From a07f84f370b48148774a1c2c975db284443d1e19 Mon Sep 17 00:00:00 2001 From: "barnboy%trilobyte.net" <> Date: Fri, 4 Apr 2008 11:45:54 +0000 Subject: Checkin for 2.14 release. Still some problems; this cannot yet be used for 2.14 documentation due to inconsistencies. --- docs/en/xml/Bugzilla-Guide.xml | 230 ++-- docs/en/xml/about.xml | 454 +++---- docs/en/xml/administration.xml | 2284 ++++++++++++++++---------------- docs/en/xml/conventions.xml | 148 +-- docs/en/xml/gfdl.xml | 775 +++++------ docs/en/xml/glossary.xml | 680 +++------- docs/en/xml/index.xml | 3 +- docs/en/xml/installation.xml | 2667 ++++++++++++++++++++++---------------- docs/en/xml/integration.xml | 30 +- docs/en/xml/patches.xml | 153 +-- docs/en/xml/requiredsoftware.xml | 95 +- docs/en/xml/using.xml | 67 +- 12 files changed, 3888 insertions(+), 3698 deletions(-) (limited to 'docs/en') diff --git a/docs/en/xml/Bugzilla-Guide.xml b/docs/en/xml/Bugzilla-Guide.xml index 88daac2bb..30deb5c4a 100644 --- a/docs/en/xml/Bugzilla-Guide.xml +++ b/docs/en/xml/Bugzilla-Guide.xml @@ -1,4 +1,4 @@ - @@ -17,99 +17,156 @@ + + + + + + + + + +barnboy@NOSPAM.trilobyte.net"> + + ]> - - + - - The Bugzilla Guide - 2001-04-25 - - Matthew - P. - Barnson - -
barnboy@trilobyte.net
-
-
- - - This is the documentation for Bugzilla, the Mozilla bug-tracking system. - - - - - v2.11 - 20 December 2000 - MPB - Converted the README, FAQ, and DATABASE information into SGML - docbook format. - + + The Bugzilla Guide + 2001-04-25 + + + v2.11 + 20 December 2000 + MPB + + Converted the README, FAQ, and DATABASE information into + SGML docbook format. + + 2.11.1 06 March 2001 MPB - Took way too long to revise this for 2.12 release. - Updated FAQ to use qandaset tags instead of literallayout, - cleaned up administration section, added User Guide section, - miscellaneous FAQ updates and third-party integration information. - From this point on all new tags are lowercase in preparation for the - 2.13 release of the Guide in XML format instead of SGML. + Took way too long to revise this for 2.12 release. Updated + FAQ to use qandaset tags instead of literallayout, cleaned + up administration section, added User Guide section, + miscellaneous FAQ updates and third-party integration + information. From this point on all new tags are lowercase + in preparation for the 2.13 release of the Guide in XML + format instead of SGML. - + 2.12.0 24 April 2001 MPB - Things fixed this release: Elaborated on queryhelp interface, added FAQ regarding - moving bugs from one keyword to another, clarified possible problems with the Landfill - tutorial, fixed a boatload of typos and unclear sentence structures. Incorporated the - README into the UNIX installation section, and changed the README to indicate the deprecated - status. Things I know need work: Used "simplelist" a lot, where I should have used - "procedure" to tag things. Need to lowercase all tags to be XML compliant. + Things fixed this release: Elaborated on queryhelp + interface, added FAQ regarding moving bugs from one keyword + to another, clarified possible problems with the Landfill + tutorial, fixed a boatload of typos and unclear sentence + structures. Incorporated the README into the UNIX + installation section, and changed the README to indicate the + deprecated status. Things I know need work: Used + "simplelist" a lot, where I should have used "procedure" to + tag things. Need to lowercase all tags to be XML compliant. - + + + 2.14.0 + 07 August 2001 + MPB + + Attempted to integrate relevant portions of the UNIX and + Windows installation instructions, moved some data from FAQ + to Install, removed references to README from text, added + Mac OS X install instructions, fixed a bunch + of tpyos (Mark Harig), linked text that referenced other + parts of the Guide, and nuked the old MySQL permissions + section. + + + + + + + + Matthew + P. + Barnson + +
barnboy@NOSPAM.trilobyte.net
+
+
+ + + Zach Lipton + +
zach@NOSPAM.zachlipton.com
+
+
+ + + I. + Freely + P. + +
ipfreely@freely.eye-p.net
+
+
+ +
+ + + + This is the documentation for Bugzilla, the Mozilla + bug-tracking system. + + + Bugzilla is an enterprise-class set of software utilities + that, when used together, power issue-tracking for hundreds of + organizations around the world, tracking millions of bugs. + While it is easy to use and quite flexible, it is very + difficult for a novice to install and maintain. Although we + have provided step-by-step directions, Bugzilla is not always + easy to get working. Please be sure the person responsible + for installing and maintaining this software is a qualified + professional on operating system upon which you install + Bugzilla. + + + Bugzilla @@ -127,15 +184,15 @@ http://www.linuxdoc.org/LDP/LDP-Author-Guide/tools-hints.html &about; + +&using; + &installation; &administration; - -&using; - &integration; @@ -166,31 +223,26 @@ http://www.linuxdoc.org/LDP/LDP-Author-Guide/tools-hints.html &index; -
+ +
- - - - - - - - - diff --git a/docs/en/xml/about.xml b/docs/en/xml/about.xml index d1b56cfdb..d92fa9b30 100644 --- a/docs/en/xml/about.xml +++ b/docs/en/xml/about.xml @@ -1,242 +1,256 @@ - ] > + - -About This Guide + +About This Guide -
- Purpose and Scope of this Guide - - This document was started on September 17, 2000 - by Matthew P. Barnson after a great deal of procrastination updating the Bugzilla FAQ, - which I left untouched for nearly half a year. - After numerous complete rewrites and reformatting, it is the document you see today. - - - Despite the lack of updates, Bugzilla is simply the best piece of bug-tracking software - the world has ever seen. This document is intended to be the comprehensive guide to - the installation, administration, maintenance, and use of the Bugzilla bug-tracking system. - - - This release of the Bugzilla Guide is the 2.11 release. - It is so named that it may match the current version of Bugzilla. - The numbering tradition stems from that used for many free software projects, - in which even-numbered point releases (1.2, 1.14, etc.) - are considered "stable releases", intended for public consumption; on the other - hand, odd-numbered point releases (1.3, 2.09, etc.) - are considered unstable development releases intended - for advanced users, systems administrators, developers, and those who enjoy - a lot of pain. - - - Newer revisions of the Bugzilla Guide will follow the numbering conventions of - the main-tree Bugzilla releases, available at - Mozilla.org, with - the exception that intermediate releases will have a minor revision number - following a period. For instance, if the current version of Bugzilla is 4.2, - the current "stable" version of the Bugzilla guide, in, say, it's fifth revision, - would be numbered "4.2.5". Got it? Good. - - - I wrote this in response to the enormous demand for decent Bugzilla documentation. - I have incorporated instructions from the Bugzilla README, Frequently Asked Questions, - Database Schema Document, and various mailing lists to create it. - Chances are, there are glaring errors in this documentation; please contact - barnboy@trilobyte.net to correct them. - -
+
+ Purpose and Scope of this Guide + + This document was started on September 17, 2000 by Matthew P. + Barnson after a great deal of procrastination updating the + Bugzilla FAQ, which I left untouched for nearly half a year. + After numerous complete rewrites and reformatting, it is the + document you see today. + + + Despite the lack of updates, Bugzilla is simply the best piece + of bug-tracking software the world has ever seen. This document + is intended to be the comprehensive guide to the installation, + administration, maintenance, and use of the Bugzilla + bug-tracking system. + + + This release of the Bugzilla Guide is the + &bzg-ver; release. It is so named that it + may match the current version of Bugzilla. The numbering + tradition stems from that used for many free software projects, + in which even-numbered point releases (1.2, + 1.14, etc.) are considered "stable releases", intended for + public consumption; on the other hand, + odd-numbered point releases (1.3, 2.09, + etc.) are considered unstable development + releases intended for advanced users, systems administrators, + developers, and those who enjoy a lot of pain. + + + Newer revisions of the Bugzilla Guide follow the numbering + conventions of the main-tree Bugzilla releases, available at + &bz;. Intermediate releases will have + a minor revision number following a period. The current version + of Bugzilla, as of this writing (&bzg-date;) is &bz-ver;; if + something were seriously wrong with that edition of the Guide, + subsequent releases would receive an additional dotted-decimal + digit to indicate the update (&bzg-ver;.1, &bzg-ver;.2, etc.). + Got it? Good. + + + I wrote this in response to the enormous demand for decent + Bugzilla documentation. I have incorporated instructions from + the Bugzilla README, Frequently Asked Questions, Database Schema + Document, and various mailing lists to create it. Chances are, + there are glaring errors in this documentation; please contact + &bzg-auth-email; to correct them. + +
- + -
- Disclaimer - +
+ Disclaimer + No liability for the contents of this document can be accepted. Use the concepts, examples, and other content at your own risk. As this is a new edition of this document, there may be errors - and inaccuracies that may damage your system. Use of this document - may cause your girlfriend to leave you, your cats to pee on your - furniture and clothing, your computer to cease functioning, your - boss to fire you, and global thermonuclear war. Proceed with caution. - - - All copyrights are held by their respective owners, unless specifically - noted otherwise. Use of a term in this document should not be regarded - as affecting the validity of any trademark or service mark. - In particular, I like to put down Microsoft(tm). Live with it. - - - Naming of particular products or brands should not be seen as endorsements, - with the exception of the term "GNU/Linux". - Use GNU/Linux. Love it. Bathe with it. It is life and happiness. - I endorse it wholeheartedly and encourage you to do the same. - - - You are strongly recommended to make a backup of your system before - installing Bugzilla and at regular intervals thereafter. Heaven knows - it's saved my bacon time after time; if you implement any suggestion in - this Guide, implement this one! - - - Bugzilla has not undergone a complete security review. - Security holes probably exist in the code. - Great care should be taken both in the installation and usage of this software. - Carefully consider the implications of installing other network services with Bugzilla. - -
+ and inaccuracies that may damage your system. Use of this + document may cause your girlfriend to leave you, your cats to + pee on your furniture and clothing, your computer to cease + functioning, your boss to fire you, and global thermonuclear + war. Proceed with caution. +
+ + All copyrights are held by their respective owners, unless + specifically noted otherwise. Use of a term in this document + should not be regarded as affecting the validity of any + trademark or service mark. + + + Naming of particular products or brands should not be seen as + endorsements, with the exception of the term "GNU/Linux". I + wholeheartedly endorse the use of GNU/Linux in every situation + where it is appropriate. It is an extremely versatile, stable, + and robust operating system that offers an ideal operating + environment for Bugzilla. + + + You are strongly recommended to make a backup of your system + before installing Bugzilla and at regular intervals thereafter. + Heaven knows it's saved my bacon time after time; if you + implement any suggestion in this Guide, implement this one! + + + Although the Bugzilla development team has taken great care to + ensure that all easily-exploitable bugs or options are + documented or fixed in the code, security holes surely exist. + Great care should be taken both in the installation and usage of + this software. Carefully consider the implications of installing + other network services with Bugzilla. The Bugzilla development + team members, Netscape Communications, America Online Inc., and + any affiliated developers or sponsors assume no liability for + your use of this product. You have the source code to this + product, and are responsible for auditing it yourself to insure + your security needs are met. + +
-
- New Versions - - This is the initial release of the Bugzilla Guide. - - +
+ New Versions + + This is the &bzg-ver; version of The Bugzilla Guide. If you are + reading this from any source other than those below, please + check one of these mirrors to make sure you are reading an + up-to-date version of the Guide. + + This document can be found in the following places: - - - - - - TriloBYTE - - - - - Mozilla.org - - - - - The Linux Documentation Project - - - - - + + + + + + TriloBYTE + + + + + Mozilla.org + + + + + The Linux + Documentation Project + + + + + The latest version of this document can be checked out via CVS. - Please follow the instructions available at - the Mozilla CVS page, - and check out the mozilla/webtools/bugzilla/docs/ branch. - -
+ Please follow the instructions available at the Mozilla CVS page, and check out the mozilla/webtools/bugzilla/docs/ branch. +
+
-
- Credits - - The people listed below have made enormous contributions to the creation - of this Guide, through their dedicated hacking efforts, - numerous e-mail and IRC support sessions, - and overall excellent contribution to the Bugzilla community: - - - Terry Weissman - for initially converting Bugzilla from BugSplat! - and writing the README upon which this documentation is largely based. - - - Tara Hernandez - for keeping Bugzilla development going strong after Terry left Mozilla.org - - - Dave Lawrence - for providing insight into the key differences between Red Hat's - customized Bugzilla, and being largely responsible for the - "Red Hat Bugzilla" appendix - - - Dawn Endico - for being a hacker extraordinaire and putting up with my incessant +
+ Credits + + The people listed below have made enormous contributions to the + creation of this Guide, through their dedicated hacking efforts, + numerous e-mail and IRC support sessions, and overall excellent + contribution to the Bugzilla community: + + + Terry Weissman + for initially converting Bugzilla from BugSplat! and writing the + README upon which this documentation is largely based. + + + Tara + Hernandez for keeping Bugzilla development going + strong after Terry left Mozilla.org + + + Dave Lawrence for + providing insight into the key differences between Red Hat's + customized Bugzilla, and being largely responsible for the "Red + Hat Bugzilla" appendix + + + Dawn Endico for + being a hacker extraordinaire and putting up with my incessant questions and arguments on irc.mozilla.org in #mozwebtools - - - Last but not least, all the members of the - - netscape.public.mozilla.webtools newsgroup. Without your - discussions, insight, suggestions, and patches, this could never have happened. - -
-
-Contributors - - Thanks go to these people for significant contributions - to this documentation (in no particular order): - - - Zach Lipton (significant textual contributions), - Andrew Pearson, - Spencer Smith, - Eric Hanson, - Kevin Brannen, - -
-
- Feedback - - I welcome feedback on this document. Without your submissions and input, - this Guide cannot continue to exist. Please mail additions, comments, criticisms, etc. - to barnboy@trilobyte.net. Please send flames to - devnull@localhost - -
+
+ + Last but not least, all the members of the netscape.public.mozilla.webtools newsgroup. Without your discussions, insight, suggestions, and patches, this could never have happened. + +
-
- Translations - - The Bugzilla Guide needs translators! - Please volunteer your translation into the language of your choice. - If you will translate this Guide, please notify the members of the mozilla-webtools mailing list at - mozilla-webtools@mozilla.org. Since The Bugzilla Guide is also hosted on the - Linux Documentation Project, you would also do well to notify - -
+
+Contributors + + Thanks go to these people for significant contributions to this + documentation (in no particular order): + + + Andrew Pearson, Spencer Smith, Eric Hanson, Kevin Brannen, Ron Teitelbaum + +
+
+ Feedback + + I welcome feedback on this document. Without your submissions + and input, this Guide cannot continue to exist. Please mail + additions, comments, criticisms, etc. to + barnboy@trilobyte.net. Please send flames to + devnull@localhost + +
+ +
+ Translations + + The Bugzilla Guide needs translators! Please volunteer your + translation into the language of your choice. If you will + translate this Guide, please notify the members of the + mozilla-webtools mailing list at + mozilla-webtools@mozilla.org, and arrange with + Matt Barnson to check it into CVS. + +
&conventions; +
-
- - - - - - - - - - - +sgml-local-ecat-files:nil +sgml-minimize-attributes:nil +sgml-namecase-general:t +sgml-omittag:t +sgml-parent-document:("Bugzilla-Guide.sgml" "book" "chapter") +sgml-shorttag:t +sgml-tag-region-if-active:t +End: --> diff --git a/docs/en/xml/administration.xml b/docs/en/xml/administration.xml index 8ca600c54..0f290da31 100644 --- a/docs/en/xml/administration.xml +++ b/docs/en/xml/administration.xml @@ -1,1145 +1,1257 @@ - + - - - - Administering Bugzilla -Or, I just got this cool thing installed. Now what the heck do I do with it? - - -So you followed the README isntructions to the letter, and -just logged into bugzilla with your super-duper god account and you are sitting at the query -screen. Yet, you have nothing to query. Your first act of business needs to be to setup the -operating parameters for bugzilla. + + Administering Bugzilla + + Or, I just got this cool thing installed. Now what the heck do I + do with it? + + + + So you followed the installation instructions to the letter, and + just logged into bugzilla with your super-duper god account and + you are sitting at the query screen. Yet, you have nothing to + query. Your first act of business needs to be to setup the + operating parameters for bugzilla. + -
- Post-Installation Checklist - +
+ Post-Installation Checklist + After installation, follow the checklist below to ensure that - you have a successful installation. - If you do not see a recommended setting for a parameter, - consider leaving it at the default - while you perform your initial tests on your Bugzilla setup. - - - checklist - - - - - Bring up "editparams.cgi" in your web browser. For instance, to edit parameters - at mozilla.org, the URL would be - http://bugzilla.mozilla.org/editparams.cgi, also available under the "edit parameters" - link on your query page. - - - - - Set "maintainer" to your email address. - This allows Bugzilla's error messages - to display your email + you have a successful installation. If you do not see a + recommended setting for a parameter, consider leaving it at the + default while you perform your initial tests on your Bugzilla + setup. + + + checklist + + + + + Bring up "editparams.cgi" in your web browser. For + instance, to edit parameters at mozilla.org, the URL would + be + http://bugzilla.mozilla.org/editparams.cgi, also + available under the "edit parameters" link on your query + page. + + + + + Set "maintainer" to your email address. + This allows Bugzilla's error messages to display your email address and allow people to contact you for help. - - - - - Set "urlbase" to the URL reference for your Bugzilla installation. - If your bugzilla query page is at http://www.foo.com/bugzilla/query.cgi, - your url base is http://www.foo.com/bugzilla/ - - - - - Set "usebuggroups" to "1" only - if you need to restrict access to products. - I suggest leaving this parameter off - while initially testing your Bugzilla. - - - - - Set "usebuggroupsentry" to "1" if you want to restrict access to products. - Once again, if you are simply testing your installation, I suggest against - turning this parameter on; the strict security checking may stop you from - being able to modify your new entries. - - - - - Set "shadowdb" to "bug_shadowdb" if you will be - running a *very* large installation of Bugzilla. - The shadow database enables many simultaneous users - to read and write to the database - without interfering with one another. - - + + + + + Set "urlbase" to the URL reference for your Bugzilla + installation. If your bugzilla query page is at + http://www.foo.com/bugzilla/query.cgi, your url base is + http://www.foo.com/bugzilla/ + + + + + Set "usebuggroups" to "on" only if you + need to restrict access to products. I suggest leaving this + parameter off while initially testing + your Bugzilla. + + + + + Set "usebuggroupsentry" to "on" if you want to restrict + access to products. Once again, if you are simply testing + your installation, I suggest against turning this parameter + on; the strict security checking may stop you from being + able to modify your new entries. + + + + + Set "shadowdb" to "bug_shadowdb" if you will be running a + *very* large installation of Bugzilla. The shadow database + enables many simultaneous users to read and write to the + database without interfering with one another. + + Enabling "shadowdb" can adversely affect the stability - of your installation of Bugzilla. - You may frequently need to manually synchronize your databases, - or schedule nightly syncs - via "cron" - - - Once again, in testing you should - avoid this option -- use it if or when you need to use it, and have - repeatedly run into the problem it was designed to solve -- very long wait times while - attempting to commit a change to the database. - - - If you use the "shadowdb" option, - it is only natural that you should turn the "queryagainstshadowdb" - option "On" as well. Otherwise you are replicating data into a shadow database for no reason! - - - - - If you have custom logos or HTML you must put in place to fit within your site design guidelines, - place the code in the "headerhtml", "footerhtml", "errorhtml", - "bannerhtml", or "blurbhtml" text boxes. - - + of your installation of Bugzilla. You may frequently + need to manually synchronize your databases, or schedule + nightly syncs via "cron" + + Once again, in testing you should avoid this option + -- use it if or when you need to use + it, and have repeatedly run into the problem it was designed + to solve -- very long wait times while attempting to commit + a change to the database. + + + If you use the "shadowdb" option, it is only natural that + you should turn the "queryagainstshadowdb" option "On" as + well. Otherwise you are replicating data into a shadow + database for no reason! + + + + + If you have custom logos or HTML you must put in place to + fit within your site design guidelines, place the code in + the "headerhtml", "footerhtml", "errorhtml", "bannerhtml", + or "blurbhtml" text boxes. + + The "headerhtml" text box is the HTML printed out - before any other code on the page. - If you have a special banner, put the code for it in "bannerhtml". - You may want to leave these - settings at the defaults initially. - - - - - - - Add any text you wish to the "passwordmail" parameter box. For instance, - many people choose to use this box to give a quick training blurb about how to - use Bugzilla at your site. - - - - - Ensure "newemailtech" is "on". - Your users will thank you. This is the default in the post-2.12 world, and is - only an issue if you are upgrading. - - - - - Do you want to use the qa contact ("useqacontact") - and status whiteboard ("usestatuswhiteboard") fields? - These fields are useful because they allow for more flexibility, - particularly when you have an existing - Quality Assurance and/or Release Engineering team, - but they may not be needed for smaller installations. - - - - - Set "whinedays" to the amount of days you want to let bugs go - in the "New" or "Reopened" state before - notifying people they have untouched new bugs. If you do not plan to use this feature, simply do - not set up the whining cron job described in the README, or set this value to "0". - - - - + before any other code on the page. + If you have a special banner, put the code for it in + "bannerhtml". You may want to leave these settings at + the defaults initially. + + + + + + + Add any text you wish to the "passwordmail" parameter box. + For instance, many people choose to use this box to give a + quick training blurb about how to use Bugzilla at your site. + + + + + Ensure "newemailtech" is "on". Your users will thank you. + This is the default in the post-2.12 world, and is only an + issue if you are upgrading. + + + + + Do you want to use the QA Contact ("useqacontact") and + status whiteboard ("usestatuswhiteboard") fields? These + fields are useful because they allow for more flexibility, + particularly when you have an existing Quality Assurance + and/or Release Engineering team, but they may not be needed + for smaller installations. + + + + + Set "whinedays" to the amount of days you want to let bugs + go in the "New" or "Reopened" state before notifying people + they have untouched new bugs. If you do not plan to use + this feature, simply do not set up the whining cron job + described in the installation instructions, or set this + value to "0". + + + + Set the "commenton" options according to your site policy. - It is a wise idea to require comments when users - resolve, reassign, or reopen bugs. - - - It is generally far better to require a developer comment when resolving bugs than not. - Few things are more annoying to bug database users than having a developer - mark a bug "fixed" without any comment as to what the fix was (or even that it was truly fixed!) - - - - - - - Set "supportwatchers" to "On". This feature is helpful for team leads to monitor progress in their - respective areas, and can offer many other benefits, such as allowing a developer to pick up a - former engineer's bugs without requiring her to change all the information in the bug. - - - -
