mirror of
https://github.com/privacyguides/i18n.git
synced 2026-09-23 22:55:39 +00:00
New Crowdin translations by GitHub Action
This commit is contained in:
@@ -68,7 +68,7 @@ Arch y las distribuciones basadas en Arch no son recomendables para quienes se i
|
||||
|
||||
Para un sistema seguro, también se espera que tengas suficientes conocimientos de Linux para configurar correctamente la seguridad de su sistema, como adoptar un sistema de [control de acceso obligatorio](#mandatory-access-control), configurar listas negras de [módulos del núcleo](https://en.wikipedia.org/wiki/Loadable_kernel_module#Security), endurecer los parámetros de arranque, manipular los parámetros de [sysctl](https://en.wikipedia.org/wiki/Sysctl) y saber qué componentes necesitan, como [Polkit](https://en.wikipedia.org/wiki/Polkit).
|
||||
|
||||
Arch-based derivatives designed to make Arch "easier to use" are not recommended, as they frequently encourage poor security practices while weakening the base system. These practices include bundling outdated packages in downstream repositories that are updated less frequently than Arch's official channels. Furthermore, these distributions usually fail to properly educate users on the risks associated with the Arch User Repository (AUR).
|
||||
No se recomienda utilizar distribuciones derivadas basadas en Arch pensadas en "hacerla más fácil de usar" porque habitualmente fomentan prácticas poco seguras que debilitan el sistema base. Esta práctica incluye paquetes obsoletos en repositorios derivados que se actualizan con menos asiduidad que los canales oficiales de Arch. Además, estas distribuciones no suelen formar adecuadamente a los usuarios en los riesgos asociados con los Repositorios de Usuario de Arch (AUR).
|
||||
|
||||
Anyone using the [Arch User Repository (AUR)](https://wiki.archlinux.org/title/Arch_User_Repository) **must** be comfortable auditing PKGBUILDs (the recipes that build packages) that they download from that service. AUR packages are community-produced content and are not vetted in any way, and therefore are vulnerable to software [:material-package-variant-closed-remove: Supply Chain Attacks](../basics/common-threats.md#attacks-against-certain-organizations ""){.pg-viridian}, which has in fact happened [in the past](https://bleepingcomputer.com/news/security/malware-found-in-arch-linux-aur-package-repository) and more recently when [1500 packages](https://discuss.privacyguides.net/t/around-1-500-aur-packages-compromised-with-rootkit-like-malware/38517) were compromised.
|
||||
|
||||
|
||||
Reference in New Issue
Block a user