[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Qemu-devel] [PATCH] Add git-publish profile for security bugs
From: |
John Snow |
Subject: |
Re: [Qemu-devel] [PATCH] Add git-publish profile for security bugs |
Date: |
Mon, 12 Aug 2019 13:58:05 -0400 |
User-agent: |
Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.8.0 |
On 8/12/19 3:12 AM, Gerd Hoffmann wrote:
> Simplifies sending security patches to all people listed in
> https://wiki.qemu.org/SecurityProcess. Should also make it
> harder to send a copy to the mailing list by accident.
>
> Signed-off-by: Gerd Hoffmann <address@hidden>
> ---
> .gitpublish | 11 +++++++++++
> 1 file changed, 11 insertions(+)
>
> diff --git a/.gitpublish b/.gitpublish
> index a13f8c7c0ecd..55750c45ed89 100644
> --- a/.gitpublish
> +++ b/.gitpublish
> @@ -49,3 +49,14 @@ base = master
> to = address@hidden
> cc = address@hidden
> cccmd = scripts/get_maintainer.pl --noroles --norolestats --nogit
> --nogit-fallback 2>/dev/null
> +
> +# https://wiki.qemu.org/SecurityProcess
> +[gitpublishprofile "security"]
> +base = master
> +to = address@hidden
> +to = address@hidden
> +to = address@hidden
> +to = address@hidden
> +to = address@hidden
> +to = address@hidden
> +suppresscc = all
>
Should we force inspect-emails = true here due to the nature of the
security list? That way if we accidentally add extra CCs/etc there's a
chance to review 'em.
Also, should we update MAINTAINERS to match this script?
Responsible Disclosure, Reporting Security Issues
-------------------------------------------------
W: https://wiki.qemu.org/SecurityProcess
M: Michael S. Tsirkin <address@hidden>
L: address@hidden
With perhaps a footnote encouraging anyone changing this section to also
update the git-publish script and vice-versa?
--js