+ It is a wise idea to require comments when users resolve, + reassign, or reopen bugs. + + + It is generally far better to require a developer + comment when resolving bugs than not. Few things are + more annoying to bug database users than having a + developer mark a bug "fixed" without any comment as to + what the fix was (or even that it was truly fixed!) + + +
+ + + + Set "supportwatchers" to "On". This feature is helpful for + team leads to monitor progress in their respective areas, + and can offer many other benefits, such as allowing a + developer to pick up a former engineer's bugs without + requiring her to change all the information in the bug. + + + +
-
- User Administration - +
+ User Administration + User administration is one of the easiest parts of Bugzilla. - Keeping it from getting out of hand, however, can become a challenge. - + Keeping it from getting out of hand, however, can become a + challenge. + -
- Creating the Default User +
+ Creating the Default User - - When you first run checksetup.pl after installing Bugzilla, it will prompt you - for the administrative username (email address) and password for this "super user". - If for some reason you were to delete the "super user" account, re-running - checksetup.pl will again prompt you for this username and password. - - - - If you wish to add more administrative users, you must use the MySQL interface. - Run "mysql" from the command line, and use these commands ("mysql>" denotes the - mysql prompt, not something you should type in): - mysql> use bugs; - mysql> update profiles set groupset=0x7ffffffffffffff - where login_name = "(user's login name)"; - - -
+ + When you first run checksetup.pl after installing Bugzilla, it + will prompt you for the administrative username (email + address) and password for this "super user". If for some + reason you were to delete the "super user" account, re-running + checksetup.pl will again prompt you for this username and + password. + + + + If you wish to add more administrative users, you must use the + MySQL interface. Run "mysql" from the command line, and use + these commands ("mysql>" denotes the mysql prompt, not + something you should type in): + mysql> use bugs; + mysql> update profiles set + groupset=0x7ffffffffffffff where login_name = "(user's + login name)"; + + +
-
- Managing Other Users +
+ Managing Other Users -
- Logging In - - - - Open the index.html page for your Bugzilla installation in your browser window. - - - - +
+ Logging In + + + + Open the index.html page for your Bugzilla installation + in your browser window. + + + + Click the "Query Existing Bug Reports" link. - - - - + + + + Click the "Log In" link at the foot of the page. - - - - - Type your email address, and the password which was emailed to you when you - created your Bugzilla account, into the spaces provided. - - - - Congratulations, you are logged in! -
+
+
+ + + Type your email address, and the password which was + emailed to you when you created your Bugzilla account, + into the spaces provided. + + +
+ Congratulations, you are logged in! +
-
- Creating new users - - Your users can create their own user accounts by clicking the "New Account" - link at the bottom of each page. - However, should you desire to create user accounts ahead of time, here is how you do it. - - - - - After logging in, click the "Users" link at the footer of the query page. - - - - - To see a specific user, type a portion of their login name - in the box provided and click "submit". - To see all users, simply click the "submit" button. - You must click "submit" here to be able to add a new user. - - - - More functionality is available via the list on the right-hand side - of the text entry box. - You can match what you type as a case-insensitive substring (the default) - of all users on your system, a case-sensitive regular expression - (please see the "man regexp" manual page for details on regular expression syntax), - or a reverse regular expression match, - where every user name which does NOT match the regular expression - is selected. - - - - - - Click the "Add New User" link at the bottom of the user list - - - - - Fill out the form presented. This page is self-explanatory. When done, click "submit". - - - - Adding a user this way will not send an email - informing them of their username and password. - In general, it is preferable to log out and use the "New Account" - button to create users, as it will pre-populate all the required fields and also notify - the user of her account name and password. - - - - -
+
+ Creating new users + + Your users can create their own user accounts by clicking + the "New Account" link at the bottom of each page. However, + should you desire to create user accounts ahead of time, + here is how you do it. + + + + + After logging in, click the "Users" link at the footer + of the query page. + + + + + To see a specific user, type a portion of their login + name in the box provided and click "submit". To see all + users, simply click the "submit" button. You must click + "submit" here to be able to add a new user. + + + + More functionality is available via the list on the + right-hand side of the text entry box. You can match + what you type as a case-insensitive substring (the + default) of all users on your system, a case-sensitive + regular expression (please see the "man regexp" manual + page for details on regular expression syntax), or a + reverse regular expression match, + where every user name which does NOT match the regular + expression is selected. + + + + + + Click the "Add New User" link at the bottom of the user + list + + + + + Fill out the form presented. This page is + self-explanatory. When done, click "submit". + + + + Adding a user this way will not + send an email informing them of their username and + password. In general, it is preferable to log out and + use the "New Account" button to create users, as it + will pre-populate all the required fields and also + notify the user of her account name and password. + + + + +
-
- Disabling Users - - I bet you noticed that big "Disabled Text" entry box available from the "Add New User" screen, - when you edit an account? - By entering any text in this box and selecting "submit", - you have prevented the user from using Bugzilla via the web interface. - Your explanation, written in this text box, will be presented to the user - the next time she attempts to use the system. - - - Don't disable your own administrative account, or you will hate life! - - - -
+
+ Disabling Users + + I bet you noticed that big "Disabled Text" entry box + available from the "Add New User" screen, when you edit an + account? By entering any text in this box and selecting + "submit", you have prevented the user from using Bugzilla + via the web interface. Your explanation, written in this + text box, will be presented to the user the next time she + attempts to use the system. + + + Don't disable your own administrative account, or you + will hate life! + + + +
-
- Modifying Users - - Here I will attempt to describe the function of each option on the user edit screen. - - - - - Login Name: This is generally the user's email address. - However, if you have edited your system parameters, - this may just be the user's login name or some other identifier. - - - For compatability reasons, you should probably - stick with email addresses as user login names. It will make your life easier. - - - - - - - Real Name: Duh! - - - - - Password: You will only see asterisks in versions - of Bugzilla newer than 2.10 or early 2.11. You can change the user password here. - - - - - Email Notification: You may choose from one of three options: - - - +
+ Modifying Users + + Here I will attempt to describe the function of each option + on the Edit User screen. + + + + + Login Name: This is generally the + user's email address. However, if you have edited your + system parameters, this may just be the user's login + name or some other identifier. + + + For compatability reasons, you should probably stick + with email addresses as user login names. It will + make your life easier. + + + + + + + Real Name: Duh! + + + + + Password: You will only see + asterisks in versions of Bugzilla newer than 2.10 or + early 2.11. You can change the user password here. + + + + + Email Notification: You may choose + from one of three options: + + + All qualifying bugs except those which I change: The user will be notified of any change to any bug - for which she is the reporter, assignee, Q/A contact, CC recipient, or "watcher". - - - - + for which she is the reporter, assignee, QA + Contact, CC recipient, or "watcher". + + + + Only those bugs which I am listed on the CC line: - The user will not be notified of changes to bugs where she is the assignee, - reporter, or Q/A contact, but will receive them if she is on the CC list. - - - She will still receive whining cron emails if you set up the "whinemail" feature. - - - - - - - All Qualifying Bugs: This user is a glutton for punishment. - If her name is in the reporter, Q/A contact, CC, assignee, or is a "watcher", - she will get email updates regarding the bug. - - - - - - Disable Text: If you type anything in this box, - including just a space, the user account is disabled from making any changes - to bugs via the web interface, and what you type in this box is presented as the reason. - - Don't disable the administrator account! - - - - As of this writing, the user can still submit bugs via the e-mail gateway, - if you set it up, despite the disabled text field. The e-mail gateway should - not be enabled for secure installations of Bugzilla. - - - - - - - CanConfirm: This field is only used if you have enabled - "unconfirmed" status in your parameters screen. If you enable this for a user, - that user can then move bugs from "Unconfirmed" to "Confirmed" status (ergo: "New" status). - Be judicious about allowing users to turn this bit on for other users. - - - - - Creategroups: This option will allow a user to create and - destroy groups in Bugzilla. Unless you are using the Bugzilla GroupSentry security - option "usebuggroupsentry" in your parameters, this setting has no effect. - - - - - Editbugs: Unless a user has this bit set, they can only edit - those bugs for which they are the assignee or the reporter. - - - Leaving this option unchecked does not prevent users from adding - comments to a bug! They simply cannot change a bug priority, severity, - etc. unless they are the assignee or reporter. - - - - - - - Editcomponents: This flag allows a user to create new - products and components, as well as modify and destroy those that have no bugs - associated with them. If a product or component has bugs associated with it, - those bugs must be moved to a different product or component before Bugzilla - will allow them to be destroyed. The name of a product or component can be - changed without affecting the associated bugs, but it tends to annoy - the hell out of your users when these change a lot. - - - - - Editkeywords: If you use Bugzilla's keyword functionality, - enabling this feature allows a user can create and destroy keywords. - As always, the keywords for existing bugs containing the keyword - the user wishes to destroy must be changed before Bugzilla will allow it to die. - You must be very careful about creating too many new keywords - if you run a very large Bugzilla installation; keywords are global variables - across products, and you can often run into a phenomenon called "keyword bloat". - This confuses users, and then the feature goes unused. - - - - - Editusers: This flag allows a user do what you're doing - right now: edit other users. - This will allow those with the right to do so to remove administrator - priveleges from other users or grant them to themselves. Enable with care. - - - - - PRODUCT: PRODUCT bugs access. This allows an administrator, - with product-level granularity, to specify in which products a user can edit bugs. - The user must still have the "editbugs" privelege to edit bugs in this area; - this simply restricts them from even seeing bugs outside these boundaries if the administrator - has enabled the group sentry parameter "usebuggroupsentry". Unless you are using bug groups, + The user will not be notified of changes to bugs + where she is the assignee, reporter, or QA + Contact, but will receive them if she is on the CC + list. + + + She will still receive whining cron emails if + you set up the "whinemail" feature. + + + + + + + All Qualifying Bugs: This + user is a glutton for punishment. If her name is + in the reporter, QA Contact, CC, assignee, or is a + "watcher", she will get email updates regarding + the bug. + + + + + + Disable Text: If you type anything + in this box, including just a space, the user account is + disabled from making any changes to bugs via the web + interface, and what you type in this box is presented as + the reason. + + Don't disable the administrator account! + + + + As of this writing, the user can still submit bugs + via the e-mail gateway, if you set it up, despite + the disabled text field. The e-mail gateway should + not be enabled for secure + installations of Bugzilla. + + + + + + + CanConfirm: This field is only used + if you have enabled "unconfirmed" status in your + parameters screen. If you enable this for a user, that + user can then move bugs from "Unconfirmed" to + "Confirmed" status (e.g.: "New" status). Be judicious + about allowing users to turn this bit on for other + users. + + + + + Creategroups: This option will + allow a user to create and destroy groups in Bugzilla. + Unless you are using the Bugzilla GroupSentry security + option "usebuggroupsentry" in your parameters, this + setting has no effect. + + + + + Editbugs: Unless a user has this + bit set, they can only edit those bugs for which they + are the assignee or the reporter. + + + Leaving this option unchecked does not prevent users + from adding comments to a bug! They simply cannot + change a bug priority, severity, etc. unless they + are the assignee or reporter. + + + + + + + Editcomponents: This flag allows a + user to create new products and components, as well as + modify and destroy those that have no bugs associated + with them. If a product or component has bugs + associated with it, those bugs must be moved to a + different product or component before Bugzilla will + allow them to be destroyed. The name of a product or + component can be changed without affecting the + associated bugs, but it tends to annoy the hell out of + your users when these change a lot. + + + + + Editkeywords: If you use Bugzilla's + keyword functionality, enabling this feature allows a + user can create and destroy keywords. As always, the + keywords for existing bugs containing the keyword the + user wishes to destroy must be changed before Bugzilla + will allow it to die. You must be very careful about + creating too many new keywords if you run a very large + Bugzilla installation; keywords are global variables + across products, and you can often run into a phenomenon + called "keyword bloat". This confuses users, and then + the feature goes unused. + + + + + Editusers: This flag allows a user + do what you're doing right now: edit other users. This + will allow those with the right to do so to remove + administrator priveleges from other users or grant them + to themselves. Enable with care. + + + + + PRODUCT: PRODUCT bugs access. This + allows an administrator, with product-level granularity, + to specify in which products a user can edit bugs. The + user must still have the "editbugs" privelege to edit + bugs in this area; this simply restricts them from even + seeing bugs outside these boundaries if the + administrator has enabled the group sentry parameter + "usebuggroupsentry". Unless you are using bug groups, this option has no effect. - - - -
-
-
+ + + +
+
+
-
- Product, Component, Milestone, and Version Administration - - +
+ Product, Component, Milestone, and Version + Administration + + Dear Lord, we have to get our users to do WHAT? - - + + -
- Products - Formerly, and in some spots still, called "Programs" - - Products are the - broadest category in Bugzilla, and you should have the least of these. - If your company makes computer games, you should have one product per game, - and possibly a few special products - (website, meetings...) - - - A Product (formerly called "Program", and still referred to that way - in some portions of the source code) controls some very important functions. - The number of "votes" available for users to vote for the most important bugs - is set per-product, as is the number of votes required to move a bug automatically - from the UNCONFIRMED status to the NEW status. One can close a Product for further - bug entry and define various Versions available from the Edit Product screen. - - To create a new product: - - - +
+ Products + Formerly, and in some spots still, called + "Programs" + + Products are + the broadest category in Bugzilla, and you should have the + least of these. If your company makes computer games, you + should have one product per game, and possibly a few special + products (website, meetings...) + + + A Product (formerly called "Program", and still referred to + that way in some portions of the source code) controls some + very important functions. The number of "votes" available for + users to vote for the most important bugs is set per-product, + as is the number of votes required to move a bug automatically + from the UNCONFIRMED status to the NEW status. One can close + a Product for further bug entry and define various Versions + available from the Edit product screen. + + To create a new product: + + + Select "components" from the yellow footer - - - - It may seem counterintuitive to click "components" when you want - to edit the properties associated with Products. This is one of a long - list of things we want in Bugzilla 3.0... - - - - - + + + + It may seem counterintuitive to click "components" when + you want to edit the properties associated with + Products. This is one of a long list of things we want + in Bugzilla 3.0... + + + + + Select the "Add" link to the right of "Add a new product". - - - - - Enter the name of the product and a description. - The Description field is free-form. - - - - - - Don't worry about the "Closed for bug entry", "Maximum Votes per person", - "Maximum votes a person can put on a single bug", "Number of votes a bug in - this Product needs to automatically get out of the UNCOMFIRMED state", - and "Version" options yet. - We'll cover those in a few moments. - - -
+
+
+ + + Enter the name of the product and a description. The + Description field is free-form. + + +
+ + + Don't worry about the "Closed for bug entry", "Maximum Votes + per person", "Maximum votes a person can put on a single + bug", "Number of votes a bug in this Product needs to + automatically get out of the UNCOMFIRMED state", and + "Version" options yet. We'll cover those in a few moments. + + +
-
- Components - +
+ Components + Components are subsections of a Product. - - Creating some Components - - - The computer game you are designing may a "UI" component, an "API" component, - a "Sound System" component, and a "Plugins" component, each overseen by a different - programmer. It often makes sense to divide Components in Bugzilla according to the - natural divisions of responsibility within your Product or company. - - - - - Each component has a owner and (if you turned it on in the parameters), a qa - contact. The owner should be the primary person who fixes bugs in that component. The QA - Contact should be the person who will ensure these bugs are completely fixed. The Owner, - QA Contact, and Reporter will get email when new bugs are created in this Component and - when these bugs change. Default Owner and Default QA Contact fields only dictate the - default assignments; the Owner and Q/A Contact fields in a bug - are otherwise unrelated to the Component. - + + Creating some Components + + + The computer game you are designing may have a "UI" + component, an "API" component, a "Sound System" + component, and a "Plugins" component, each overseen by + a different programmer. It often makes sense to divide + Components in Bugzilla according to the natural + divisions of responsibility within your Product or + company. + + + Each component has a owner and (if you turned it on + in the parameters), a QA Contact. The owner should be the + primary person who fixes bugs in that component. The QA + Contact should be the person who will ensure these bugs are + completely fixed. The Owner, QA Contact, and Reporter will get + email when new bugs are created in this Component and when + these bugs change. Default Owner and Default QA Contact fields + only dictate the default assignments; the + Owner and QA Contact fields in a bug are otherwise unrelated + to the Component. + - + To create a new Component: - - - - - Select the "Edit components" link from the "Edit Product" page - - - - - Select the "Add" link to the right of the "Add a new component" text - on the "Select Component" page. - - - - - Fill out the "Component" field, a short "Description", and the "Initial Owner". - The "Component" field should not contain a space. The "Description" field is - free-form. The "Initial Owner" field must be that of a valid user already - existing in the database. If the initial owner does not exist, Bugzilla - will refuse to create the component. - - - Is your "Default Owner" a user who is not yet in the database? - No problem. - - - - Select the "Log out" link on the footer of the page. - - - - - Select the "New Account" link on the footer of the "Relogin" page - - - - - Type in the email address of the default owner you want to create - in the "E-mail address" field, and her full name in the "Real name" + + + + + Select the "Edit components" link from the "Edit product" + page + + + + + Select the "Add" link to the right of the "Add a new + component" text on the "Select Component" page. + + + + + Fill out the "Component" field, a short "Description", and + the "Initial Owner". The Component and Description fields + are free-form; the "Initial Owner" field must be that of a + user ID already existing in the database. If the initial + owner does not exist, Bugzilla will refuse to create the + component. + + + Is your "Default Owner" a user who is not yet in the + database? No problem. + + + + Select the "Log out" link on the footer of the + page. + + + + + Select the "New Account" link on the footer of + the "Relogin" page + + + + + Type in the email address of the default owner + you want to create in the "E-mail address" + field, and her full name in the "Real name" field, then select the "Submit Query" button. - - - - - Now select "Log in" again, type in your login information, and you - can modify the product to use the Default Owner information - you require. - - - - - - - - - - Either "edit" more components or return to the "query" page on the ensuing - "Addming new component" page. To return to the Product you were editing, you - must select the "components" link as before. - - - -
+
+ + + + Now select "Log in" again, type in your login + information, and you can modify the product to + use the Default Owner information you require. + + + + + + + + + + Either Edit more components or return to the Bugzilla + Query Page. To return to the Product you were editing, you + must select the Components link as before. + + + +
-
- Versions - - Versions are the revisions of the product, such as "Flinders 3.1", "Flinders 95", - and "Flinders 2000". Using Versions helps you isolate code changes and are an aid - in reporting. +
+ Versions + + Versions are the revisions of the product, such as "Flinders + 3.1", "Flinders 95", and "Flinders 2000". Using Versions + helps you isolate code changes and are an aid in reporting. - - Common Use of Versions - - - A user reports a bug - against Version "Beta 2.0" of your product. The current Version of your software - is "Release Candidate 1", and no longer has the bug. This will - help you triage and classify bugs according to their relevance. It is also - possible people may report bugs against bleeding-edge beta versions that are - not evident in older versions of the software. This can help isolate code - changes that caused the bug - - - - - A Different Use of Versions - - - This field has been used to good effect by an online service provider in a slightly - different way. They had three versions of the product: "Production", "QA", - and "Dev". Although it may be the same product, a bug in the development - environment is not normally as critical as a Production bug, nor does it - need to be reported publicly. When used in conjunction with Target Milestones, - one can easily specify the environment where a bug can be reproduced, and - the Milestone by which it will be fixed. - - - - - + + Common Use of Versions + + + A user reports a bug against Version "Beta 2.0" of your + product. The current Version of your software is + "Release Candidate 1", and no longer has the bug. This + will help you triage and classify bugs according to + their relevance. It is also possible people may report + bugs against bleeding-edge beta versions that are not + evident in older versions of the software. This can + help isolate code changes that caused the bug + + + + + A Different Use of Versions + + + This field has been used to good effect by an online + service provider in a slightly different way. They had + three versions of the product: "Production", "QA", and + "Dev". Although it may be the same product, a bug in + the development environment is not normally as critical + as a Production bug, nor does it need to be reported + publicly. When used in conjunction with Target + Milestones, one can easily specify the environment where + a bug can be reproduced, and the Milestone by which it + will be fixed. + + + + + To create and edit Versions: - - - - - From the "Edit Product" screen, select "Edit Versions" - - - - - You will notice that the product already has the default version "undefined". - If your product doesn't use version numbers, you may want to leave this as it is - or edit it so that it is "---". You can then go back to the edit versions page - and add new versions to your product. - - - Otherwise, click the "Add" button to the right of the "Add a new version" text. - - - - - Enter the name of the Version. This can be free-form characters up to the limit of the - text box. Then select the "Add" button. - - - - - At this point you can select "Edit" to edit more Versions, or return to the "Query" - page, from which you can navigate back to the product through the "components" link - at the foot of the Query page. - - - -
