Security Working Group meeting - Wednesday January 5 - results

Dhananjay Phadke dphadke at linux.microsoft.com
Fri Jan 7 05:27:03 AEDT 2022


On 1/5/2022 2:29 PM, Joseph Reynolds wrote:
> 2 The OpenBMC security response team wants to use the github security 
> tabs, and is looking for best practices. 
> https://gerrit.openbmc-project.xyz/c/openbmc/docs/+/50115 
> <https://gerrit.openbmc-project.xyz/c/openbmc/docs/+/50115>
> 
> How can the OpenBMC SRT get authority to publish security advisories on 
> github? What are the best practices?  What repo should be used? 
> openbmc/openbmc?  openbmc/security-response?  A new repo 
> openbmc/security-advisories?
> 
> See 
> https://docs.github.com/en/organizations/managing-access-to-your-organizations-repositories/repository-roles-for-an-organization 
> <https://docs.github.com/en/organizations/managing-access-to-your-organizations-repositories/repository-roles-for-an-organization> 
> 

GitHub advisories documentation:

https://docs.github.com/en/code-security/security-advisories

Regards,
Dhananjay


More information about the openbmc mailing list