diff options
author | agc <agc@pkgsrc.org> | 2005-02-22 21:01:10 +0000 |
---|---|---|
committer | agc <agc@pkgsrc.org> | 2005-02-22 21:01:10 +0000 |
commit | 4c285ed3f4db4be3bdd500e49331251fe9d7664f (patch) | |
tree | 9dc2dc6b64215edc4647cf79d4d3e6b627f7b702 /ham/cwtext/distinfo | |
parent | 361a87d9643956b6163ff348b57bfdac1059cb3a (diff) | |
download | pkgsrc-4c285ed3f4db4be3bdd500e49331251fe9d7664f.tar.gz |
As seen on tech-pkg - allow multiple digest algorithms to be used to
ensure the integrity of distfiles and dist patches. For now, the
default algorithms are SHA1 and RMD160, set as a whitespace-separated
list in the DIGEST_ALGORITHMS definition. The DIGEST_ALGORITHM
definition is deprecated.
Patchfiles will still use simply SHA1, since we are trying to detect a
binary "has this file changed", rather than proect against tampering.
In short, if someone can modify the patch file, they can modify the
distinfo file holding its digest information. This value is set in the
new PATCH_DIGEST_ALGORITHM definition.
Triggered by the breaking of SHA1, as reported in
http://www.schneier.com/blog/archives/2005/02/sha1_broken.html
Diffstat (limited to 'ham/cwtext/distinfo')
0 files changed, 0 insertions, 0 deletions