+
+ + + + From the "Edit product" screen, select "Edit Versions" + + + + + You will notice that the product already has the default + version "undefined". If your product doesn't use version + numbers, you may want to leave this as it is or edit it so + that it is "---". You can then go back to the edit + versions page and add new versions to your product. + + + Otherwise, click the "Add" button to the right of the "Add + a new version" text. + + + + + Enter the name of the Version. This can be free-form + characters up to the limit of the text box. Then select + the "Add" button. + + + + + At this point you can select "Edit" to edit more Versions, + or return to the "Query" page, from which you can navigate + back to the product through the "components" link at the + foot of the Query page. + + + +
-
- Milestones - - Milestones are "targets" that you plan to get a bug fixed by. For example, you have a bug that - you plan to fix for your 3.0 release, it would be assigned the milestone of 3.0. Or, you have a - bug that you plan to fix for 2.8, this would have a milestone of 2.8. - - - - Milestone options will only appear for a Product if you turned the "usetargetmilestone" field - in the "Edit Parameters" screen "On". - - - - To create new Milestones, set Default Milestones, and set Milestone URL: - - - - +
+ Milestones + + Milestones are "targets" that you plan to get a bug fixed by. + For example, you have a bug that you plan to fix for your 3.0 + release, it would be assigned the milestone of 3.0. Or, you + have a bug that you plan to fix for 2.8, this would have a + milestone of 2.8. + + + + Milestone options will only appear for a Product if you + turned the "usetargetmilestone" field in the "Edit + Parameters" screen "On". + + + + To create new Milestones, set Default Milestones, and set + Milestone URL: + + + + Select "edit milestones" - - - - - Select "Add" to the right of the "Add a new milestone" text - - - - + + + + + Select "Add" to the right of the "Add a new milestone" + text + + + + Enter the name of the Milestone in the "Milestone" field. - You can optionally set the "Sortkey", which is a positive or negative number (-255 to 255) - that defines where in the list this particular milestone appears. - Select "Add". - - - Using SortKey with Target Milestone - - - Let's say you create a target milestone called "Release 1.0", with Sortkey set to "0". - Later, you realize that you will have a public beta, called "Beta1". - You can create a Milestone called "Beta1", with a Sortkey of "-1" in order to ensure - people will see the Target Milestone of "Beta1" earlier on the list than "Release 1.0" - - - - - - - If you want to add more milestones, select the "Edit" link. - If you don't, well shoot, you have to go back to the "query" page and select "components" - again, and make your way back to the Product you were editing. - - - This is another in the list of unusual user interface decisions that - we'd like to get cleaned up. Shouldn't there be a link to the effect of - "edit the Product I was editing when I ended up here"? In any case, - clicking "components" in the footer takes you back to the "Select product" - screen, from which you can begin editing your product again. - - - - - - - From the Edit Product screen again (once you've made your way back), enter the URL - for a description of what your milestones are for this product in the "Milestone URL" field. - It should be of the format "http://www.foo.com/bugzilla/product_milestones.html" - - - Some common uses of this field include product descriptions, product roadmaps, - and of course a simple description of the meaning of each milestone. - - - - - If you're using Target Milestones, the "Default Milestone" field must have some - kind of entry. If you really don't care if people set coherent Target Milestones, - simply leave this at the default, "---". However, controlling and regularly updating the Default - Milestone field is a powerful tool when reporting the status of projects. - - Select the "Update" button when you are done. - - - - - - - -
+ You can optionally set the "Sortkey", which is a positive + or negative number (-255 to 255) that defines where in the + list this particular milestone appears. Select "Add". +
+ + Using SortKey with Target Milestone + + + Let's say you create a target milestone called + "Release 1.0", with Sortkey set to "0". Later, you + realize that you will have a public beta, called + "Beta1". You can create a Milestone called "Beta1", + with a Sortkey of "-1" in order to ensure people will + see the Target Milestone of "Beta1" earlier on the + list than "Release 1.0" + + + +
+ + + If you want to add more milestones, select the "Edit" + link. If you don't, well shoot, you have to go back to the + "query" page and select "components" again, and make your + way back to the Product you were editing. + + + This is another in the list of unusual user interface + decisions that we'd like to get cleaned up. Shouldn't + there be a link to the effect of "edit the Product I + was editing when I ended up here"? In any case, + clicking "components" in the footer takes you back to + the "Select product" screen, from which you can begin + editing your product again. + + + + + + + From the Edit product screen again (once you've made your + way back), enter the URL for a description of what your + milestones are for this product in the "Milestone URL" + field. It should be of the format + "http://www.foo.com/bugzilla/product_milestones.html" + + + Some common uses of this field include product + descriptions, product roadmaps, and of course a simple + description of the meaning of each milestone. + + + + + If you're using Target Milestones, the "Default Milestone" + field must have some kind of entry. If you really don't + care if people set coherent Target Milestones, simply + leave this at the default, "---". However, controlling + and regularly updating the Default Milestone field is a + powerful tool when reporting the status of projects. + + Select the "Update" button when you are done. + +
+
-
- Voting - - The concept of "voting" is a poorly understood, yet powerful feature for the management - of open-source projects. Each user is assigned so many Votes per product, which they can - freely reassign (or assign multiple votes to a single bug). - This allows developers to gauge user need for a particular enhancement - or bugfix. By allowing bugs with a certain number of votes to automatically move from - "UNCONFIRMED" to "NEW", users of the bug system can help high-priority bugs garner +
+ Voting + + The concept of "voting" is a poorly understood, yet powerful + feature for the management of open-source projects. Each user + is assigned so many Votes per product, which they can freely + reassign (or assign multiple votes to a single bug). This + allows developers to gauge user need for a particular + enhancement or bugfix. By allowing bugs with a certain number + of votes to automatically move from "UNCONFIRMED" to "NEW", + users of the bug system can help high-priority bugs garner attention so they don't sit for a long time awaiting triage. - - - The daunting challenge of Votes is deciding where you draw the line for a "vocal majority". If you - only have a user base of 100 users, setting a low threshold for bugs to move from UNCONFIRMED - to NEW makes sense. As the Bugzilla user base expands, however, these thresholds must be - re-evaluated. You should gauge whether this feature is worth the time and close monitoring involved, - and perhaps forego implementation until you have a critical mass of users who demand it. - - To modify Voting settings: - - - - Navigate to the "Edit Product" screen for the Product you wish to modify - - - - - Set "Maximum Votes per person" to your calculated value. Setting this field - to "0" disables voting. - - - - - Set "Maximum Votes a person can put on a single bug" to your calculated value. It - should probably be some number lower than the "Maximum votes per person". - Setting this field to "0" disables voting, but leaves the voting options open - to the user. This is confusing. - - - - - Set "Number of votes a bug in this product needs to automatically get out of the - UNCONFIRMED state" to your calculated number. Setting this field to "0" - disables the automatic move of bugs from UNCONFIRMED to NEW. Some people - advocate leaving this at "0", but of what use are Votes if your Bugzilla - user base is unable to affect which bugs appear on Development radar? - - - You should probably set this number to higher than a small coalition of - Bugzilla users can influence it. Most sites use this as a "referendum" - mechanism -- if users are able to vote a bug out of UNCONFIRMED, it - is a really bad bug! - - - - - - - Once you have adjusted the values to your preference, select the "Update" button. - - - -
+
+ + The daunting challenge of Votes is deciding where you draw the + line for a "vocal majority". If you only have a user base of + 100 users, setting a low threshold for bugs to move from + UNCONFIRMED to NEW makes sense. As the Bugzilla user base + expands, however, these thresholds must be re-evaluated. You + should gauge whether this feature is worth the time and close + monitoring involved, and perhaps forego implementation until + you have a critical mass of users who demand it. + + To modify Voting settings: + + + + Navigate to the "Edit product" screen for the Product you + wish to modify + + + + + Set "Maximum Votes per person" to your calculated value. + Setting this field to "0" disables voting. + + + + + Set "Maximum Votes a person can put on a single bug" to + your calculated value. It should probably be some number + lower than the "Maximum votes per person". Setting this + field to "0" disables voting, but leaves the voting + options open to the user. This is confusing. + + + + + Set "Number of votes a bug in this product needs to + automatically get out of the UNCONFIRMED state" to your + calculated number. Setting this field to "0" disables + the automatic move of bugs from UNCONFIRMED to NEW. Some + people advocate leaving this at "0", but of what use are + Votes if your Bugzilla user base is unable to affect which + bugs appear on Development radar? + + + You should probably set this number to higher than a + small coalition of Bugzilla users can influence it. + Most sites use this as a "referendum" mechanism -- if + users are able to vote a bug out of UNCONFIRMED, it is + a really bad bug! + + + + + + + Once you have adjusted the values to your preference, + select the "Update" button. + + + +
-
- Groups and Group Security - - Groups can be very useful in bugzilla, because they allow users to isolate - bugs or products that should only be seen by certain people. Groups can also - be a complicated minefield of interdependencies and weirdness if mismanaged. +
+ Groups and Group Security + + Groups can be very useful in bugzilla, because they allow + users to isolate bugs or products that should only be seen by + certain people. Groups can also be a complicated minefield of + interdependencies and weirdness if mismanaged. - - When to Use Group Security - - - Many Bugzilla sites isolate "Security-related" bugs from all other bugs. - This way, they can have a fix ready before the security vulnerability - is announced to the world. You can create a "Security" product which, by - default, has no members, and only add members to the group (in their individual - User page, as described under User Administration) who should have - priveleged access to "Security" bugs. Alternately, you may create a Group - independently of any Product, and change the Group mask on individual bugs - to restrict access to members only of certain Groups. - - - - - Groups only work if you enable the "usebuggroups" paramater. - In addition, if the "usebuggroupsentry" parameter is "On", one can restrict access - to products by groups, so that only members of a product group are able to view - bugs within that product. - Group security in Bugzilla can be divided into two categories: - Generic and Product-Based. - - - - Groups in Bugzilla are a complicated beast that evolved out of very simple user - permission bitmasks, apparently itself derived from common concepts in UNIX access - controls. A "bitmask" is a fixed-length number whose value can describe one, and - only one, set of states. For instance, UNIX file permissions are assigned bitmask - values: "execute" has a value of 1, "write" has a value of 2, - and "read" has a value of 4. Add them together, - and a file can be read, written to, and executed if it has a bitmask of "7". (This - is a simplified example -- anybody who knows UNIX security knows there is much - more to it than this. Please bear with me for the purpose of this note.) The only - way a bitmask scheme can work is by doubling the bit count for each value. Thus - if UNIX wanted to offer another file permission, the next would have to be a value of - 8, then the next 16, the next 32, etc. - - - Similarly, Bugzilla offers a bitmask to define group permissions, with an internal - limit of 64. Several are already occupied - by built-in permissions. The way around this limitation is - to avoid assigning groups to products if you have many products, avoid bloating - of group lists, and religiously prune irrelevant groups. In reality, most installations - of Bugzilla support far fewer than 64 groups, so this limitation has not hit - for most sites, but it is on the table to be revised for Bugzilla 3.0 - because it interferes with the security schemes of some administrators. - - - + + When to Use Group Security + + + Many Bugzilla sites isolate "Security-related" bugs from + all other bugs. This way, they can have a fix ready + before the security vulnerability is announced to the + world. You can create a "Security" product which, by + default, has no members, and only add members to the + group (in their individual User page, as described under + User Administration) who should have priveleged access + to "Security" bugs. Alternately, you may create a Group + independently of any Product, and change the Group mask + on individual bugs to restrict access to members only of + certain Groups. + + + Groups only work if you enable the "usebuggroups" + paramater. In addition, if the "usebuggroupsentry" parameter + is "On", one can restrict access to products by groups, so + that only members of a product group are able to view bugs + within that product. Group security in Bugzilla can be divided + into two categories: Generic and Product-Based. + + + + Groups in Bugzilla are a complicated beast that evolved out + of very simple user permission bitmasks, apparently itself + derived from common concepts in UNIX access controls. A + "bitmask" is a fixed-length number whose value can describe + one, and only one, set of states. For instance, UNIX file + permissions are assigned bitmask values: "execute" has a + value of 1, "write" has a value of 2, and "read" has a + value of 4. Add them together, and a file can be read, + written to, and executed if it has a bitmask of "7". (This + is a simplified example -- anybody who knows UNIX security + knows there is much more to it than this. Please bear with + me for the purpose of this note.) The only way a bitmask + scheme can work is by doubling the bit count for each value. + Thus if UNIX wanted to offer another file permission, the + next would have to be a value of 8, then the next 16, the + next 32, etc. + + + Similarly, Bugzilla offers a bitmask to define group + permissions, with an internal limit of 64. Several are + already occupied by built-in permissions. The way around + this limitation is to avoid assigning groups to products if + you have many products, avoid bloating of group lists, and + religiously prune irrelevant groups. In reality, most + installations of Bugzilla support far fewer than 64 groups, + so this limitation has not hit for most sites, but it is on + the table to be revised for Bugzilla 3.0 because it + interferes with the security schemes of some administrators. + + + To enable Generic Group Security ("usebuggroups"): - - - - + + + + Turn "On" "usebuggroups" in the "Edit Parameters" screen. - - - - - You will generally have no groups set up. Select the "groups" link - in the footer. - - - - - Take a moment to understand the instructions on the "Edit Groups" screen. - Once you feel confident you understand what is expected of you, select the - "Add Group" link. - - - - - Fill out the "New Name" (remember, no spaces!), "New Description", and "New - User RegExp" fields. "New User RegExp" allows you to automatically place - all users who fulfill the Regular Expression into the new group. + + + + + You will generally have no groups set up. Select the + "groups" link in the footer. + + + + + Take a moment to understand the instructions on the "Edit + Groups" screen. Once you feel confident you understand + what is expected of you, select the "Add Group" link. + + + + + Fill out the "New Name" (remember, no spaces!), "New + Description", and "New User RegExp" fields. "New User + RegExp" allows you to automatically place all users who + fulfill the Regular Expression into the new group. - - Creating a New Group - - - I created a group called "DefaultGroup" with a description of "This is simply - a group to play with", and a "New User RegExp" of "*@velio.com". This - new group automatically includes all Bugzilla users with "@velio.com" at the - end of their user id. When I finished, my new group was assigned bit #128. - - - - - When you have finished, select the "Add" button. - - - + + Creating a New Group + + + I created a group called DefaultGroup with a + description of This is simply a group to play + with, and a New User RegExp of .*@mydomain.tld. + This new group automatically includes all Bugzilla + users with "@mydomain.tld" at the end of their user id. + When I finished, my new group was assigned bit #128. + + + When you have finished, select the Add + button. + + + - - To enable Product-Based Group Security ("usebuggroupsentry"): - - - - Don't forget that you only have 64 groups masks available, total, for - your installation of Bugzilla! If you plan on having more than 50 - products in your individual Bugzilla installation, and require group - security for your products, you should - consider either running multiple Bugzillas or using Generic Group Security - instead of Product-Based ("usebuggroupsentry") Group Security. - - - - - - Turn "On" "usebuggroups" and "usebuggroupsentry" in the "Edit Parameters" screen. - - - - "usebuggroupsentry" has the capacity to prevent the administrative user - from directly altering bugs because of conflicting group permissions. - If you plan on using "usebuggroupsentry", you should plan on restricting administrative - account usage to administrative duties only. - In other words, manage bugs with an unpriveleged user account, and - manage users, groups, Products, etc. with the administrative account. - - - - - - You will generally have no Groups set up, unless you enabled "usebuggroupsentry" - prior to creating any Products. To create "Generic Group Security" groups, - follow the instructions given above. To create Product-Based Group security, - simply follow the instructions for creating a new Product. If you need to - add users to these new groups as you create them, you will find the option - to add them to the group available under the "Edit User" screens. - - - -
-
+ + To enable Product-Based Group Security (usebuggroupsentry): + + + + Don't forget that you only have 64 groups masks available, + total, for your installation of Bugzilla! If you plan on + having more than 50 products in your individual Bugzilla + installation, and require group security for your products, + you should consider either running multiple Bugzillas or + using Generic Group Security instead of Product-Based + ("usebuggroupsentry") Group Security. + + + + + + Turn "On" "usebuggroups" and "usebuggroupsentry" in the + "Edit Parameters" screen. + + + + "usebuggroupsentry" has the capacity to prevent the + administrative user from directly altering bugs because + of conflicting group permissions. If you plan on using + "usebuggroupsentry", you should plan on restricting + administrative account usage to administrative duties + only. In other words, manage bugs with an unpriveleged + user account, and manage users, groups, Products, etc. + with the administrative account. + + + + + + You will generally have no Groups set up, unless you + enabled "usebuggroupsentry" prior to creating any + Products. To create "Generic Group Security" groups, + follow the instructions given above. To create + Product-Based Group security, simply follow the + instructions for creating a new Product. If you need to + add users to these new groups as you create them, you will + find the option to add them to the group available under + the "Edit User" screens. + + + +
+
-
- Bugzilla Security - - - Putting your money in a wall safe is better protection than depending on the fact that - no one knows that you hide your money in a mayonnaise jar in your fridge. - - - - - Poorly-configured MySQL, Bugzilla, and FTP installations have given attackers full - access to systems in the past. Please take these guidelines seriously, even - for Bugzilla machines hidden away behind your firewall. 80% of all computer +
+ Bugzilla Security + + + Putting your money in a wall safe is better protection than + depending on the fact that no one knows that you hide your + money in a mayonnaise jar in your fridge. + + + + + Poorly-configured MySQL, Bugzilla, and FTP installations have + given attackers full access to systems in the past. Please + take these guidelines seriously, even for Bugzilla machines + hidden away behind your firewall. 80% of all computer trespassers are insiders, not anonymous crackers. - - - - First thing's first: Secure your installation. - - - These instructions must, of necessity, be somewhat vague since Bugzilla runs on so many different - platforms. If you have refinements of these directions for specific platforms, please - submit them to mozilla-webtools@mozilla.org - - - - - - Ensure you are running at least MysQL version 3.22.32 or newer. Earlier versions had - notable security holes and poorly secured default configuration choices. - - - - There is no substitute for understanding the tools on your system! - Read - The MySQL Privelege System until you can recite it from memory! - - At the very least, ensure you password the "mysql -u root" account and the "bugs" account, establish grant - table rights (consult the Keystone guide in Appendix C: The Bugzilla Database for some easy-to-use details) - that do not allow CREATE, DROP, RELOAD, SHUTDOWN, and PROCESS for user "bugs". I wrote up the Keystone - advice back when I knew far less about security than I do now : ) - - - - - Lock down /etc/inetd.conf. Heck, disable inet entirely on this box. It should only listen to - port 25 for Sendmail + + + + Secure your installation. + + + These instructions must, of necessity, be somewhat vague + since Bugzilla runs on so many different platforms. If you + have refinements of these directions for specific platforms, + please submit them to mozilla-webtools@mozilla.org + + + + + + Ensure you are running at least MysQL version 3.22.32 or + newer. Earlier versions had notable security holes and + poorly secured default configuration choices. + + + + There is no substitute for understanding the + tools on your system! Read The MySQL Privilege System until you can recite it from memory! + + At the very least, ensure you password the "mysql -u root" + account and the "bugs" account, establish grant table + rights (consult the Keystone guide in Appendix C: The + Bugzilla Database for some easy-to-use details) that do + not allow CREATE, DROP, RELOAD, SHUTDOWN, and PROCESS for + user "bugs". I wrote up the Keystone advice back when I + knew far less about security than I do now : ) + + + + + Lock down /etc/inetd.conf. Heck, disable inet entirely on + this box. It should only listen to port 25 for Sendmail and port 80 for Apache. - - - - Do not run Apache as "nobody". This will require very lax permissions in your Bugzilla directories. - Run it, instead, as a user with a name, set via your httpd.conf file. - - - - Ensure you have adequate access controls for the $BUGZILLA_HOME/data/ and - $BUGZILLA_HOME/shadow/ directories, as well as the $BUGZILLA_HOME/localconfig and - $BUGZILLA_HOME/globals.pl files. - The localconfig file stores your "bugs" user password, - which would be terrible to have in the hands - of a criminal, while the "globals.pl" stores some default information regarding your - installation which could aid a system cracker. - In addition, some files under $BUGZILLA_HOME/data/ store sensitive information, and - $BUGZILLA_HOME/shadow/ stores bug information for faster retrieval. If you fail to secure - these directories and this file, you will expose bug information to those who may not - be allowed to see it. - - - - Bugzilla provides default .htaccess files to protect the most common Apache - installations. However, you should verify these are adequate according to the site-wide - security policy of your web server, and ensure that the .htaccess files are - allowed to "override" default permissions set in your Apache configuration files. - Covering Apache security is beyond the scope of this Guide; please consult the Apache - documentation for details. - - - If you are using a web server that does not support the .htaccess control method, - you are at risk! After installing, check to see if you can - view the file "localconfig" in your web browser (ergo: - - http://bugzilla.mozilla.org/localconfig. If you can read the contents of this - file, your web server has not secured your bugzilla directory properly and you - must fix this problem before deploying Bugzilla. If, however, it gives you a - "Forbidden" error, then it probably respects the .htaccess conventions and you - are good to go. - - - - On Apache, you can use .htaccess files to protect access to these directories, as outlined - in Bug 57161 for the - localconfig file, and - Bug 65572 for adequate protection in your data/ and shadow/ directories. - - - Note the instructions which follow are Apache-specific. If you use IIS, Netscape, or other - non-Apache web servers, please consult your system documentation for how to secure these - files from being transmitted to curious users. - - - Place the following text into a file named ".htaccess", readable by your web server, - in your $BUGZILLA_HOME/data directory. - - <Files comments> - allow from all - </Files> - deny from all - - - - Place the following text into a file named ".htaccess", readable by your web server, - in your $BUGZILLA_HOME/ directory. - - <Files localconfig> - deny from all - </Files> - allow from all - - - - Place the following text into a file named ".htaccess", readable by your web server, - in your $BUGZILLA_HOME/shadow directory. - - deny from all - - - - - -
