Koozali.org: home of the SME Server

Legacy Forums => Experienced User Forum => Topic started by: Peter on December 13, 2003, 12:21:49 AM

Title: Security
Post by: Peter on December 13, 2003, 12:21:49 AM
Hi All,
I do'nt want to jump the Gun but just wondering how security issues are to be orginised and reported. I know many time an open security forum has been requested. I for my 2c worth liked the e-smith approach ie Security breaches were reported but not commented on at least not on the open furum. Notice of fixes should be displayed on the  Forum in the normal way.

Peter

[%sig%]
Title: Re: Security
Post by: Paul on December 14, 2003, 06:34:12 PM
For now, Mitel is still accepting bug and security reports at smebugs@mitel.com until a new source is found.  It will probably be here on contribs.org.

Mitel still uses SME 6.0 as their base for other applications.  I would assume they want to keep a close watch on security and bug issues.  This is where Mitel has made it's biggest mistake in discontinueing the developer release, they will no longer have the input of thousands of testers.  They will have to discover bugs and security problems from their paying customers. :(