Re: automating process for publishing DLAs on the website

Holger Levsen <[email protected]>
Newsgroups gmane.linux.debian.devel.www,gmane.linux.debian.devel.lts
Message-ID <[email protected]>
On Fri, Feb 01, 2019 at 01:58:04PM -0500, Antoine Beaupré wrote:
> I'm looking at the update process for DLAs on the main website again. 

\o/

> In
> #859122, I've mentioned that I have, again, updated the MR to include
> all DLAs up to DLA-1657-1. The www team folks tell me they will review
> that this weekend.

cool. (I'm offline right now but if this MR only has DLAs I'm tempted to
merge when back online...)

> But that mass-import process is kind of clunky: every time I need to
> download the entire archive, extract it, parse every email, and add the
> diff. It's slow and error prone and not automated, of course.
> 
> So I'm bringing back the topic of how we should automate this.

great!

> If I remember correctly, the current proposal is to add this as part of
> the workflow for LTS developers: when you send the announcement on the
> list, you also send a merge request on the website. This would get
> reviewed and merged by another LTS developer with access to the webwml
> repository:
> https://salsa.debian.org/webmaster-team/webwml/project_members

yes, thats the current plan to get this going.

> At least me and Holger have those accesses for now, and I would suggest
> people who do regular frontdesk work could make sure those MR are
> reviewed and merged in a timely manner as well.
> 
> Would that work for everyone here?

definitly for me (and for a start).

> If so, we can *already* start with that process, which would actually
> look like this.
> 
> One time setup:
> 
>     git clone https://salsa.debian.org/webmaster-team/webwml
>     cd webwml
>     salsa fork
> 
> Each time there's a new DLA:
> 
>     ./bin/gen-DLA --save $CHANGES # correctly claim the DLA
>     $EDITOR DLA-XXXX-Y # make sure the text is okay, like you normally
>                        # do before the email gets sent
>     mutt -H DLA-XXXX-Y # send the email
>     cd ~/src/webwml/english/security
>     git checkout -b DLA-XXXX-Y
>     ./parse-dla.pl ~-/DLA-XXXX-Y
>     git add 2019/DLA-XXX-Y*
>     $EDITOR 2019/DLA-XXXX-Y* # make sure everything looks good
>     git add 2019/DLA-XXX-Y*    
>     git commit -m'DLA-XXXX-Y advisory'
>     git push -u origin
>     salsa mr

can you please put that on wiki.d.o/LTS/Development?!

> (Note: that "salsa" command is a new one shipped with devscripts. I only
> read the manpage and didn't actually test that. :) Unfortunately, once
> the MR is created, there's no magic command to merge it for
> reviewers... Seems like this needs to be done through the web
> interface.)

hmm (I think there is a way to do this with a cli).

> I'd be happy if someone sat down and actually tested that procedure.
> 
> The alternative, of course, is to setup "something" that would
> automatically parse emails to [email protected] but I suspect
> that could be much more brittle than a manual operation like the above,
> even if it means slightly more work.

yeah. "laters"!

> Thank you for your attention.

very much likewise!


-- 
tschüß,
	Holger

-------------------------------------------------------------------------------
               holger@(debian|reproducible-builds|layer-acht).org
       PGP fingerprint: B8BF 5413 7B09 D35C F026 FE9D 091A B856 069A AA1C
signature.asc (application/pgp-signature, 833 B)
-----BEGIN PGP SIGNATURE-----
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=uGKS
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.