- - - +
+ + + + Do not run Apache as nobody. This will + require very lax permissions in your Bugzilla directories. + Run it, instead, as a user with a name, set via your + httpd.conf file. + + + nobody is a real user on UNIX systems. + Having a process run as user id nobody + is absolutely no protection against system crackers + versus using any other user account. As a general + security measure, I recommend you create unique user + ID's for each daemon running on your system and, if + possible, use "chroot" to jail that process away from + the rest of your system. + + + + + + + Ensure you have adequate access controls for the + $BUGZILLA_HOME/data/ and $BUGZILLA_HOME/shadow/ + directories, as well as the $BUGZILLA_HOME/localconfig and + $BUGZILLA_HOME/globals.pl files. The localconfig file + stores your "bugs" user password, which would be terrible + to have in the hands of a criminal, while the "globals.pl" + stores some default information regarding your + installation which could aid a system cracker. In + addition, some files under $BUGZILLA_HOME/data/ store + sensitive information, and $BUGZILLA_HOME/shadow/ stores + bug information for faster retrieval. If you fail to + secure these directories and this file, you will expose + bug information to those who may not be allowed to see it. + + + + Bugzilla provides default .htaccess files to protect the + most common Apache installations. However, you should + verify these are adequate according to the site-wide + security policy of your web server, and ensure that the + .htaccess files are allowed to "override" default + permissions set in your Apache configuration files. + Covering Apache security is beyond the scope of this + Guide; please consult the Apache documentation for + details. + + + If you are using a web server that does not support the + .htaccess control method, you are at + risk! After installing, check to see if + you can view the file "localconfig" in your web browser + (e.g.: http://bugzilla.mozilla.org/localconfig). If you can read the contents of this file, your web server has not secured your bugzilla directory properly and you must fix this problem before deploying Bugzilla. If, however, it gives you a "Forbidden" error, then it probably respects the .htaccess conventions and you are good to go. + + + + On Apache, you can use .htaccess files to protect access + to these directories, as outlined in Bug 57161 for the localconfig file, and Bug 65572 for adequate protection in your data/ and shadow/ directories. + + + Note the instructions which follow are Apache-specific. + If you use IIS, Netscape, or other non-Apache web servers, + please consult your system documentation for how to secure + these files from being transmitted to curious users. + + + Place the following text into a file named ".htaccess", + readable by your web server, in your $BUGZILLA_HOME/data + directory. <Files comments> allow + from all </Files> deny from all + + + Place the following text into a file named ".htaccess", + readable by your web server, in your $BUGZILLA_HOME/ + directory. <Files localconfig> deny + from all </Files> allow from all + + + Place the following text into a file named ".htaccess", + readable by your web server, in your $BUGZILLA_HOME/shadow + directory. deny from all + + + + +
+
diff --git a/docs/en/xml/conventions.xml b/docs/en/xml/conventions.xml index 70e6624f7..71f2b0c5e 100644 --- a/docs/en/xml/conventions.xml +++ b/docs/en/xml/conventions.xml @@ -1,146 +1,99 @@ +
Document Conventions - + conventions - - This document uses the following conventions: - + + + This document uses the following conventions + + Descriptions - Appearance - - Caution - - - - Don't run with scissors! - - + Warnings + + Warnings. + - - Hint or Tip - - - - For best results... - - + Hint + + Hint. + - - Note - - - - Dear John... - - + Notes + + Note. + - - Warning - - - - Read this or the cat gets it. - - + Information requiring special attention + + Warning. + - - File or directory name - - - filename - + File Names + file.extension - - Command to be typed - - - command - + Directory Names + directory - - Application name - - - application - + Commands to be typed + command - - - Normal user's prompt under bash shell - + Applications Names + application + + + Prompt of users command under bash shell bash$ - - - Root user's prompt under bash shell - + Prompt of root users command under bash shell bash# - + + Prompt of user command under tcsh shell + tcsh$ + - - Normal user's prompt under tcsh shell - - tcsh$ + Environment Variables + VARIABLE - - Environment variables - - - VARIABLE - + Emphasized word + word - - Term found in the glossary - - - Bugzilla - - - - - Code example - - - para -Beginning and end of paragraph -para - + Code Example + paraBeginning and end of paragraphpara - - - This documentation is maintained in DocBook 4.1.2 XML format. - Changes are best submitted as plain text or XML diffs, attached - to a bug filed in the &bzg-bugs; component. -
+ + + + - diff --git a/docs/en/xml/gfdl.xml b/docs/en/xml/gfdl.xml index 1d84d1255..7d8d9967f 100644 --- a/docs/en/xml/gfdl.xml +++ b/docs/en/xml/gfdl.xml @@ -1,427 +1,457 @@ - - GNU Free Documentation License + +GNU Free Documentation License - - Version 1.1, March 2000 - -
- Copyright (C) 2000 Free Software Foundation, Inc. 59 Temple Place, - Suite 330, Boston, MA 02111-1307 USA Everyone is permitted to copy and - distribute verbatim copies of this license document, but changing it is - not allowed. -
- -
- Preamble - - The purpose of this License is to make a manual, textbook, or other - written document "free" in the sense of freedom: to assure everyone the - effective freedom to copy and redistribute it, with or without modifying - it, either commercially or noncommercially. Secondarily, this License - preserves for the author and publisher a way to get credit for their - work, while not being considered responsible for modifications made by + + Version 1.1, March 2000 + +
+ Copyright (C) 2000 Free Software Foundation, Inc. +59 Temple Place, Suite 330, Boston, MA 02111-1307 USA +Everyone is permitted to copy and distribute verbatim copies +of this license document, but changing it is not allowed. +
+ + + PREAMBLE + + The purpose of this License is to make a manual, textbook, + or other written document "free" in the sense of freedom: to + assure everyone the effective freedom to copy and redistribute it, + with or without modifying it, either commercially or + noncommercially. Secondarily, this License preserves for the + author and publisher a way to get credit for their work, while not + being considered responsible for modifications made by others. - This License is a kind of "copyleft", which means that derivative - works of the document must themselves be free in the same sense. It - complements the GNU General Public License, which is a copyleft license - designed for free software. - - We have designed this License in order to use it for manuals for - free software, because free software needs free documentation: a free - program should come with manuals providing the same freedoms that the - software does. But this License is not limited to software manuals; it - can be used for any textual work, regardless of subject matter or whether - it is published as a printed book. We recommend this License principally - for works whose purpose is instruction or reference. -
- -
- Applicability and Definition - - This License applies to any manual or other work that contains a - notice placed by the copyright holder saying it can be distributed under - the terms of this License. The "Document", below, refers to any such - manual or work. Any member of the public is a licensee, and is addressed - as "you". - - A "Modified Version" of the Document means any work containing the - Document or a portion of it, either copied verbatim, or with - modifications and/or translated into another language. - - A "Secondary Section" is a named appendix or a front-matter section - of the Document that deals exclusively with the relationship of the - publishers or authors of the Document to the Document's overall subject - (or to related matters) and contains nothing that could fall directly - within that overall subject. (For example, if the Document is in part a - textbook of mathematics, a Secondary Section may not explain any - mathematics.) The relationship could be a matter of historical connection - with the subject or with related matters, or of legal, commercial, - philosophical, ethical or political position regarding them. - - The "Invariant Sections" are certain Secondary Sections whose - titles are designated, as being those of Invariant Sections, in the - notice that says that the Document is released under this License. - - The "Cover Texts" are certain short passages of text that are - listed, as Front-Cover Texts or Back-Cover Texts, in the notice that says - that the Document is released under this License. - - A "Transparent" copy of the Document means a machine-readable copy, - represented in a format whose specification is available to the general - public, whose contents can be viewed and edited directly and - straightforwardly with generic text editors or (for images composed of - pixels) generic paint programs or (for drawings) some widely available - drawing editor, and that is suitable for input to text formatters or for - automatic translation to a variety of formats suitable for input to text - formatters. A copy made in an otherwise Transparent file format whose - markup has been designed to thwart or discourage subsequent modification - by readers is not Transparent. A copy that is not "Transparent" is called - "Opaque". - - Examples of suitable formats for Transparent copies include plain - ASCII without markup, Texinfo input format, LaTeX input format, SGML or - XML using a publicly available DTD, and standard-conforming simple HTML - designed for human modification. Opaque formats include PostScript, PDF, - proprietary formats that can be read and edited only by proprietary word - processors, SGML or XML for which the DTD and/or processing tools are not - generally available, and the machine-generated HTML produced by some word + This License is a kind of "copyleft", which means that + derivative works of the document must themselves be free in the + same sense. It complements the GNU General Public License, which + is a copyleft license designed for free software. + + We have designed this License in order to use it for manuals + for free software, because free software needs free documentation: + a free program should come with manuals providing the same + freedoms that the software does. But this License is not limited + to software manuals; it can be used for any textual work, + regardless of subject matter or whether it is published as a + printed book. We recommend this License principally for works + whose purpose is instruction or reference. + + + + APPLICABILITY AND DEFINITIONS + + This License applies to any manual or other work that + contains a notice placed by the copyright holder saying it can be + distributed under the terms of this License. The "Document", + below, refers to any such manual or work. Any member of the + public is a licensee, and is addressed as "you". + + A "Modified Version" of the Document means any work + containing the Document or a portion of it, either copied + verbatim, or with modifications and/or translated into another + language. + + A "Secondary Section" is a named appendix or a front-matter + section of the Document that deals exclusively with the + relationship of the publishers or authors of the Document to the + Document's overall subject (or to related matters) and contains + nothing that could fall directly within that overall subject. + (For example, if the Document is in part a textbook of + mathematics, a Secondary Section may not explain any mathematics.) + The relationship could be a matter of historical connection with + the subject or with related matters, or of legal, commercial, + philosophical, ethical or political position regarding + them. + + The "Invariant Sections" are certain Secondary Sections + whose titles are designated, as being those of Invariant Sections, + in the notice that says that the Document is released under this + License. + + The "Cover Texts" are certain short passages of text that + are listed, as Front-Cover Texts or Back-Cover Texts, in the + notice that says that the Document is released under this + License. + + A "Transparent" copy of the Document means a + machine-readable copy, represented in a format whose specification + is available to the general public, whose contents can be viewed + and edited directly and straightforwardly with generic text + editors or (for images composed of pixels) generic paint programs + or (for drawings) some widely available drawing editor, and that + is suitable for input to text formatters or for automatic + translation to a variety of formats suitable for input to text + formatters. A copy made in an otherwise Transparent file format + whose markup has been designed to thwart or discourage subsequent + modification by readers is not Transparent. A copy that is not + "Transparent" is called "Opaque". + + Examples of suitable formats for Transparent copies include + plain ASCII without markup, Texinfo input format, LaTeX input + format, SGML or XML using a publicly available DTD, and + standard-conforming simple HTML designed for human modification. + Opaque formats include PostScript, PDF, proprietary formats that + can be read and edited only by proprietary word processors, SGML + or XML for which the DTD and/or processing tools are not generally + available, and the machine-generated HTML produced by some word processors for output purposes only. - The "Title Page" means, for a printed book, the title page itself, - plus such following pages as are needed to hold, legibly, the material - this License requires to appear in the title page. For works in formats - which do not have any title page as such, "Title Page" means the text - near the most prominent appearance of the work's title, preceding the - beginning of the body of the text. -
- -
- Verbatim Copying - - You may copy and distribute the Document in any medium, either - commercially or noncommercially, provided that this License, the - copyright notices, and the license notice saying this License applies to - the Document are reproduced in all copies, and that you add no other - conditions whatsoever to those of this License. You may not use technical - measures to obstruct or control the reading or further copying of the - copies you make or distribute. However, you may accept compensation in - exchange for copies. If you distribute a large enough number of copies - you must also follow the conditions in section 3. - - You may also lend copies, under the same conditions stated above, - and you may publicly display copies. -
- -
- Copying in Quantity - - If you publish printed copies of the Document numbering more than - 100, and the Document's license notice requires Cover Texts, you must - enclose the copies in covers that carry, clearly and legibly, all these - Cover Texts: Front-Cover Texts on the front cover, and Back-Cover Texts - on the back cover. Both covers must also clearly and legibly identify you - as the publisher of these copies. The front cover must present the full - title with all words of the title equally prominent and visible. You may - add other material on the covers in addition. Copying with changes - limited to the covers, as long as they preserve the title of the Document - and satisfy these conditions, can be treated as verbatim copying in other - respects. - - If the required texts for either cover are too voluminous to fit - legibly, you should put the first ones listed (as many as fit reasonably) - on the actual cover, and continue the rest onto adjacent pages. + The "Title Page" means, for a printed book, the title page + itself, plus such following pages as are needed to hold, legibly, + the material this License requires to appear in the title page. + For works in formats which do not have any title page as such, + "Title Page" means the text near the most prominent appearance of + the work's title, preceding the beginning of the body of the + text. + + + + VERBATIM COPYING + + You may copy and distribute the Document in any medium, + either commercially or noncommercially, provided that this + License, the copyright notices, and the license notice saying this + License applies to the Document are reproduced in all copies, and + that you add no other conditions whatsoever to those of this + License. You may not use technical measures to obstruct or + control the reading or further copying of the copies you make or + distribute. However, you may accept compensation in exchange for + copies. If you distribute a large enough number of copies you + must also follow the conditions in section 3. + + You may also lend copies, under the same conditions stated + above, and you may publicly display copies. + + + + COPYING IN QUANTITY + + If you publish printed copies of the Document numbering more + than 100, and the Document's license notice requires Cover Texts, + you must enclose the copies in covers that carry, clearly and + legibly, all these Cover Texts: Front-Cover Texts on the front + cover, and Back-Cover Texts on the back cover. Both covers must + also clearly and legibly identify you as the publisher of these + copies. The front cover must present the full title with all + words of the title equally prominent and visible. You may add + other material on the covers in addition. Copying with changes + limited to the covers, as long as they preserve the title of the + Document and satisfy these conditions, can be treated as verbatim + copying in other respects. + + If the required texts for either cover are too voluminous to + fit legibly, you should put the first ones listed (as many as fit + reasonably) on the actual cover, and continue the rest onto + adjacent pages. If you publish or distribute Opaque copies of the Document - numbering more than 100, you must either include a machine-readable - Transparent copy along with each Opaque copy, or state in or with each - Opaque copy a publicly-accessible computer-network location containing a - complete Transparent copy of the Document, free of added material, which - the general network-using public has access to download anonymously at no - charge using public-standard network protocols. If you use the latter - option, you must take reasonably prudent steps, when you begin - distribution of Opaque copies in quantity, to ensure that this - Transparent copy will remain thus accessible at the stated location until - at least one year after the last time you distribute an Opaque copy - (directly or through your agents or retailers) of that edition to the - public. - - It is requested, but not required, that you contact the authors of - the Document well before redistributing any large number of copies, to - give them a chance to provide you with an updated version of the - Document. -
- -
- Modifications - - You may copy and distribute a Modified Version of the Document - under the conditions of sections 2 and 3 above, provided that you release - the Modified Version under precisely this License, with the Modified - Version filling the role of the Document, thus licensing distribution and - modification of the Modified Version to whoever possesses a copy of it. - In addition, you must do these things in the Modified Version: + numbering more than 100, you must either include a + machine-readable Transparent copy along with each Opaque copy, or + state in or with each Opaque copy a publicly-accessible + computer-network location containing a complete Transparent copy + of the Document, free of added material, which the general + network-using public has access to download anonymously at no + charge using public-standard network protocols. If you use the + latter option, you must take reasonably prudent steps, when you + begin distribution of Opaque copies in quantity, to ensure that + this Transparent copy will remain thus accessible at the stated + location until at least one year after the last time you + distribute an Opaque copy (directly or through your agents or + retailers) of that edition to the public. + + It is requested, but not required, that you contact the + authors of the Document well before redistributing any large + number of copies, to give them a chance to provide you with an + updated version of the Document. + + + + MODIFICATIONS + + You may copy and distribute a Modified Version of the + Document under the conditions of sections 2 and 3 above, provided + that you release the Modified Version under precisely this + License, with the Modified Version filling the role of the + Document, thus licensing distribution and modification of the + Modified Version to whoever possesses a copy of it. In addition, + you must do these things in the Modified Version: - - Use in the Title Page (and on the covers, if any) a title - distinct from that of the Document, and from those of previous - versions (which should, if there were any, be listed in the History - section of the Document). You may use the same title as a previous - version if the original publisher of that version gives - permission. + Use in the Title Page + (and on the covers, if any) a title distinct from that of the + Document, and from those of previous versions (which should, if + there were any, be listed in the History section of the + Document). You may use the same title as a previous version if + the original publisher of that version gives permission. - - List on the Title Page, as authors, one or more persons or - entities responsible for authorship of the modifications in the - Modified Version, together with at least five of the principal - authors of the Document (all of its principal authors, if it has less - than five). + List on the Title Page, + as authors, one or more persons or entities responsible for + authorship of the modifications in the Modified Version, + together with at least five of the principal authors of the + Document (all of its principal authors, if it has less than + five). - - State on the Title page the name of the publisher of the - Modified Version, as the publisher. + State on the Title page + the name of the publisher of the Modified Version, as the + publisher. - - Preserve all the copyright notices of the Document. + Preserve all the + copyright notices of the Document. - - Add an appropriate copyright notice for your modifications - adjacent to the other copyright notices. + Add an appropriate + copyright notice for your modifications adjacent to the other + copyright notices. - - Include, immediately after the copyright notices, a license - notice giving the public permission to use the Modified Version under - the terms of this License, in the form shown in the Addendum - below. + Include, immediately + after the copyright notices, a license notice giving the public + permission to use the Modified Version under the terms of this + License, in the form shown in the Addendum below. - - Preserve in that license notice the full lists of Invariant - Sections and required Cover Texts given in the Document's license - notice. + Preserve in that license + notice the full lists of Invariant Sections and required Cover + Texts given in the Document's license notice. - - Include an unaltered copy of this License. + Include an unaltered + copy of this License. - - Preserve the section entitled "History", and its title, and add - to it an item stating at least the title, year, new authors, and - publisher of the Modified Version as given on the Title Page. If - there is no section entitled "History" in the Document, create one - stating the title, year, authors, and publisher of the