[Tiki-devel] addressing admins of existing Tikis

Torsten Fabricius via TikiWiki-devel <[email protected]>
Newsgroups gmane.comp.cms.tiki.devel
Message-ID <[email protected]>
Hi all,

I just stumbled over a discussion about a security issue where a fix 
possibly could break existing sites under a specific condition ... which 
is not improtant here ... the important part is, that imho from time to 
time we face a situation where we as a community, maybe as devs or as 
security team etcetera, want or need to contact admins of existing 
Tikis. Afaik this is not quite possible yet.

As we have a dashboard now with modules, my idea is, that we create a 
default module with messages of a certain importance (securits, upgrade 
issues) and with the option to filter. Standart should be the most 
recent security information first.

I think about this:

*Messages to Admins from the Tiki Devs*
Filter date range
Filter issue type
Sort order (date/type asc/desc)
Set to default (all by date desc)
Security issue 08/15, Feature XYC, Date
   Please update your Tiki asap.
   In case you used custom code, the
   security fix can break sites in such
   and such way.
   Solution: change your template or use
   default template
   For more information see (link)

Security issue 12/12, Feature XXX, Date
   Please update your Tiki asap.
   No issues with custom code known.
   For more information see (link)

New 24 LTS Version released, Date
   Tiki 21 LTS is still supported until Date
   Tiki 24 uses Bootstrap 5 instead of 4
   Please consider to upgrade custom
   themes
   and css before you do a major upgrade
   For more information see (link)


This list could be public or semi public ... like as all Tikis could 
have an API like code snipped that allows to log in to a Tiki community 
site providing this information.

Looking forward to your comments and ideas.
Torsten

_______________________________________________
TikiWiki-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/tikiwiki-devel
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.