Re: Submitting new packages

On Thu, 3 Jul 2008 21:11:54 +0200 wrote:

> Hi all,
> I read in pkgsrc handbook, chap. 21.2, that a new package should be 
> submitted as a uuencoded, gzip'ed tar archive.
> In FreeBSD we're using shar(1) which is more comfortable (at least
> for me ^^).
> Just a question: Does your process strict requires the uuencoded,
> gzipped tar archive (though I must submit the pr's using the
> web-interface) or is a shar file ok, too?
> Finally, I will create an alias or a small script creating the
> required format - so I do not want to initiate a big change - it's
> just a question.
shar is a pretty serious security risk for the recipient; I'd be
appalled if we accepted it.

                --Steve Bellovin,