Document as - given on its Title Page, then add an item describing the Modified - Version as stated in the previous sentence. + Preserve the section + entitled "History", and its title, and add to it an item stating + at least the title, year, new authors, and publisher of the + Modified Version as given on the Title Page. If there is no + section entitled "History" in the Document, create one stating + the title, year, authors, and publisher of the Document as given + on its Title Page, then add an item describing the Modified + Version as stated in the previous sentence. - - Preserve the network location, if any, given in the Document - for public access to a Transparent copy of the Document, and likewise - the network locations given in the Document for previous versions it - was based on. These may be placed in the "History" section. You may - omit a network location for a work that was published at least four - years before the Document itself, or if the original publisher of the - version it refers to gives permission. + Preserve the network + location, if any, given in the Document for public access to a + Transparent copy of the Document, and likewise the network + locations given in the Document for previous versions it was + based on. These may be placed in the "History" section. You + may omit a network location for a work that was published at + least four years before the Document itself, or if the original + publisher of the version it refers to gives permission. - - In any section entitled "Acknowledgements" or "Dedications", - preserve the section's title, and preserve in the section all the - substance and tone of each of the contributor acknowledgements and/or - dedications given therein. + In any section entitled + "Acknowledgements" or "Dedications", preserve the section's + title, and preserve in the section all the substance and tone of + each of the contributor acknowledgements and/or dedications + given therein. - - Preserve all the Invariant Sections of the Document, unaltered - in their text and in their titles. Section numbers or the equivalent - are not considered part of the section titles. + Preserve all the + Invariant Sections of the Document, unaltered in their text and + in their titles. Section numbers or the equivalent are not + considered part of the section titles. - - Delete any section entitled "Endorsements". Such a section may - not be included in the Modified Version. + Delete any section + entitled "Endorsements". Such a section may not be included in + the Modified Version. - - Do not retitle any existing section as "Endorsements" or to - conflict in title with any Invariant Section. + Do not retitle any + existing section as "Endorsements" or to conflict in title with + any Invariant Section. - - If the Modified Version includes new front-matter sections or - appendices that qualify as Secondary Sections and contain no material - copied from the Document, you may at your option designate some or all of - these sections as invariant. To do this, add their titles to the list of - Invariant Sections in the Modified Version's license notice. These titles - must be distinct from any other section titles. - - You may add a section entitled "Endorsements", provided it contains - nothing but endorsements of your Modified Version by various parties--for - example, statements of peer review or that the text has been approved by - an organization as the authoritative definition of a standard. - - You may add a passage of up to five words as a Front-Cover Text, - and a passage of up to 25 words as a Back-Cover Text, to the end of the - list of Cover Texts in the Modified Version. Only one passage of - Front-Cover Text and one of Back-Cover Text may be added by (or through - arrangements made by) any one entity. If the Document already includes a - cover text for the same cover, previously added by you or by arrangement - made by the same entity you are acting on behalf of, you may not add - another; but you may replace the old one, on explicit permission from the - previous publisher that added the old one. - - The author(s) and publisher(s) of the Document do not by this - License give permission to use their names for publicity for or to assert - or imply endorsement of any Modified Version. -
- -
- Combining Documents - - You may combine the Document with other documents released under - this License, under the terms defined in section 4 above for modified - versions, provided that you include in the combination all of the - Invariant Sections of all of the original documents, unmodified, and list - them all as Invariant Sections of your combined work in its license - notice. - - The combined work need only contain one copy of this License, and - multiple identical Invariant Sections may be replaced with a single copy. - If there are multiple Invariant Sections with the same name but different - contents, make the title of each such section unique by adding at the end - of it, in parentheses, the name of the original author or publisher of - that section if known, or else a unique number. Make the same adjustment - to the section titles in the list of Invariant Sections in the license - notice of the combined work. + + If the Modified Version includes new front-matter sections + or appendices that qualify as Secondary Sections and contain no + material copied from the Document, you may at your option + designate some or all of these sections as invariant. To do this, + add their titles to the list of Invariant Sections in the Modified + Version's license notice. These titles must be distinct from any + other section titles. + + You may add a section entitled "Endorsements", provided it + contains nothing but endorsements of your Modified Version by + various parties--for example, statements of peer review or that + the text has been approved by an organization as the authoritative + definition of a standard. + + You may add a passage of up to five words as a Front-Cover + Text, and a passage of up to 25 words as a Back-Cover Text, to the + end of the list of Cover Texts in the Modified Version. Only one + passage of Front-Cover Text and one of Back-Cover Text may be + added by (or through arrangements made by) any one entity. If the + Document already includes a cover text for the same cover, + previously added by you or by arrangement made by the same entity + you are acting on behalf of, you may not add another; but you may + replace the old one, on explicit permission from the previous + publisher that added the old one. + + The author(s) and publisher(s) of the Document do not by + this License give permission to use their names for publicity for + or to assert or imply endorsement of any Modified Version. + + + + COMBINING DOCUMENTS + + You may combine the Document with other documents released + under this License, under the terms defined in section 4 above for + modified versions, provided that you include in the combination + all of the Invariant Sections of all of the original documents, + unmodified, and list them all as Invariant Sections of your + combined work in its license notice. + + The combined work need only contain one copy of this + License, and multiple identical Invariant Sections may be replaced + with a single copy. If there are multiple Invariant Sections with + the same name but different contents, make the title of each such + section unique by adding at the end of it, in parentheses, the + name of the original author or publisher of that section if known, + or else a unique number. Make the same adjustment to the section + titles in the list of Invariant Sections in the license notice of + the combined work. In the combination, you must combine any sections entitled - "History" in the various original documents, forming one section entitled - "History"; likewise combine any sections entitled "Acknowledgements", and - any sections entitled "Dedications". You must delete all sections - entitled "Endorsements." -
- -
- Collections of Documents - - You may make a collection consisting of the Document and other - documents released under this License, and replace the individual copies - of this License in the various documents with a single copy that is - included in the collection, provided that you follow the rules of this - License for verbatim copying of each of the documents in all other - respects. - - You may extract a single document from such a collection, and - distribute it individually under this License, provided you insert a copy - of this License into the extracted document, and follow this License in - all other respects regarding verbatim copying of that document. -
- -
- Aggregation with Independent Works - + "History" in the various original documents, forming one section + entitled "History"; likewise combine any sections entitled + "Acknowledgements", and any sections entitled "Dedications". You + must delete all sections entitled "Endorsements." + + + + COLLECTIONS OF DOCUMENTS + + You may make a collection consisting of the Document and + other documents released under this License, and replace the + individual copies of this License in the various documents with a + single copy that is included in the collection, provided that you + follow the rules of this License for verbatim copying of each of + the documents in all other respects. + + You may extract a single document from such a collection, + and distribute it individually under this License, provided you + insert a copy of this License into the extracted document, and + follow this License in all other respects regarding verbatim + copying of that document. + + + + AGGREGATION WITH INDEPENDENT WORKS + A compilation of the Document or its derivatives with other - separate and independent documents or works, in or on a volume of a - storage or distribution medium, does not as a whole count as a Modified - Version of the Document, provided no compilation copyright is claimed for - the compilation. Such a compilation is called an "aggregate", and this - License does not apply to the other self-contained works thus compiled - with the Document, on account of their being thus compiled, if they are - not themselves derivative works of the Document. - - If the Cover Text requirement of section 3 is applicable to these - copies of the Document, then if the Document is less than one quarter of - the entire aggregate, the Document's Cover Texts may be placed on covers - that surround only the Document within the aggregate. Otherwise they must - appear on covers around the whole aggregate. -
- -
- Translation + separate and independent documents or works, in or on a volume of + a storage or distribution medium, does not as a whole count as a + Modified Version of the Document, provided no compilation + copyright is claimed for the compilation. Such a compilation is + called an "aggregate", and this License does not apply to the + other self-contained works thus compiled with the Document, on + account of their being thus compiled, if they are not themselves + derivative works of the Document. + + If the Cover Text requirement of section 3 is applicable to + these copies of the Document, then if the Document is less than + one quarter of the entire aggregate, the Document's Cover Texts + may be placed on covers that surround only the Document within the + aggregate. Otherwise they must appear on covers around the whole + aggregate. + + + + TRANSLATION Translation is considered a kind of modification, so you may - distribute translations of the Document under the terms of section 4. - Replacing Invariant Sections with translations requires special - permission from their copyright holders, but you may include translations - of some or all Invariant Sections in addition to the original versions of - these Invariant Sections. You may include a translation of this License - provided that you also include the original English version of this - License. In case of a disagreement between the translation and the - original English version of this License, the original English version - will prevail. -
- -
- Termination - - You may not copy, modify, sublicense, or distribute the Document - except as expressly provided for under this License. Any other attempt to - copy, modify, sublicense or distribute the Document is void, and will - automatically terminate your rights under this License. However, parties - who have received copies, or rights, from you under this License will not - have their licenses terminated so long as such parties remain in full + distribute translations of the Document under the terms of section + 4. Replacing Invariant Sections with translations requires + special permission from their copyright holders, but you may + include translations of some or all Invariant Sections in addition + to the original versions of these Invariant Sections. You may + include a translation of this License provided that you also + include the original English version of this License. In case of + a disagreement between the translation and the original English + version of this License, the original English version will + prevail. + + + + TERMINATION + + You may not copy, modify, sublicense, or distribute the + Document except as expressly provided for under this License. Any + other attempt to copy, modify, sublicense or distribute the + Document is void, and will automatically terminate your rights + under this License. However, parties who have received copies, or + rights, from you under this License will not have their licenses + terminated so long as such parties remain in full compliance. -
- -
- Future Revisions of this License - - The Free Software Foundation may publish new, revised versions of - the GNU Free Documentation License from time to time. Such new versions - will be similar in spirit to the present version, but may differ in - detail to address new problems or concerns. See - . - - Each version of the License is given a distinguishing version - number. If the Document specifies that a particular numbered version of - this License "or any later version" applies to it, you have the option of - following the terms and conditions either of that specified version or of - any later version that has been published (not as a draft) by the Free - Software Foundation. If the Document does not specify a version number of - this License, you may choose any version ever published (not as a draft) - by the Free Software Foundation. -
- -
+ + + + FUTURE REVISIONS OF THIS LICENSE + + The Free Software Foundation may publish new, revised + versions of the GNU Free Documentation License from time to time. + Such new versions will be similar in spirit to the present + version, but may differ in detail to address new problems or + concerns. See http://www.gnu.org/copyleft/. + + Each version of the License is given a distinguishing + version number. If the Document specifies that a particular + numbered version of this License "or any later version" applies to + it, you have the option of following the terms and conditions + either of that specified version or of any later version that has + been published (not as a draft) by the Free Software Foundation. + If the Document does not specify a version number of this License, + you may choose any version ever published (not as a draft) by the + Free Software Foundation. + + + How to use this License for your documents - To use this License in a document you have written, include a copy - of the License in the document and put the following copyright and - license notices just after the title page: - -
- Copyright (c) YEAR YOUR NAME. Permission is granted to copy, - distribute and/or modify this document under the terms of the GNU Free - Documentation License, Version 1.1 or any later version published by - the Free Software Foundation; with the Invariant Sections being LIST - THEIR TITLES, with the Front-Cover Texts being LIST, and with the - Back-Cover Texts being LIST. A copy of the license is included in the - section entitled "GNU Free Documentation License". -
+ To use this License in a document you have written, include + a copy of the License in the document and put the following + copyright and license notices just after the title page: + +
+ Copyright (c) YEAR YOUR NAME. + Permission is granted to copy, distribute and/or modify this document + under the terms of the GNU Free Documentation License, Version 1.1 + or any later version published by the Free Software Foundation; + with the Invariant Sections being LIST THEIR TITLES, with the + Front-Cover Texts being LIST, and with the Back-Cover Texts being LIST. + A copy of the license is included in the section entitled "GNU + Free Documentation License". +
If you have no Invariant Sections, write "with no Invariant - Sections" instead of saying which ones are invariant. If you have no - Front-Cover Texts, write "no Front-Cover Texts" instead of "Front-Cover - Texts being LIST"; likewise for Back-Cover Texts. - - If your document contains nontrivial examples of program code, we - recommend releasing these examples in parallel under your choice of free - software license, such as the GNU General Public License, to permit their - use in free software. -
+ Sections" instead of saying which ones are invariant. If you have + no Front-Cover Texts, write "no Front-Cover Texts" instead of + "Front-Cover Texts being LIST"; likewise for Back-Cover + Texts. + + If your document contains nontrivial examples of program + code, we recommend releasing these examples in parallel under your + choice of free software license, such as the GNU General Public + License, to permit their use in free software. + +
+ - diff --git a/docs/en/xml/glossary.xml b/docs/en/xml/glossary.xml index 5b6d1a6e7..71ba2dd36 100644 --- a/docs/en/xml/glossary.xml +++ b/docs/en/xml/glossary.xml @@ -1,534 +1,160 @@ - - - 0-9, high ascii - - .htaccess - - - Apache web server, and other NCSA-compliant web servers, - observe the convention of using files in directories called - .htaccess - - to restrict access to certain files. In Bugzilla, they are used - to keep secret files which would otherwise - compromise your installation - e.g. the - localconfig - file contains the password to your database. - curious. - - - - - - A - - - Apache - - - In this context, Apache is the web server most commonly used - for serving up Bugzilla - pages. Contrary to popular belief, the apache web server has nothing - to do with the ancient and noble Native American tribe, but instead - derived its name from the fact that it was - a patchy - version of the original - NCSA - world-wide-web server. - - - Useful Directives when configuring Bugzilla - - - AddHandler - - Tell Apache that it's OK to run CGI scripts. - - - - AllowOverride - Options - - These directives are used to tell Apache many things about - the directory they apply to. For Bugzilla's purposes, we need - them to allow script execution and .htaccess - overrides. - - - - - DirectoryIndex - - Used to tell Apache what files are indexes. If you can - not add index.cgi to the list of valid files, - you'll need to set $index_html to - 1 in localconfig so - ./checksetup.pl will create an - index.html that redirects to - index.cgi. - - - - - ScriptInterpreterSource - - Used when running Apache on windows so the shebang line - doesn't have to be changed in every Bugzilla script. - - - - - - For more information about how to configure Apache for Bugzilla, - see . - - - - - - - B - - - Bug - - - A - bug - - in Bugzilla refers to an issue entered into the database which has an - associated number, assignments, comments, etc. Some also refer to a - tickets - or - issues; - in the context of Bugzilla, they are synonymous. - - - - - Bug Number - - - Each Bugzilla bug is assigned a number that uniquely identifies - that bug. The bug associated with a bug number can be pulled up via a - query, or easily from the very front page by typing the number in the - "Find" box. - - - - - Bugzilla - - - Bugzilla is the world-leading free software bug tracking system. - - - - - - - C - - - Common Gateway Interface - CGI - - CGI is an acronym for Common Gateway Interface. This is - a standard for interfacing an external application with a web server. Bugzilla - is an example of a CGI application. - - - - - - Component - - - A Component is a subsection of a Product. It should be a narrow - category, tailored to your organization. All Products must contain at - least one Component (and, as a matter of fact, creating a Product - with no Components will create an error in Bugzilla). - - - - - Comprehensive Perl Archive Network - CPAN - - - - - CPAN - - stands for the - Comprehensive Perl Archive Network. - CPAN maintains a large number of extremely useful - Perl - modules - encapsulated chunks of code for performing a - particular task. - - - - - contrib - - - The contrib directory is - a location to put scripts that have been contributed to Bugzilla but - are not a part of the official distribution. These scripts are written - by third parties and may be in languages other than perl. For those - that are in perl, there may be additional modules or other requirements - than those of the official distribution. - - Scripts in the contrib - directory are not officially supported by the Bugzilla team and may - break in between versions. - - - - - - - - - D - - - daemon - - - A daemon is a computer program which runs in the background. In - general, most daemons are started at boot time via System V init - scripts, or through RC scripts on BSD-based systems. - mysqld, - the MySQL server, and - apache, - a web server, are generally run as daemons. - - + + + 0-9, high ascii + + .htaccess + + + Apache web server, and other NCSA-compliant web servers, + observe the convention of using files in directories + called .htaccess files. These + restrict parameters of the web server. In Bugzilla, they + are used to restrict access to certain files which would + otherwise compromise your installation. For instance, the + localconfig file contains the + password to your database. If this information were + generally available, and remote access to your database + turned on, you risk corruption of your database by + computer criminals or the curious. + + + + - - DOS Attack - - - A DOS, or Denial of Service attack, is when a user attempts to - deny access to a web server by repeatedly accessing a page or sending - malformed requests to a webserver. A D-DOS, or - Distributed Denial of Service attack, is when these requests come - from multiple sources at the same time. Unfortunately, these are much - more difficult to defend against. - - - + + A + + There are no entries for A + + + + + - - - - G - - - Groups - - - The word - Groups - - has a very special meaning to Bugzilla. Bugzilla's main security - mechanism comes by placing users in groups, and assigning those - groups certain privileges to view bugs in particular - Products - in the - Bugzilla - database. - - - - - - J - - - JavaScript - - JavaScript is cool, we should talk about it. - - - - - - - M - - - Message Transport Agent - MTA - - - A Message Transport Agent is used to control the flow of email on a system. - The Email::Send - Perl module, which Bugzilla uses to send email, can be configured to - use many different underlying implementations for actually sending the - mail using the parameter. - Implementations other than sendmail require that the - param be set to on. - - - - - - MySQL - - - MySQL is currently the required - RDBMS for Bugzilla. MySQL - can be downloaded from . While you - should familiarize yourself with all of the documentation, some high - points are: - - - - Backup - - Methods for backing up your Bugzilla database. - - - - - Option Files - - Information about how to configure MySQL using - my.cnf. - - - - - Privilege System - - Much more detailed information about the suggestions in - . - - - - - - - - - - P - - - Perl Package Manager - PPM - - - - - - - - - Product - - - A Product is a broad category of types of bugs, normally - representing a single piece of software or entity. In general, - there are several Components to a Product. A Product may define a - group (used for security) for all bugs entered into - its Components. - - - - - Perl - - - First written by Larry Wall, Perl is a remarkable program - language. It has the benefits of the flexibility of an interpreted - scripting language (such as shell script), combined with the speed - and power of a compiled language, such as C. - Bugzilla - - is maintained in Perl. - - - - - - Q - - - QA - - - - QA, - Q/A, and - Q.A. - are short for - Quality Assurance. - In most large software development organizations, there is a team - devoted to ensuring the product meets minimum standards before - shipping. This team will also generally want to track the progress of - bugs over their life cycle, thus the need for the - QA Contact - - field in a bug. - - - - - - R - - - Relational DataBase Management System - RDBMS - - - A relational database management system is a database system - that stores information in tables that are related to each other. - - - - - - Regular Expression - regexp - - - A regular expression is an expression used for pattern matching. - Documentation - - - - - - - S - - - Service + + B + + Bug + + + A Bug in Bugzilla refers to an issue + entered into the database which has an associated number, + assignments, comments, etc. Some also refer to a + tickets or issues; in the + context of Bugzilla, they are synonymous. + + + - - In Windows NT environment, a boot-time background application - is referred to as a service. These are generally managed through the - control panel while logged in as an account with - Administrator level capabilities. For more - information, consult your Windows manual or the MSKB. - - - - - - - SGML - - - - - SGML - - stands for - Standard Generalized Markup Language. - Created in the 1980's to provide an extensible means to maintain - documentation based upon content instead of presentation, - SGML - - has withstood the test of time as a robust, powerful language. - - XML - - - is the - baby brother - - of SGML; any valid - XML - - document it, by definition, a valid - SGML - - document. The document you are reading is written and maintained in - SGML, - and is also valid - XML - - if you modify the Document Type Definition. - - - - - - T - - - Target Milestone - - - Target Milestones are Product goals. They are configurable on a - per-Product basis. Most software development houses have a concept of - - milestones - - where the people funding a project expect certain functionality on - certain dates. Bugzilla facilitates meeting these milestones by - giving you the ability to declare by which milestone a bug will be - fixed, or an enhancement will be implemented. - - - - - Tool Command Language - TCL - - TCL is an open source scripting language available for Windows, - Macintosh, and Unix based systems. Bugzilla 1.0 was written in TCL but - never released. The first release of Bugzilla was 2.0, which was when - it was ported to perl. - - - - - - - Z - - - Zarro Boogs Found - - - This is just a goofy way of saying that there were no bugs - found matching your query. When asked to explain this message, - Terry had the following to say: - - -
