[RFC] Discontinuing SWAT

Kai Blin kai at samba.org
Thu Apr 25 15:48:51 MDT 2013


Hi folks,

I think it's time to put SWAT out of its misery. In the past few years,
the only commits ever touching it were either API housekeeping or fixing
remote root exploit security issues.

The last time we had to do the latter, I accidentally broke password
changes for users, and neither me nor any of the people reviewing the
changes noticed. I take that as a sign that nobody is really interested
in maintaining SWAT, and I think it is becoming a larger liability over
time. Considering how large of an attack surface a web app is offering,
we should not have one of them in our core release.

There might be the need for a web-based samba configuration tool, but I
don't think SWAT is fulfilling that need well enough.

Cheers,
Kai

-- 
Kai Blin
Worldforge developer http://www.worldforge.org/
Wine developer http://wiki.winehq.org/KaiBlin
Samba team member http://www.samba.org/samba/team/

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 261 bytes
Desc: OpenPGP digital signature
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20130425/2f39359d/attachment.pgp>


More information about the samba-technical mailing list