Quoting Per Jessen <per@computer.org>:
There is (still) no business case for removing syslog from the default, so presumably it won't happen.
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-1951 (Not to try to argue about the quality of the syslog-ng! ANY package installed by default offers a default surface for attack... this is NOT the only CVE there is for syslog-ng). What's the number to put behind a 'breach into a system due to having a package installed which nobody cares for' ? Business case provided... not let's work on serious stuff please and stop using keyboard to produce non-sensical mails (or I'll ask for a business case to read this mailing list... will be hard to come up with) Dominique -- To unsubscribe, e-mail: opensuse-factory+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-factory+owner@opensuse.org