- Terry Weissman - I've been asked to explain this ... way back when, when - Netscape released version 4.0 of its browser, we had a release - party. Naturally, there had been a big push to try and fix every - known bug before the release. Naturally, that hadn't actually - happened. (This is not unique to Netscape or to 4.0; the same thing - has happened with every software project I've ever seen.) Anyway, - at the release party, T-shirts were handed out that said something - like "Netscape 4.0: Zarro Boogs". Just like the software, the - T-shirt had no known bugs. Uh-huh. - - - So, when you query for a list of bugs, and it gets no results, - you can think of this as a friendly reminder. Of *course* there are - bugs matching your query, they just aren't in the bugsystem yet... - -
- -
-
-
-
- + + Bug Number + + + Each Bugzilla Bug is assigned a number that uniquely + identifies that Bug. The Bug associated with a Bug Number + can be pulled up via a query, or easily from the very + front page by typing the number in the "Find" box. + + + + + + Bug Life Cycle + + A Bug has stages through which it must pass before + becoming a closed bug, including + acceptance, resolution, and verification. The Bug + Life Cycle is moderately flexible according to + the needs of the organization using it, though. + + + + + + I + + Infinite Loop + + A loop of information that never ends; see recursion. + + + + + + P + + Product + + A Product is a broad category of types of bugs. In + general, there are several Components to a Product. A + Product also defines a default Group (used for Bug + Security) for all bugs entered into components beneath + it. + + A Sample Product + A company sells a software product called + X. They also maintain some older + software called Y, and have a secret + project Z. An effective use of Products + might be to create Products X, + Y, Z, each with Components + of User Interface, Database, and Business Logic. They + might also change group permissions so that only those + people who are members of Group Z can see + components and bugs under Product + Z. + + + + + + + Q + + QA + + QA, Q/A, and + Q.A. are short for Quality + Assurance. In most large software development + organizations, there is a team devoted to ensuring the + product meets minimum standards before shipping. This + team will also generally want to track the progress of + bugs over their life cycle, thus the need for the + QA Contact field in a Bug. + + + + + + R + + Recursion + + The property of a function looking back at itself for + something. GNU, for instance, stands for + GNU's Not UNIX, thus recursing upon itself + for definition. For further clarity, see Infinite + Loop. + + + + + + Z + + Zarro Boogs Found + + This is the cryptic response sent by Bugzilla when a + query returned no results. It is just a goofy way of + saying "Zero Bugs Found". + + + + + + - diff --git a/docs/en/xml/installation.xml b/docs/en/xml/installation.xml index 8165afd6d..dfbc35071 100644 --- a/docs/en/xml/installation.xml +++ b/docs/en/xml/installation.xml @@ -1,578 +1,633 @@ - + - - Installing Bugzilla + + Installation + + These installation instructions are presented assuming you are + installing on a UNIX or completely POSIX-compliant system. If + you are installing on Microsoft Windows or another oddball + operating system, please consult the appropriate sections in + this installation guide for notes on how to be successful. + +
+ ERRATA + Here are some miscellaneous notes about possible issues you + main run into when you begin your Bugzilla installation. + Reference platforms for Bugzilla installation are Redhat Linux + 7.2, Linux-Mandrake 8.0, and Solaris 8. -
- UNIX Installation -
- ERRATA - - - If you are installing Bugzilla on S.u.S.e. Linux, or some other - distributions with "paranoid" security options, it is possible - that the checksetup.pl script may fail with the error: - cannot chdir(/var/spool/mqueue): Permission denied - This is because your - /var/spool/mqueue directory has a mode of "drwx------". Type - chmod 755 /var/spool/mqueue as root to fix this problem. - - + + + If you are installing Bugzilla on S.u.S.e. Linux, or some + other distributions with paranoid security + options, it is possible that the checksetup.pl script may fail + with the error: cannot chdir(/var/spool/mqueue): + Permission denied This is because your + /var/spool/mqueue directory has a mode of + drwx------. Type chmod 755 + /var/spool/mqueue as root to + fix this problem. + - - - Release Notes for Bugzilla 2.12 are available at docs/rel_notes.txt - - + + Bugzilla may be installed on Macintosh OS X (10), which is a + unix-based (BSD) operating system. Everything required for + Bugzilla on OS X will install cleanly, but the optional GD + perl module which is used for bug charting requires some + additional setup for installation. Please see the Mac OS X + installation section below for details + - - - The preferred documentation for Bugzilla is available in docs/, with - a variety of document types available. Please refer to these documents when - installing, configuring, and maintaining your Bugzilla installation. - - + + Release Notes for Bugzilla &bz-ver; are available at + docs/rel_notes.txt in your Bugzilla + source distribution. + - - - Bugzilla is not a package where you can just plop it in a directory, - twiddle a few things, and you're off. Installing Bugzilla assumes you - know your variant of UNIX or Microsoft Windows well, are familiar with the - command line, and are comfortable compiling and installing a plethora - of third-party utilities. To install Bugzilla on Win32 requires - fair Perl proficiency, and if you use a webserver other than Apache you - should be intimately familiar with the security mechanisms and CGI - environment thereof. - - + + The preferred documentation for Bugzilla is available in + docs/, with a variety of document types available. Please + refer to these documents when installing, configuring, and + maintaining your Bugzilla installation. + + + + + + Bugzilla is not a package where you can just plop it in a directory, + twiddle a few things, and you're off. Installing Bugzilla assumes you + know your variant of UNIX or Microsoft Windows well, are familiar with the + command line, and are comfortable compiling and installing a plethora + of third-party utilities. To install Bugzilla on Win32 requires + fair Perl proficiency, and if you use a webserver other than Apache you + should be intimately familiar with the security mechanisms and CGI + environment thereof. + + + + + + Bugzilla has not undergone a complete security review. Security holes + may exist in the code. Great care should be taken both in the installation + and usage of this software. Carefully consider the implications of + installing other network services with Bugzilla. + + +
+ +
+ Step-by-step Install +
+ Introduction + + Installation of bugzilla is pretty straightforward, particularly if your + machine already has MySQL and the MySQL-related perl packages installed. + If those aren't installed yet, then that's the first order of business. The + other necessary ingredient is a web server set up to run cgi scripts. + While using Apache for your webserver is not required, it is recommended. + - - - Bugzilla has not undergone a complete security review. Security holes - may exist in the code. Great care should be taken both in the installation - and usage of this software. Carefully consider the implications of - installing other network services with Bugzilla. - - -
- -
- Step-by-step Install -
- Introduction - - Installation of bugzilla is pretty straightforward, particularly if your - machine already has MySQL and the MySQL-related perl packages installed. - If those aren't installed yet, then that's the first order of business. The - other necessary ingredient is a web server set up to run cgi scripts. - While using Apache for your webserver is not required, it is recommended. - - - - Bugzilla has been successfully installed under Solaris, Linux, and - Win32. The peculiarities of installing on Win32 (Win98+/NT/2K) are not - included in this section of the Guide; please check out the "Win32 Installation Instructions" - for further advice on getting Bugzilla to work on Microsoft Windows. - - - - The Bugzilla Guide is contained in the "docs/" folder. It is available - in plain text (docs/txt), HTML (docs/html), or SGML source (docs/sgml). - -
-
- Installing the Prerequisites - - - The software packages necessary for the proper running of bugzilla are: - - - - MySQL database server and the mysql client (3.22.5 or greater) - - - - - Perl (5.004 or greater) - - - - - DBI Perl module - - - - - Data::Dumper Perl module - - - - - DBD::mySQL - - - - - TimeDate Perl module collection - - - - - GD perl module (1.8.3) (optional, for bug charting) - - - - - Chart::Base Perl module (0.99c) (optional, for bug charting) - - - - - DB_File Perl module (optional, for bug charting) - - - - - The web server of your choice. Apache is recommended. - - - - - MIME::Parser Perl module (optional, for contrib/bug_email.pl interface) - - - - - - You must run Bugzilla on a filesystem that supports file locking via - flock(). This is necessary for Bugzilla to operate safely with multiple - instances. - - - - - It is a good idea, while installing Bugzilla, to ensure it is not - accessible by other machines on the Internet. - Your machine may be vulnerable to attacks - while you are installing. In other words, ensure there is some kind of firewall between you - and the rest of the Internet. Many installation steps require an active Internet connection - to complete, but you must take care to ensure that at no point is your machine vulnerable - to an attack. - - - - -
-
- Installing MySQL Database - - Visit MySQL homepage at http://www.mysql.org/ and grab the latest stable - release of the server. Both binaries and source are available and which - you get shouldn't matter. Be aware that many of the binary versions - of MySQL store their data files in /var which on many installations - (particularly common with linux installations) is part of a smaller - root partition. If you decide to build from sources you can easily set - the dataDir as an option to configure. - - - If you've installed from source or non-package (RPM, deb, etc.) binaries - you'll want to make sure to add mysqld to your init scripts so the server - daemon will come back up whenever your machine reboots. - You also may want to edit those init scripts, to make sure that - mysqld will accept large packets. By default, mysqld is set up to only - accept packets up to 64K long. This limits the size of attachments you - may put on bugs. If you add something like "-O max_allowed_packet=1M" - to the command that starts mysqld (or safe_mysqld), then you will be - able to have attachments up to about 1 megabyte. - - - - If you plan on running Bugzilla and MySQL on the same machine, - consider using the "--skip-networking" option in the init script. - This enhances security by preventing network access to MySQL. - - -
- -
- Perl (5.004 or greater) - - Any machine that doesn't have perl on it is a sad machine indeed. Perl - for *nix systems can be gotten in source form from http://www.perl.com. - - - Perl is now a far cry from the the single compiler/interpreter binary it - once was. It now includes a great many required modules and quite a - few other support files. If you're not up to or not inclined to build - perl from source, you'll want to install it on your machine using some - sort of packaging system (be it RPM, deb, or what have you) to ensure - a sane install. In the subsequent sections you'll be installing quite - a few perl modules; this can be quite ornery if your perl installation - isn't up to snuff. - - - - You can skip the following Perl module installation - steps by installing "Bundle::Bugzilla" from CPAN, which includes them. - All Perl module installation steps require you have an active Internet - connection. - - - - bash# - perl -MCPAN -e 'install "Bundle::Bugzilla"' - - - - Bundle::Bugzilla doesn't include GD, Chart::Base, or MIME::Parser, - which are not essential to a basic Bugzilla install. If installing - this bundle fails, you should install each module individually to - isolate the problem. - - -
- -
- DBI Perl Module - - The DBI module is a generic Perl module used by other database related - Perl modules. For our purposes it's required by the MySQL-related - modules. As long as your Perl installation was done correctly the - DBI module should be a breeze. It's a mixed Perl/C module, but Perl's - MakeMaker system simplifies the C compilation greatly. - - - Like almost all Perl modules DBI can be found on the Comprehensive Perl - Archive Network (CPAN) at http://www.cpan.org. The CPAN servers have a - real tendency to bog down, so please use mirrors. The current location - at the time of this writing (02/17/99) can be found in Appendix A. - - - Quality, general Perl module installation instructions can be found on - the CPAN website, but the easy thing to do is to just use the CPAN shell - which does all the hard work for you. - - - To use the CPAN shell to install DBI: - - - - bash# - perl -MCPAN -e 'install "DBI"' - - - Replace "DBI" with the name of whichever module you wish - to install, such as Data::Dumper, TimeDate, GD, etc. - - - - To do it the hard way: - - - Untar the module tarball -- it should create its own directory - - - CD to the directory just created, and enter the following commands: - - - - - bash# - perl Makefile.PL - - - - - - - bash# - make - - - - - - - bash# - make test - - - - - - - bash# - make install - - - - - If everything went ok that should be all it takes. For the vast - majority of perl modules this is all that's required. - - - -
-
- Data::Dumper Perl Module - - The Data::Dumper module provides data structure persistence for Perl - (similar to Java's serialization). It comes with later sub-releases of - Perl 5.004, but a re-installation just to be sure it's available won't - hurt anything. - - - Data::Dumper is used by the MySQL related Perl modules. It can be - found on CPAN (link in Appendix A) and can be installed by following - the same four step make sequence used for the DBI module. - -
+ + Bugzilla has been successfully installed under Solaris, Linux, + and Win32. The peculiarities of installing on Win32 (Microsoft + Windows) are not included in this section of the Guide; please + check out the for further advice + on getting Bugzilla to work on Microsoft Windows. + + + + The Bugzilla Guide is contained in the "docs/" folder in your + Bugzilla distribution. It is available in plain text + (docs/txt), HTML (docs/html), or SGML source (docs/sgml). + +
+
+ Installing the Prerequisites + + If you want to skip these manual installation steps for + the CPAN dependencies listed below, and are running the very + most recent version of Perl and MySQL (both the executables + and development libraries) on your system, check out + Bundle::Bugzilla in + + + The software packages necessary for the proper running of bugzilla are: + + + + MySQL database server and the mysql client (3.22.5 or greater) + + + + + Perl (5.004 or greater, 5.6.1 is recommended if you wish + to use Bundle::Bugzilla) + + + + + DBI Perl module + + + + + Data::Dumper Perl module + + + + + Bundle::Mysql Perl module collection + + + + + TimeDate Perl module collection + + + + + GD perl module (1.8.3) (optional, for bug charting) + + + + + Chart::Base Perl module (0.99c) (optional, for bug charting) + + + + + DB_File Perl module (optional, for bug charting) + + + + + The web server of your choice. Apache is recommended. + + + + + MIME::Parser Perl module (optional, for contrib/bug_email.pl interface) + + + -
- MySQL related Perl Module Collection - - The Perl/MySQL interface requires a few mutually-dependent perl - modules. These modules are grouped together into the the - Msql-Mysql-modules package. This package can be found at CPAN. - After the archive file has been downloaded it should - be untarred. - - - The MySQL modules are all built using one make file which is generated - by running: - bash# - perl Makefile.pl - - - The MakeMaker process will ask you a few questions about the desired - compilation target and your MySQL installation. For many of the questions - the provided default will be adequate. - - - When asked if your desired target is the MySQL or mSQL packages - selected the MySQL related ones. Later you will be asked if you wish - to provide backwards compatibility with the older MySQL packages; you - must answer YES to this question. The default will be no, and if you - select it things won't work later. - - + + + It is a good idea, while installing Bugzilla, to ensure it + is not accessible by other machines + on the Internet. Your machine may be vulnerable to attacks + while you are installing. In other words, ensure there is + some kind of firewall between you and the rest of the + Internet. Many installation steps require an active + Internet connection to complete, but you must take care to + ensure that at no point is your machine vulnerable to an + attack. + + + + +
+
+ Installing MySQL Database + + Visit MySQL homepage at http://www.mysql.com/ and grab the + latest stable release of the server. Both binaries and source + are available and which you get shouldn't matter. Be aware + that many of the binary versions of MySQL store their data + files in /var which on many installations (particularly common + with linux installations) is part of a smaller root partition. + If you decide to build from sources you can easily set the + dataDir as an option to configure. + + + If you've installed from source or non-package (RPM, deb, + etc.) binaries you'll want to make sure to add mysqld to your + init scripts so the server daemon will come back up whenever + your machine reboots. You also may want to edit those init + scripts, to make sure that mysqld will accept large packets. + By default, mysqld is set up to only accept packets up to 64K + long. This limits the size of attachments you may put on + bugs. If you add something like "-O max_allowed_packet=1M" to + the command that starts mysqld (or safe_mysqld), then you will + be able to have attachments up to about 1 megabyte. + + + + If you plan on running Bugzilla and MySQL on the same + machine, consider using the "--skip-networking" option in + the init script. This enhances security by preventing + network access to MySQL. + + +
+ +
+ Perl (5.004 or greater) + + Any machine that doesn't have perl on it is a sad machine + indeed. Perl for *nix systems can be gotten in source form + from http://www.perl.com. Although Bugzilla runs with most + post-5.004 versions of Perl, it's a good idea to be up to the + very latest version if you can when running Bugzilla. As of + this writing, that is perl version &perl-ver;. + + + Perl is now a far cry from the the single compiler/interpreter + binary it once was. It includes a great many required modules + and quite a few other support files. If you're not up to or + not inclined to build perl from source, you'll want to install + it on your machine using some sort of packaging system (be it + RPM, deb, or what have you) to ensure a sane install. In the + subsequent sections you'll be installing quite a few perl + modules; this can be quite ornery if your perl installation + isn't up to snuff. + + + Many people complain that Perl modules will not install + for them. Most times, the error messages complain that they + are missing a file in @INC. Virtually every + time, this is due to permissions being set too restrictively + for you to compile Perl modules or not having the necessary + Perl development libraries installed on your system.. + Consult your local UNIX systems administrator for help + solving these permissions issues; if you + are the local UNIX sysadmin, please + consult the newsgroup/mailing list for further assistance or + hire someone to help you out. + + + + + You can skip the following Perl module installation steps by + installing "Bundle::Bugzilla" from CPAN, which includes + them. All Perl module installation steps require you have an + active Internet connection. If you wish to use + Bundle::Bugzilla, however, you must be using the latest + version of Perl (at this writing, version &perl-ver;) + + + bash# perl -MCPAN + -e 'install "Bundle::Bugzilla"' + + + + Bundle::Bugzilla doesn't include GD, Chart::Base, or + MIME::Parser, which are not essential to a basic Bugzilla + install. If installing this bundle fails, you should + install each module individually to isolate the problem. + + +
+ +
+ DBI Perl Module + + The DBI module is a generic Perl module used by other database related + Perl modules. For our purposes it's required by the MySQL-related + modules. As long as your Perl installation was done correctly the + DBI module should be a breeze. It's a mixed Perl/C module, but Perl's + MakeMaker system simplifies the C compilation greatly. + + + Like almost all Perl modules DBI can be found on the Comprehensive Perl + Archive Network (CPAN) at http://www.cpan.org. The CPAN servers have a + real tendency to bog down, so please use mirrors. The current location + at the time of this writing (02/17/99) can be found in Appendix A. + + + Quality, general Perl module installation instructions can be found on + the CPAN website, but the easy thing to do is to just use the CPAN shell + which does all the hard work for you. + + + To use the CPAN shell to install DBI: + + + + bash# + perl -MCPAN -e 'install "DBI"' + + + Replace "DBI" with the name of whichever module you wish + to install, such as Data::Dumper, TimeDate, GD, etc. + + + + To do it the hard way: + + + Untar the module tarball -- it should create its own directory + + + CD to the directory just created, and enter the following commands: + + + + + bash# + perl Makefile.PL + + + + + + + bash# + make + + + + + + + bash# + make test + + + + + + + bash# + make install + + + + + If everything went ok that should be all it takes. For the vast + majority of perl modules this is all that's required. + + + +
+
+ Data::Dumper Perl Module + + The Data::Dumper module provides data structure persistence for Perl + (similar to Java's serialization). It comes with later sub-releases of + Perl 5.004, but a re-installation just to be sure it's available won't + hurt anything. + + + Data::Dumper is used by the MySQL-related Perl modules. It can be + found on CPAN (link in Appendix A) and can be installed by following + the same four step make sequence used for the DBI module. + +
+ +
+ MySQL related Perl Module Collection + + The Perl/MySQL interface requires a few mutually-dependent perl + modules. These modules are grouped together into the the + Msql-Mysql-modules package. This package can be found at CPAN. + After the archive file has been downloaded it should + be untarred. + + + The MySQL modules are all built using one make file which is generated + by running: + bash# + perl Makefile.pl + + + The MakeMaker process will ask you a few questions about the desired + compilation target and your MySQL installation. For many of the questions + the provided default will be adequate. + + + When asked if your desired target is the MySQL or mSQL packages, + select the MySQL related ones. Later you will be asked if you wish + to provide backwards compatibility with the older MySQL packages; you + should answer YES to this question. The default is NO. + + A host of 'localhost' should be fine and a testing user of 'test' and a null password should find itself with sufficient access to run tests on the 'test' database which MySQL created upon installation. If 'make test' and 'make install' go through without errors you should be ready to go as far as database connectivity is concerned. - -
+
+
-
- TimeDate Perl Module Collection - +
+ TimeDate Perl Module Collection + Many of the more common date/time/calendar related Perl modules have been grouped into a bundle similar to the MySQL modules bundle. This - bundle is stored on the CPAN under the name TimeDate. A (hopefully - current) link can be found in Appendix A. The component module we're + bundle is stored on the CPAN under the name TimeDate. A link + link may be found in Appendix B, Software Download Links. + The component module we're most interested in is the Date::Format module, but installing all of them is probably a good idea anyway. The standard Perl module installation instructions should work perfectly for this simple package. - -
-
- GD Perl Module (1.8.3) - + +
+
