  * [http://bugs.debian.org/src:open-iscsi Debian bugs]. Debian maintainer doesn't seem to respond to bugs.
  * [http://packages.qa.debian.org/o/open-iscsi.html Maintenance in Debian] is dead (no version update 2007-06-16)
  * [http://www.open-iscsi.org] is vigorous.
  * [http://groups.google.com/group/open-iscsi/topics Upstream bug tracker]
  * [[http://bugs.debian.org/src:open-iscsi|Debian bugs]]. Debian maintainer doesn't seem to respond to bugs.
  * [[http://packages.qa.debian.org/o/open-iscsi.html|Maintenance in Debian]] is dead (no version update 2007-06-16)
  * [[http://www.open-iscsi.org]] is vigorous.
  * [[http://groups.google.com/group/open-iscsi/topics|Upstream bug tracker]]
Line 23: Line 23:
  * [http://www.pathname.com/fhs/ FHS] and [http://www.de.debian.org/doc/debian-policy/ Debian Policy] compliance
  * [http://www.netfort.gr.jp/~dancer/column/libpkg-guide/libpkg-guide.html Debian library packaging guide] standards compliance
  * [[http://www.pathname.com/fhs/|FHS]] and [[http://www.de.debian.org/doc/debian-policy/|Debian Policy]] compliance
  * [[http://www.netfort.gr.jp/~dancer/column/libpkg-guide/libpkg-guide.html|Debian library packaging guide]] standards compliance
Line 31: Line 31:
MIR bug: [https://bugs.edge.launchpad.net/ubuntu/+source/open-iscsi/+bug/187135] MIR bug: [[https://bugs.edge.launchpad.net/ubuntu/+source/open-iscsi/+bug/187135]]

Main Inclusion Report for open-iscsi

Requirements

  1. Availability: http://archive.ubuntu.com/ubuntu/pool/universe/o/open-iscsi/; available for all supported architectures

  2. Rationale:

  3. Security:

    • No recent CVE entries

    • No recent Secunia history

    • No binaries running as sgid/suid. The daemon runs as root.
    • Opens up 3205. Listens for SCSI traffic.
    • No source code review.
  4. Quality assurance:

    • Due to the nature of the package it does not work out of the box, it requires manual intervention. However an example configuration file is provided.
    • No debconf
    • Debian bugs. Debian maintainer doesn't seem to respond to bugs.

    • Maintenance in Debian is dead (no version update 2007-06-16)

    • http://www.open-iscsi.org is vigorous.

    • Upstream bug tracker

    • Package deals with hardware that supports the iscsi interface.
  5. Standards compliance:

  6. Dependencies:

    • debhelper, bzip2 which are all in main.

Reviewers

MIR bug: https://bugs.edge.launchpad.net/ubuntu/+source/open-iscsi/+bug/187135

ChuckShort

OpenISCSIMainInclusionReport (last edited 2008-08-06 16:40:56 by localhost)