+ GD Perl Module (1.8.3) + The GD library was written by Thomas Boutell a long while ago to programatically generate images in C. Since then it's become almost a defacto standard for programatic image construction. The Perl bindings to it found in the GD library are used on a million web pages to generate graphs on the fly. That's what bugzilla will be using it for so you'd better install it if you want any of the graphing to work. - - + + Actually bugzilla uses the Graph module which relies on GD itself, but isn't that always the way with OOP. At any rate, you can find the - GD library on CPAN (link in Appendix "Required Software"). - - - + GD library on CPAN (link in Appendix B, Software Download Links). + + + The Perl GD library requires some other libraries that may or may not be installed on your system, including "libpng" and "libgd". The full requirements are listed in the Perl GD library README. Just realize that if compiling GD fails, it's probably because you're missing a required library. - - -
+
+ +
-
- Chart::Base Perl Module (0.99c) - +
+ Chart::Base Perl Module (0.99c) + The Chart module provides bugzilla with on-the-fly charting abilities. It can be installed in the usual fashion after it has been fetched from CPAN where it is found as the Chart-x.x... tarball in a - directory to be listed in Appendix "Required Software". Note that as with the GD perl - module, only the specific versions listed above (or newer) will work. Earlier + directory to be listed in Appendix B, "Software Download Links". + Note that as with the GD perl + module, only the version listed above, or newer, will work. + Earlier versions used GIF's, which are no longer supported by the latest versions of GD. - -
+
+
-
- DB_File Perl Module - +
+ DB_File Perl Module + DB_File is a module which allows Perl programs to make use of the facilities provided by Berkeley DB version 1.x. This module is required by collectstats.pl which is used for bug charting. If you plan to make use of bug charting, you must install this module. - -
+
+
-
- HTTP Server - +
+ HTTP Server + You have a freedom of choice here - Apache, Netscape or any other server on UNIX would do. You can easily run the web server on a different machine than MySQL, but need to adjust the MySQL "bugs" user permissions accordingly. - - + + You'll want to make sure that your web server will run any file with the .cgi extension as a cgi and not just display it. If you're using apache that means uncommenting the following line in the srm.conf file: - AddHandler cgi-script .cgi - - + AddHandler cgi-script .cgi + + With apache you'll also want to make sure that within the access.conf file the line: - + Options ExecCGI - + is in the stanza that covers the directories you intend to put the bugzilla .html and .cgi files into. - - + + If you are using a newer version of Apache, both of the above lines will be (or will need to be) in the httpd.conf file, rather than srm.conf or access.conf. - - - + + + There are two critical directories and a file that should not be a served by - the HTTP server. These are the 'data' and 'shadow' directories and the - 'localconfig' file. You should configure your HTTP server to not serve + the HTTP server. These are the data and shadow + directories and the + localconfig file. You should configure your HTTP server to not serve content from these files. Failure to do so will expose critical passwords - and other data. Please see your HTTP server configuration manual on how - to do this. If you use quips (at the top of the buglist pages) you will want - the 'data/comments' file to still be served. This file contains those quips. - - -
+ and other data. Please see for details. +
+ +
-
- Installing the Bugzilla Files - +
+ Installing the Bugzilla Files + You should untar the Bugzilla files into a directory that you're willing to make writable by the default web server user (probably - 'nobody'). You may decide to put the files off of the main web space + nobody). You may decide to put the files off of the main web space for your web server or perhaps off of /usr/local with a symbolic link in the web space that points to the bugzilla directory. At any rate, just dump all the files in the same place (optionally omitting the CVS directories if they were accidentally tarred up with the rest of Bugzilla) and make sure you can access the files in that directory through your web server. - - - + + + If you symlink the bugzilla directory into your Apache's HTML heirarchy, you may receive "Forbidden" errors unless you add the "FollowSymLinks" directive to the <Directory> entry for the HTML root. - - - + + + Once all the files are in a web accessible directory, make that directory writable by your webserver's user (which may require just making it world writable). This is a temporary step until you run - the post-install "checksetup.pl" script, which locks down your + the post-install checksetup.pl script, which locks down your installation. - - + + Lastly, you'll need to set up a symbolic link to /usr/bonsaitools/bin/perl for the correct location of your perl executable (probably /usr/bin/perl). Otherwise you must hack all the .cgi files to change where they look for perl. To make future upgrades easier, you should use the symlink approach. - - Setting up bonsaitools symlink - + + Setting up bonsaitools symlink + Here's how you set up the Perl symlink on Linux to make Bugzilla work. Your mileage may vary; if you are running on Solaris, you probably need to subsitute - "/usr/local/bin/perl" for "/usr/bin/perl" below; if on certain other UNIX systems, - Perl may live in weird places like "/opt/perl". As root, run these commands: - + /usr/local/bin/perl for /usr/bin/perl + below; if on certain other UNIX systems, + Perl may live in weird places like /opt/perl. As root, run these commands: + bash# mkdir /usr/bonsaitools bash# mkdir /usr/bonsaitools/bin bash# ln -s /usr/bin/perl /usr/bosaitools/bin/perl - - - - - - If you don't have root access to set this symlink up, check out the - "setperl.csh" utility, listed in the Patches section of this - Guide. It will change the path to perl in all your Bugzilla files for - you. - - - -
+ +
+ + + + If you don't have root access to set this symlink up, + check out the + , listed in . + It will change the path to perl in all your Bugzilla files for you. + + + +
-
- Setting Up the MySQL Database - +
+ Setting Up the MySQL Database + After you've gotten all the software installed and working you're ready to start preparing the database for its life as a the back end to a high quality bug tracker. - - + + First, you'll want to fix MySQL permissions to allow access from Bugzilla. For the purpose of this Installation section, the Bugzilla username - will be "bugs", and will have minimal permissions. Bugzilla has - not undergone a thorough security audit. It may be possible for - a system cracker to somehow trick Bugzilla into executing a command - such as "; DROP DATABASE mysql". - - - That would be bad. - - + will be "bugs", and will have minimal permissions. + + + + Bugzilla has not undergone a thorough security audit. It + may be possible for a system cracker to somehow trick + Bugzilla into executing a command such as DROP + DATABASE mysql. + + That would be bad. + + + + Give the MySQL root user a password. MySQL passwords are limited to 16 characters. - - - - bash# - mysql -u root mysql - - - - - mysql> - + + + + bash# + mysql -u root mysql + + + + + mysql> + UPDATE user SET Password=PASSWORD ('new_password') WHERE user='root'; - - - - - - mysql> - FLUSH PRIVILEGES; - - - + + + + + + mysql> + FLUSH PRIVILEGES; + + + From this point on, if you need to access MySQL as the MySQL root user, you will need to use "mysql -u root -p" and enter your new_password. Remember that MySQL user names have nothing to do with Unix user names (login names). - - + + Next, we create the "bugs" user, and grant sufficient permissions for checksetup.pl, which we'll use later, to work its magic. This also restricts the "bugs" user to operations @@ -580,755 +635,1091 @@ bash# ln -s /usr/bin/perl /usr/bosaitools/bin/perl to connect from "localhost". Modify it to reflect your setup if you will be connecting from another machine or as a different user. - - + + Remember to set bugs_password to some unique password. - - - - mysql> - GRANT SELECT,INSERT,UPDATE,DELETE,INDEX, + + + + mysql> + GRANT SELECT,INSERT,UPDATE,DELETE,INDEX, ALTER,CREATE,DROP,REFERENCES ON bugs.* TO bugs@localhost - IDENTIFIED BY 'bugs_password'; - - - - - + IDENTIFIED BY 'bugs_password'; + + + + + mysql> - - + + FLUSH PRIVILEGES; - - - - - - + + + + + + Next, run the magic checksetup.pl script. (Many thanks to Holger Schurig <holgerschurig@nikocity.de> for writing this script!) It will make sure Bugzilla files and directories have reasonable permissions, set up the "data" directory, and create all the MySQL tables. - - - - bash# - ./checksetup.pl - - - + + + + bash# + ./checksetup.pl + + + The first time you run it, it will create a file called "localconfig". - -
+
+
-
- Tweaking "localconfig" - +
+ Tweaking "localconfig" + This file contains a variety of settings you may need to tweak including how Bugzilla should connect to the MySQL database. - - + + The connection settings include: - - - + + + server's host: just use "localhost" if the MySQL server is local - - - - + + + + database name: "bugs" if you're following these directions - - - - + + + + MySQL username: "bugs" if you're following these directions - - - - + + + + Password for the "bugs" MySQL account above - - - - - + + + + + + You may also install .htaccess files that the Apache webserver will use + to restrict access to Bugzilla data files. See . + + Once you are happy with the settings, re-run checksetup.pl. On this second run, it will create the database and an administrator account for which you will be prompted to provide information. - - + + When logged into an administrator account once Bugzilla is running, if you go to the query page (off of the bugzilla main menu), you'll find an 'edit parameters' option that is filled with editable treats. - - + + Should everything work, you should have a nearly empty copy of the bug tracking setup. - - + + The second time around, checksetup.pl will stall if it is on a filesystem that does not fully support file locking via flock(), such as NFS mounts. This support is required for Bugzilla to operate safely with multiple instances. If flock() is not fully supported, it will stall at: - Now regenerating the shadow database for all bugs. - - + Now regenerating the shadow database for all bugs. + + The second time you run checksetup.pl, you should become the - user your web server runs as, and that you ensure you have set the - "webservergroup" parameter in localconfig to match the web server's group - name, if any. I believe, for the next release of Bugzilla, this will - be fixed so that Bugzilla supports a "webserveruser" parameter in localconfig + user your web server runs as, and that you ensure that you set the + "webservergroup" parameter in localconfig to match the web + server's group + name, if any. I believe, for the next release of Bugzilla, + this will + be fixed so that Bugzilla supports a "webserveruser" parameter + in localconfig as well. - - Running checksetup.pl as the web user - - Assuming your web server runs as user "apache", and Bugzilla is installed in - "/usr/local/bugzilla", here's one way to run checksetup.pl as the web server user. - As root, for the second run of checksetup.pl, do this: - + + Running checksetup.pl as the web user + + Assuming your web server runs as user "apache", + and Bugzilla is installed in + "/usr/local/bugzilla", here's one way to run checksetup.pl + as the web server user. + As root, for the second run + of checksetup.pl, do this: + bash# chown -R apache:apache /usr/local/bugzilla bash# su - apache bash# cd /usr/local/bugzilla bash# ./checksetup.pl - - - - - - - - - The checksetup.pl script is designed so that you can run it at any time - without causing harm. You should run it after any upgrade to Bugzilla. - - -
- -
- Setting Up Maintainers Manually (Optional) - - If you want to add someone else to every group by hand, you can do it - by typing the appropriate MySQL commands. Run ' - mysql -u root -p bugs' - (you may need different parameters, depending on your security settings - according to section 3, above). Then: - - - - mysql> - update profiles set groupset=0x7fffffffffffffff - where login_name = 'XXX'; - - - - replacing XXX with the Bugzilla email address. - -
+ +
+ + + + + + + The checksetup.pl script is designed so that you can run + it at any time without causing harm. You should run it + after any upgrade to Bugzilla. + + +
-
- The Whining Cron (Optional) - - By now you've got a fully functional bugzilla, but what good are bugs - if they're not annoying? To help make those bugs more annoying you can - set up bugzilla's automatic whining system. This can be done by adding - the following command as a daily crontab entry (for help on that see that - crontab man page): - - - - cd <your-bugzilla-directory> ; ./whineatnews.pl - - - - -
+
+ Setting Up Maintainers Manually (Optional) + + If you want to add someone else to every group by hand, you + can do it by typing the appropriate MySQL commands. Run + ' mysql -u root -p bugs' You + may need different parameters, depending on your security + settings. Then: + + + mysql> update + profiles set groupset=0x7fffffffffffffff where + login_name = 'XXX'; + + replacing XXX with the Bugzilla email address. + +
-
- Bug Graphs (Optional) - - As long as you installed the GD and Graph::Base Perl modules you might - as well turn on the nifty bugzilla bug reporting graphs. - - - Add a cron entry like this to run collectstats daily at 5 after midnight: - - - - bash# - crontab -e - - - - - 5 0 * * * cd <your-bugzilla-directory> ; ./collectstats.pl - - - - - - After two days have passed you'll be able to view bug graphs from the - Bug Reports page. - -
+
+ The Whining Cron (Optional) + + By now you have a fully functional bugzilla, but what good + are bugs if they're not annoying? To help make those bugs + more annoying you can set up bugzilla's automatic whining + system. This can be done by adding the following command as a + daily crontab entry (for help on that see that crontab man + page): + + + cd + <your-bugzilla-directory> ; + ./whineatnews.pl + + + + + + Depending on your system, crontab may have several manpages. + The following command should lead you to the most useful + page for this purpose: + + man 5 crontab + + + +
+ +
+ Bug Graphs (Optional) + + As long as you installed the GD and Graph::Base Perl modules + you might as well turn on the nifty bugzilla bug reporting + graphs. + + + Add a cron entry like this to run collectstats daily at 5 + after midnight: + + + bash# crontab + -e + + + 5 0 * * * cd + <your-bugzilla-directory> ; ./collectstats.pl + + + + + + After two days have passed you'll be able to view bug graphs + from the Bug Reports page. + +
+ +
+ Securing MySQL + + If you followed the installation instructions for setting up + your "bugs" and "root" user in MySQL, much of this should not + apply to you. If you are upgrading an existing installation + of Bugzilla, you should pay close attention to this section. + + + Most MySQL installs have "interesting" default security parameters: + + mysqld defaults to running as root + it defaults to allowing external network connections + it has a known port number, and is easy to detect + it defaults to no passwords whatsoever + it defaults to allowing "File_Priv" + + + + This means anyone from anywhere on the internet can not only + drop the database with one SQL command, and they can write as + root to the system. + + + To see your permissions do: + + + + bash# + mysql -u root -p + + + + + mysql> + use mysql; + + + + + mysql> + show tables; + + + + + mysql> + select * from user; + + + + + mysql> + select * from db; + + + + + + To fix the gaping holes: + + DELETE FROM user WHERE User=''; + UPDATE user SET Password=PASSWORD('new_password') WHERE user='root'; + FLUSH PRIVILEGES; + + + + If you're not running "mit-pthreads" you can use: + + GRANT USAGE ON *.* TO bugs@localhost; + GRANT ALL ON bugs.* TO bugs@localhost; + REVOKE DROP ON bugs.* FROM bugs@localhost; + FLUSH PRIVILEGES; + + + + With "mit-pthreads" you'll need to modify the "globals.pl" Mysql->Connect + line to specify a specific host name instead of "localhost", and accept + external connections: + + GRANT USAGE ON *.* TO bugs@bounce.hop.com; + GRANT ALL ON bugs.* TO bugs@bounce.hop.com; + REVOKE DROP ON bugs.* FROM bugs@bounce.hop.com; + FLUSH PRIVILEGES; + + + + Use .htaccess files with the Apache webserver to secure your + bugzilla install. See + + + Consider also: + + + + Turning off external networking with "--skip-networking", + unless you have "mit-pthreads", in which case you can't. + Without networking, MySQL connects with a Unix domain socket. + + + + + using the --user= option to mysqld to run it as an unprivileged + user. + + + + + starting MySQL in a chroot jail + + + + + running the httpd in a "chrooted" jail + + + + + making sure the MySQL passwords are different from the OS + passwords (MySQL "root" has nothing to do with system "root"). + + + + + running MySQL on a separate untrusted machine + + + + + making backups ;-) + + + + +
+
+
+ Mac OS X Installation Notes + + There are a lot of common libraries and utilities out there + that Apple did not include with Mac OS X, but which run + perfectly well on it. The GD library, which Bugzilla needs to + do bug graphs, is one of these. + + + The easiest way to get a lot of these is with a program called + Fink, which is similar in nature to the CPAN installer, but + installs common GNU utilities. Fink is available from + <http://sourceforge.net/projects/fink/>. + + + Follow the instructions for setting up Fink. Once it's + installed, you'll want to run the following as root: + fink install gd + + + It will prompt you for a number of dependencies, type 'y' and + hit enter to install all of the dependencies. Then watch it + work. + + + To prevent creating conflicts with the software that Apple + installs by default, Fink creates its own directory tree at + /sw where it installs most of the software that it installs. + This means your libraries and headers for libgd will be at + /sw/lib and /sw/include instead of /usr/lib and + /usr/local/include. Because of these changed locations for + the libraries, the Perl GD module will not install directly + via CPAN (it looks for the specific paths instead of getting + them from your environment). But there's a way around that + :-) + + + Instead of typing install GD at the + cpan> prompt, type look + GD. This should go through the motions of + downloading the latest version of the GD module, then it will + open a shell and drop you into the build directory. Apply the + following patch to the Makefile.PL file (save the patch into a + file and use the command patch < + patchfile: + + + + PATHS: CHECK AND ADJUST <===== +-my @INC = qw(-I/usr/local/include -I/usr/local/include/gd); +-my @LIBPATH = qw(-L/usr/lib/X11 -L/usr/X11R6/lib -L/usr/X11/lib -L/usr/local/lib ); ++my @INC = qw(-I/sw/include -I/sw/include/gd -I/usr/local/include -I/usr/local/include/gd); ++my @LIBPATH = qw(-L/usr/lib/X11 -L/usr/X11R6/lib -L/usr/X11/lib -L/sw/lib -L/usr/local/lib); + my @LIBS = qw(-lgd -lpng -lz); + + # FEATURE FLAGS +@@ -23,7 +23,7 @@ + + push @LIBS,'-lttf' if $TTF; + push @LIBS,'-ljpeg' if $JPEG; +-push @LIBS, '-lm' unless $^O eq 'MSWin32'; ++push @LIBS, '-lm' unless ($^O =~ /^MSWin32|darwin$/); + + # FreeBSD 3.3 with libgd built from ports croaks if -lXpm is specified + if ($^O ne 'freebsd' && $^O ne 'MSWin32') { -
- Securing MySQL - - If you followed the README for setting up your "bugs" and "root" user in - MySQL, much of this should not apply to you. If you are upgrading - an existing installation of Bugzilla, you should pay close attention - to this section. - - - Most MySQL installs have "interesting" default security parameters: - - mysqld defaults to running as root - it defaults to allowing external network connections - it has a known port number, and is easy to detect - it defaults to no passwords whatsoever - it defaults to allowing "File_Priv" - - - - This means anyone from anywhere on the internet can not only drop the - database with one SQL command, and they can write as root to the system. - - - To see your permissions do: - - - - bash# - mysql -u root -p - - - - - mysql> - use mysql; - - - - - mysql> - show tables; - - - - - mysql> - select * from user; - - - - - mysql> - select * from db; - - - - - - To fix the gaping holes: - - DELETE FROM user WHERE User=''; - UPDATE user SET Password=PASSWORD('new_password') WHERE user='root'; - FLUSH PRIVILEGES; - - - - If you're not running "mit-pthreads" you can use: - - GRANT USAGE ON *.* TO bugs@localhost; - GRANT ALL ON bugs.* TO bugs@localhost; - REVOKE DROP ON bugs.* FROM bugs@localhost; - FLUSH PRIVILEGES; - - - - With "mit-pthreads" you'll need to modify the "globals.pl" Mysql->Connect - line to specify a specific host name instead of "localhost", and accept - external connections: - - GRANT USAGE ON *.* TO bugs@bounce.hop.com; - GRANT ALL ON bugs.* TO bugs@bounce.hop.com; - REVOKE DROP ON bugs.* FROM bugs@bounce.hop.com; - FLUSH PRIVILEGES; - - - - Consider also: - - - - Turning off external networking with "--skip-networking", - unless you have "mit-pthreads", in which case you can't. - Without networking, MySQL connects with a Unix domain socket. - - - - - using the --user= option to mysqld to run it as an unprivileged - user. - - - - - starting MySQL in a chroot jail - - - - - running the httpd in a "chrooted" jail - - - - - making sure the MySQL passwords are different from the OS - passwords (MySQL "root" has nothing to do with system "root"). - - - - - running MySQL on a separate untrusted machine - - - - - making backups ;-) - - - - -
- -
- Installation General Notes -
- Modifying Your Running System - - Bugzilla optimizes database lookups by storing all relatively static - information in the versioncache file, located in the data/ subdirectory - under your installation directory (we said before it needs to be writable, - right?!) - - - If you make a change to the structural data in your database (the - versions table for example), or to the "constants" encoded in - defparams.pl, you will need to remove the cached content from the data - directory (by doing a "rm data/versioncache"), or your changes won't show - up! - - - That file gets automatically regenerated whenever it's more than an - hour old, so Bugzilla will eventually notice your changes by itself, but - generally you want it to notice right away, so that you can test things. - -
-
- Upgrading From Previous Versions - - The developers of Bugzilla are constantly adding new tables, columns and - fields. You'll get SQL errors if you just update the code. The strategy - to update is to simply always run the checksetup.pl script whenever - you upgrade your installation of Bugzilla. If you want to see what has - changed, you can read the comments in that file, starting from the end. - -
-
- UNIX Installation Instructions History - - This document was originally adapted from the Bonsai installation - instructions by Terry Weissman <terry@mozilla.org>. - - - The February 25, 1999 re-write of this page was done by Ry4an Brase - <ry4an@ry4an.org>, with some edits by Terry Weissman, Bryce Nesbitt, - Martin Pool, & Dan Mosedale (But don't send bug reports to them! - Report them using bugzilla, at http://bugzilla.mozilla.org/enter_bug.cgi , - project Webtools, component Bugzilla). - - - This document was heavily modified again Wednesday, March 07 2001 to - reflect changes for Bugzilla 2.12 release by Matthew P. Barnson. The - securing MySQL section should be changed to become standard procedure - for Bugzilla installations. - - - Finally, the README in its entirety was marked up in SGML and included into - the Guide on April 24, 2001. - - - Comments from people using this Guide for the first time are particularly welcome. - -
-
- -
-
+]]> + + + + Then, run these commands to finish the installation of the perl module: + + perl Makefile.PL + make + make test + make install + And don't forget to run exit to get back to cpan. + + + + Happy Hacking! + +
+ +
+ BSD Installation Notes + + For instructions on how to set up Bugzilla on FreeBSD, NetBSD, OpenBSD, BSDi, etc. please + consult . + +
+ + +
+ Installation General Notes +
+ Modifying Your Running System + + Bugzilla optimizes database lookups by storing all relatively static + information in the versioncache file, located in the data/ subdirectory + under your installation directory. + + + If you make a change to the structural data in your database + (the versions table for example), or to the + constants encoded in defparams.pl, you will + need to remove the cached content from the data directory + (by doing a rm data/versioncache), or your + changes won't show up. + + + That file gets automatically regenerated whenever it's more than an + hour old, so Bugzilla will eventually notice your changes by itself, but + generally you want it to notice right away, so that you can test things. + +
+
+ Upgrading From Previous Versions + + The developers of Bugzilla are constantly adding new tables, columns and + fields. You'll get SQL errors if you just update the code. The strategy + to update is to simply always run the checksetup.pl script whenever + you upgrade your installation of Bugzilla. If you want to see what has + changed, you can read the comments in that file, starting from the end. + + + If you are running Bugzilla version 2.8 or lower, and wish to upgrade to + the latest version, please consult the file, "UPGRADING-pre-2.8" in the + Bugzilla root directory after untarring the archive. + +
-
- Win32 (Win98+/NT/2K) Installation - - These directions have not been extensively tested. - We need testers! Please try these out and post any changes to the - newsgroup. - -
- Win32 Installation: Step-by-step - - - You should be familiar with, and cross-reference, the UNIX README - while performing your Win32 installation. Unfortunately, Win32 - directions are not yet as detailed as those for UNIX. - - - The most critical difference for Win32 users is - the lack of support for a crypt() function in MySQL for Windows. It does not - have it! All ENCRYPT statements must be modified. - - +
+ <filename>.htaccess</filename> files and security + + To enhance the security of your Bugzilla installation, + Bugzilla will generate + .htaccess files + which the Apache webserver can use to restrict access to + the bugzilla data files. The checksetup script will + generate the .htaccess files. + + + + If you are using an alternate provider of + webdot services for graphing + (as described when viewing + editparams.cgi in your web + browser), you will need to change the ip address in + data/webdot/.htaccess to the ip + address of the webdot server that you are using. + + + + + + If you are using Internet Information Server or other web + server which does not observe .htaccess + conventions, you can disable their creation by editing + localconfig and setting the + $create_htaccess variable to + 0. + +
+ +
+ UNIX Installation Instructions History + + This document was originally adapted from the Bonsai installation + instructions by Terry Weissman <terry@mozilla.org>. + + + The February 25, 1999 re-write of this page was done by Ry4an Brase + <ry4an@ry4an.org>, with some edits by Terry Weissman, Bryce Nesbitt, + Martin Pool, & Dan Mosedale (But don't send bug reports to them; + report them using bugzilla, at http://bugzilla.mozilla.org/enter_bug.cgi , + project Webtools, component Bugzilla). + + + This document was heavily modified again Wednesday, March 07 2001 to + reflect changes for Bugzilla 2.12 release by Matthew P. Barnson. The + securing MySQL section should be changed to become standard procedure + for Bugzilla installations. + + + Finally, the README in its entirety was marked up in SGML and included into + the Guide on April 24, 2001 by Matt Barnson. Since that time, it's undergone + extensive modification as Bugzilla grew. + + + Comments from people using this Guide for the first time are particularly welcome. + +
+
+ +
+ Win32 Installation Notes + This section covers installation on Microsoft Windows 95, + 98, ME, NT, and 2000. Bugzilla works fine on Win32 platforms, + but please remember that the Bugzilla team and the author of the + Guide neither endorse nor support installation on Microsoft + Windows. Bugzilla installs and runs best + and easiest on UNIX-like operating systems, + and that is the way it will stay for the foreseeable future. The + Bugzilla team is considering supporting Win32 for the 2.16 + release and later. + The easiest way to install Bugzilla on Intel-archiecture + machines is to install some variant of GNU/Linux, then follow + the UNIX installation instructions in this Guide. If you have + any influence in the platform choice for running this system, + please choose GNU/Linux instead of Microsoft Windows. - - - - Install Apache Web Server +
+ Win32 Installation: Step-by-step + + + You should be familiar with, and cross-reference, the rest + of the + section while performing your + Win32 installation. + + Making Bugzilla work on Microsoft Windows is no + picnic. Support for Win32 has improved dramatically in the + last few releases, but, if you choose to proceed, you should + be a very skilled Windows Systems + Administrator with both strong troubleshooting abilities and + a high tolerance for pain. Bugzilla on NT requires hacking + source code and implementing some advanced utilities. What + follows is the recommended installation procedure for Win32; + additional suggestions are provided in . + + + + + + + Install Apache Web Server for Windows. - - - + + + You may also use Internet Information Server or Personal Web Server for this purpose. However, setup is slightly more difficult. If ActivePerl doesn't seem to handle your file associations correctly (for .cgi and .pl files), please - consult the FAQ, in the "Win32" section. - - - If you are going to use IIS, if on Windows NT you must be updated - to at least Service Pack 4. - - - - - - Install ActivePerl - - + consult . + + + If you are going to use IIS, if on Windows NT you must + be updated to at least Service Pack 4. Windows 2000 + ships with a sufficient version of IIS. + + + + + + Install ActivePerl for Windows. Check http://aspn.activestate.com/ASPN/Downloads/ActivePerl for a current compiled binary. + + Please also check the following links to fully understand the status of ActivePerl on Win32: - - Perl Porting, and - - Hixie Click Here - - - - + + Perl Porting, and + + Perl on Win32 FAQ + + + + Use ppm from your perl\bin directory to install the following packs: DBI, DBD-Mysql, TimeDate, Chart, Date-Calc, Date-Manip, and GD. You may need to extract them from .zip format using Winzip or other unzip program first. These additional ppm modules can be downloaded from ActiveState. - - + + + + You can find a list of modules at + + http://www.activestate.com/PPMPackages/zips/5xx-builds-only/ + + + The syntax for ppm is: - - C:> ppm install <module>.ppd - - - + + C:> ppm <modulename> + + + + + Installing ActivePerl ppd Modules on Microsoft Windows + C:>ppm + + Watch your capitalization! + + + You can find ActiveState ppm modules at - - http://www.activestate.com/PPMPackages/5.6plus - - - - - Download and install the Windows GNU tools from - www.cygwin.com. - Make sure the GNU utilities are in your $PATH. - - - - + + http://www.activestate.com/PPMPackages/5.6plus + + + + + Install MySQL for NT. - - - Your configuration file for MySQL must be named C:\MY.CNF. - - - - - - + + + You can download MySQL for Windows NT from MySQL.com. Some find it helpful to use the WinMySqlAdmin utility, included with the download, to set up the database. + + + + + + Setup MySQL - - - - - - C:> - C:\mysql\bin\mysql -u root mysql - - - - - - - mysql> - DELETE FROM user WHERE Host='localhost' AND User=''; - - - - - - - mysql> - UPDATE user SET Password=PASSWORD ('new_password') - WHERE user='root'; - - - - - - - mysql> - GRANT SELECT, INSERT, UPDATE, DELETE, + + + + + + C:> + C:\mysql\bin\mysql -u root mysql + + + + + + + mysql> + DELETE FROM user WHERE Host='localhost' AND User=''; + + + + + + + mysql> + UPDATE user SET Password=PASSWORD ('new_password') + WHERE user='root'; + + + new_password, above, indicates + whatever password you wish to use for your + root user. + + + + + mysql> + GRANT SELECT, INSERT, UPDATE, DELETE, INDEX, ALTER, CREATE, DROP, REFERENCES ON bugs.* to bugs@localhost - IDENTIFIED BY 'bugs_password'; - - - - - - - mysql> - FLUSH PRIVILEGES; - - - - - - - mysql> - create database bugs; - - - - - - - mysql> - exit - - - - - - - C:> - C:\mysql\bin\mysqladmin -u root -p reload - - - - - + IDENTIFIED BY 'bugs_password'; + + + bugs_password, above, indicates + whatever password you wish to use for your + bugs user. + + + + + mysql> + FLUSH PRIVILEGES; + + + + + + + mysql> + create database bugs; + + + + + + + mysql> + exit; + + + + + + + C:> + C:\mysql\bin\mysqladmin -u root -p reload + + + + + - - - Configure Bugzilla. For Win32, this involves editing "defparams.pl" - and "localconfig" to taste. Running "checksetup.pl" should create - localconfig for you. Note that getgrnam() doesn't work, and should be - deleted. Change this line: + + + Edit checksetup.pl in your Bugzilla directory. Change + this line: + + "my $webservergid = getgrnam($my_webservergroup); " + + to + + "my $webservergid = $my_webservergroup; " - - + + + + + + Run checksetup.pl from the Bugzilla directory. + + + + + Edit localconfig to suit your + requirements. Set $db_pass to your + bugs_password from , and $webservergroup to 8. + + Not sure on the 8 for + $webservergroup above. If it's + wrong, please send corrections. + + + + + + Edit defparams.pl to suit your + requirements. Particularly, set + DefParam("maintainer") and + DefParam("urlbase") to match your + install. + + + This is yet another step I'm not sure of, since the + maintainer of this documentation does not maintain + Bugzilla on NT. If you can confirm or deny that this + step is required, please let me know. + + - - - + + + There are several alternatives to Sendmail that will work on Win32. - The one mentioned here is a suggestion, not + The one mentioned here is a suggestion, not a requirement. Some other mail packages that can work include - BLAT, - Windmail, - Mercury Sendmail, + BLAT, + Windmail, + Mercury Sendmail, and the CPAN Net::SMTP Perl module (available in .ppm). Every option requires some hacking of the Perl scripts for Bugzilla to make it work. The option here simply requires the least. - - - - Download NTsendmail, available from - www.ntsendmail.com. In order for it to work, you must set up some - new environment variables (detailed on the ntsendmail home page). Figuring - out where to put those variables is left as an exercise for the reader. - You must have a "real" mail server which allows you to relay off it - in your $ENV{"NTsendmail"} (which you should probably place in globals.pl) - - - Once downloaded and installed, modify all open(SENDMAIL) calls to open - "| c:\ntsendmail\ntsendmail -t" instead of "|/usr/lib/sendmail -t". - - - - We need someone to test this and make sure this works as advertised. - - - - - - Modify globals.pl and CGI.pl to remove the word "encrypt". - - - - I'm not sure this is all that is involved to remove crypt. Any - NT Bugzilla hackers want to pipe up? - - - - - - Change all references to "processmail" to "processmail.pl" in - all files, and rename "processmail" to "processmail.pl" - - - - I really think this may be a change we want to make for + + + + + + + Download NTsendmail, available from www.ntsendmail.com. You must have a "real" mail server which allows you to relay off it in your $ENV{"NTsendmail"} (which you should probably place in globals.pl) + + + + + Put ntsendmail.pm into your .\perl\lib directory. + + + + Add to globals.pl: + +# these settings configure the NTsendmail process +use NTsendmail; +$ENV{"NTsendmail"}="your.smtpserver.box"; +$ENV{"NTsendmail_debug"}=1; +$ENV{"NTsendmail_max_tries"}=5; + + + + Some mention to also edit + $db_pass in + globals.pl to be your + bugs_password. Although this may get + you around some problem authenticating to your + database, since globals.pl is not normally + restricted by .htaccess, your + database password is exposed to whoever uses your + web server. + + + + + + + Find and comment out all occurences of + open(SENDMAIL in + your Bugzilla directory. Then replace them with: + +# new sendmail functionality +my $mail=new NTsendmail; +my $from="bugzilla\@your.machine.name.tld"; +my $to=$login; +my $subject=$urlbase; +$mail->send($from,$to,$subject,$msg); + + + + The code above needs testing as well to make sure it is correct. + + + + + + + + Change all references in all files from + processmail to + processmail.pl, and + rename processmail to + processmail.pl. + + + + Many think this may be a change we want to make for main-tree Bugzilla. It's painless for the UNIX folks, and will make the Win32 people happier. - - - - - - Modify the path to perl on the first line (#!) of all files - to point to your Perl installation, and - add "perl" to the beginning of all Perl system calls that - use a perl script as an argument. This may take you a while. - There is a "setperl.pl" utility to speed part of this procedure, - available in the "Patches and Utilities" section of The Bugzilla Guide. - - - - - In processmail.pl, add "binmode(HANDLE)" before all read() calls. - This may not be necessary, but in some cases the read() under - Win32 doesn't count the EOL's without using a binary read(). - - - + + + + + Some people have suggested using the Net::SMTP Perl module instead of NTsendmail or the other options listed here. You can change processmail.pl to make this work. + +new(''); #connect to SMTP server +$smtp->mail('@');# use the sender's adress here +$smtp->to($tolist); # recipient's address +$smtp->data(); # Start the mail +$smtp->datasend($msg); +$smtp->dataend(); # Finish sending the mail +$smtp->quit; # Close the SMTP connection +$logstr = "$logstr; mail sent to $tolist $cclist"; +} + +]]> + +here is a test mail program for Net::SMTP: + + +use Net::SMTP; + my $smtp = Net::SMTP->new(' 30, Debug +=> 1, ); # connect to SMTP server + $smtp->auth; + $smtp->mail('you@yourcompany.com');# use the sender's adress +here + $smtp->to('someotherAddress@someotherdomain.com'); # +recipient's address + $smtp->data(); # Start the mail + $smtp->datasend('test'); + $smtp->dataend(); # Finish sending the mail + $smtp->quit; # Close the SMTP connection +exit; -
- Additional Windows Tips - - +]]> + + + + + + + + This step is completely optional if you are using IIS or + another web server which only decides on an interpreter + based upon the file extension (.pl), rather than the + shebang line (#/usr/bonsaitools/bin/perl) + + + + Modify the path to perl on the first line (#!) of all + files to point to your Perl installation, and add + perl to the beginning of all Perl system + calls that use a perl script as an argument. This may + take you a while. There is a setperl.csh + utility to speed part of this procedure, available in the + section of The Bugzilla Guide. + However, it requires the Cygwin GNU-compatible environment + for Win32 be set up in order to work. See http://www.cygwin.com/ for details on obtaining Cygwin. + + + + + + Modify the invocation of all system() calls in all perl scripts in your Bugzilla directory. For instance, change this line in processmail: + +system ("./processmail.pl",@ARGLIST); + +to + +system ("perl processmail.pl",@ARGLIST); + + + + + + + + If you are using IIS 5.0 or higher, you must add cgi + relationships to Properties -> Home directory (tab) -> + Application Settings (section) -> Configuration (button), + such as: +.cgi to: <perl install directory>\perl.exe %s %s +.pl to: <perl install directory>\perl.exe %s %s +GET,HEAD,POST + + Change the path to Perl to match your + install, of course. + + +
+ +
+ Additional Windows Tips + + From Andrew Pearson: -
- +
+ "You can make Bugzilla work with Personal Web Server for Windows 98 and higher, as well as for IIS 4.0. Microsoft has information available at - - http://support.microsoft.com/support/kb/articles/Q231/9/98.ASP - - + + http://support.microsoft.com/support/kb/articles/Q231/9/98.ASP + + Basically you need to add two String Keys in the registry at the following location: - - + + HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W3SVC\Parameters\ScriptMap - - + + The keys should be called ".pl" and ".cgi", and both should have a value something like: - c:/perl/bin/perl.exe "%s" "%s" - - + c:/perl/bin/perl.exe "%s" "%s" + + The KB article only talks about .pl, but it goes into more detail and provides a perl test script. - -
-
- - - "Brian" had this to add, about upgrading to Bugzilla 2.12 from previous versions: -
- + +
+ +
+ + "Brian" had this to add, about upgrading to Bugzilla 2.12 from previous versions: +
+ Hi - I am updating bugzilla to 2.12 so I can tell you what I did (after I deleted the current dir and copied the files in). - - + + In checksetup.pl, I did the following... - - - - + + + + my $webservergid = getgrnam($my_webservergroup); - - to - + + to + my $webservergid = 'Administrators' - - - - + + + + I then ran checksetup.pl - - - - + + + + I removed all the encrypt() - - Removing encrypt() for Windows NT installations - + + Removing encrypt() for Windows NT installations + Replace this: - + SendSQL("SELECT encrypt(" . SqlQuote($enteredpwd) . ", " . SqlQuote(substr($realcryptpwd, 0, 2)) . ")"); my $enteredcryptpwd = FetchOneColumn(); - + with this: - + my $enteredcryptpwd = $enteredpwd - + in cgi.pl. - - - - - - + + + + + + I renamed processmail to processmail.pl - - - - + + + + I altered the sendmail statements to windmail: - + open SENDMAIL, "|\"C:/General/Web/tools/Windmail 4.0 Beta/windmail\" -t > mail.log"; - - - + + + The quotes around the dir is for the spaces. mail.log is for the output - - - -
-
- - + + + +
+
+ + This was some late breaking information from Jan Evert. Sorry for the lack of formatting. - - + + I'm busy installing bugzilla on a WinNT machine and I thought I'd notify you at this moment of the commments I have to section 2.2.1 of the bugzilla guide (at http://www.trilobyte.net/barnsons/html/). @@ -1340,7 +1731,7 @@ necessary to add the ExecCGI option to the bugzilla directory. Also the 'AddHandler' line for .cgi is by default commented out. Step 3: although just a detail, 'ppm install <module%gt;' will also work -(wihtout .ppd). And, it can also download these automatically from +(without .ppd). And, it can also download these automatically from ActiveState. Step 4: although I have cygwin installed, it seems that it is not necessary. @@ -1372,30 +1763,30 @@ that apache can serve them. Just noticed the updated guide... Brian's comment is new. His first comment will work, but opens up a huge security hole. - - -
-
- - - - + + +
+
+ diff --git a/docs/en/xml/integration.xml b/docs/en/xml/integration.xml index 74ec817f5..c7aa78f82 100644 --- a/docs/en/xml/integration.xml +++ b/docs/en/xml/integration.xml @@ -1,4 +1,4 @@ - + @@ -12,14 +12,13 @@
CVS - We need CVS integration information + CVS integration is best accomplished, at this point, using the Bugzilla Email Gateway.
Perforce SCM - Richard Brooksby created a Perforce integration tool for Bugzilla and TeamTrack. - You can find the main project page at + You can find the project page for Bugzilla and Teamtrack Perforce integration at: http://www.ravenbrook.com/project/p4dti. "p4dti" is now an officially supported product from Perforce, and you can find the "Perforce Public Depot" @@ -54,22 +53,25 @@ + + - - diff --git a/docs/en/xml/patches.xml b/docs/en/xml/patches.xml index 8d7a72682..8ebfdee15 100644 --- a/docs/en/xml/patches.xml +++ b/docs/en/xml/patches.xml @@ -1,15 +1,14 @@ - + - + Useful Patches and Utilities for Bugzilla -
+
The setperl.csh Utility - - You can use the "setperl.csh" utility to quickly and easily - change the path to perl on all your Bugzilla files. - This is a C-shell script; if you do not have "csh" or "tcsh" in the search - path on your system, it will not work! + You can use the "setperl.csh" utility to quickly and + easily change the path to perl on all your Bugzilla files. This + is a C-shell script; if you do not have "csh" or "tcsh" in the + search path on your system, it will not work! @@ -28,18 +27,15 @@ - - bash# - wget -O setperl.csh 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=10795' - + bash# wget -O + setperl.csh + 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=10795' - - bash# - chmod u+x setperl.csh - + bash# chmod + u+x setperl.csh @@ -59,10 +55,8 @@ - - bash# - chmod u+x duplicates.cgi - + bash# chmod + u+x duplicates.cgi @@ -80,16 +74,14 @@ Run the script: - - bash# + bash# ./setperl.csh /your/path/to/perl Using Setperl to set your perl path - - bash# - ./setperl.csh /usr/bin/perl + bash# + ./setperl.csh /usr/bin/perl @@ -101,22 +93,23 @@
Command-line Bugzilla Queries - Users can query Bugzilla from the command line using - this suite of utilities. + Users can query Bugzilla from the command line using this suite + of utilities. The query.conf file contains the mapping from options to field - names and comparison types. Quoted option names are "grepped" for, so - it should be easy to edit this file. Comments (#) have no effect; you - must make sure these lines do not contain any quoted "option" + names and comparison types. Quoted option names are "grepped" + for, so it should be easy to edit this file. Comments (#) have + no effect; you must make sure these lines do not contain any + quoted "option" - buglist is a shell script which submits a Bugzilla query and writes the - resulting HTML page to stdout. It supports both short options, - (such as "-Afoo" or "-Rbar") and long options (such as - "--assignedto=foo" or "--reporter=bar"). If the first character - of an option is not "-", it is treated as if it were prefixed - with "--default=". + buglist is a shell script which submits a Bugzilla query and + writes the resulting HTML page to stdout. It supports both + short options, (such as "-Afoo" or "-Rbar") and long options + (such as "--assignedto=foo" or "--reporter=bar"). If the first + character of an option is not "-", it is treated as if it were + prefixed with "--default=". The columlist is taken from the COLUMNLIST environment variable. @@ -128,10 +121,10 @@ bugs is a simple shell script which calls buglist and extracts the bug numbers from the output. Adding the prefix - "http://bugzilla.mozilla.org/buglist.cgi?bug_id=" - turns the bug list into a working link if any bugs are found. - Counting bugs is easy. Pipe the results through - sed -e 's/,/ /g' | wc | awk '{printf $2 "\n"}' + "http://bugzilla.mozilla.org/buglist.cgi?bug_id=" turns the bug + list into a working link if any bugs are found. Counting bugs is + easy. Pipe the results through sed -e 's/,/ /g' | wc | + awk '{printf $2 "\n"}' Akkana says she has good results piping buglist output through @@ -145,26 +138,23 @@ - - bash$ - wget -O query.conf 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=26157' - + bash$ wget -O + query.conf + 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=26157' - - bash$ - wget -O buglist 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=26944' - + bash$ wget -O + buglist + 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=26944' - - bash# - wget -O bugs 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=26215' - + bash# wget -O + bugs + 'http://bugzilla.mozilla.org/showattachment.cgi?attach_id=26215' @@ -185,53 +175,64 @@ The Quicksearch Utility Quicksearch is a new, experimental feature of the 2.12 release. - It consist of two Javascript files, "quicksearch.js" and "localconfig.js", - and two documentation files, "quicksearch.html" and "quicksearchhack.html" + It consist of two Javascript files, "quicksearch.js" and + "localconfig.js", and two documentation files, + "quicksearch.html" and "quicksearchhack.html" - The index.html page has been updated to include the QuickSearch text box. + The index.html page has been updated to include the QuickSearch + text box. - To take full advantage of the query power, the Bugzilla maintainer must - edit "localconfig.js" according to the value sets used in the local installation. + To take full advantage of the query power, the Bugzilla + maintainer must edit "localconfig.js" according to the value + sets used in the local installation. - Currently, keywords must be hard-coded in localconfig.js. If they are not, - keywords are not automatically recognized. This means, if localconfig.js - is left unconfigured, that searching for a bug with the "foo" keyword - will only find bugs with "foo" in the summary, status whiteboard, product or - component name, but not those with the keyword "foo". + Currently, keywords must be hard-coded in localconfig.js. If + they are not, keywords are not automatically recognized. This + means, if localconfig.js is left unconfigured, that searching + for a bug with the "foo" keyword will only find bugs with "foo" + in the summary, status whiteboard, product or component name, + but not those with the keyword "foo". Workarounds for Bugzilla users: - search for '!foo' (this will find only bugs with the keyword "foo" - search 'foo,!foo' (equivalent to 'foo OR keyword:foo') + search for '!foo' (this will find only bugs with the + keyword "foo" + search 'foo,!foo' (equivalent to 'foo OR + keyword:foo') - When this tool is ported from client-side JavaScript to server-side Perl, - the requirement for hard-coding keywords can be fixed. - This bug - has details. + When this tool is ported from client-side JavaScript to + server-side Perl, the requirement for hard-coding keywords can + be fixed. This bug has details.
+ + diff --git a/docs/en/xml/requiredsoftware.xml b/docs/en/xml/requiredsoftware.xml index 4a751c0c7..e36b6184a 100644 --- a/docs/en/xml/requiredsoftware.xml +++ b/docs/en/xml/requiredsoftware.xml @@ -1,59 +1,69 @@ + Software Download Links - - All of these sites are current as of April, 2001. Hopefully they'll - stay current for a while. - - Apache Web Server: - - - Optional web server for Bugzilla, but recommended because of broad user - base and support. - - Bugzilla: - + + All of these sites are current as of April, 2001. Hopefully + they'll stay current for a while. - - MySQL: - + + Apache Web Server: http://www.apache.org + Optional web server for Bugzilla, but recommended because of broad user base and support. - - Perl: - + + Bugzilla: + http://www.mozilla.org/projects/bugzilla/ - - CPAN: - + + MySQL: http://www.mysql.com/ - - DBI Perl module: - + + Perl: http://www.perl.org/ - - MySQL related Perl modules: - + + CPAN: http://www.cpan.org/ - - TimeDate Perl module collection: - + + DBI Perl module: + + ftp://ftp.cpan.org/pub/perl/CPAN/modules/by-module/DBI/ - - GD Perl module: - - - Alternately, you should be able to find the latest version of GD at - + + Data::Dumper module: + + ftp://ftp.cpan.org/pub/perl/CPAN/modules/by-module/Data/ - - Chart::Base module: - + + MySQL related Perl modules: + + ftp://ftp.cpan.org/pub/perl/CPAN/modules/by-module/Mysql/ - - (But remember, Bundle::Bugzilla will install all the modules for you.) + + TimeDate Perl module collection: + + ftp://ftp.cpan.org/pub/perl/CPAN/modules/by-module/Date/ + + + GD Perl module: + + ftp://ftp.cpan.org/pub/perl/CPAN/modules/by-module/GD/ + Alternately, you should be able to find the latest version of + GD at http://www.boutell.com/gd/ + + Chart::Base module: + + ftp://ftp.cpan.org/pub/perl/CPAN/modules/by-module/Chart/ + + + LinuxDoc Software: + http://www.linuxdoc.org/ + (for documentation maintenance) + + + - diff --git a/docs/en/xml/using.xml b/docs/en/xml/using.xml index bc8159835..fd5901196 100644 --- a/docs/en/xml/using.xml +++ b/docs/en/xml/using.xml @@ -1,4 +1,4 @@ - + -- cgit v1.2.3-24-g4f1b