On Thu, Mar 17, 2011 at 04:55:05PM +0100, Thomas Lotze wrote:
> two weeks ago I asked about your opinions on a buildout option
> that enforces specifying (MD5) checksums for all files downloaded
> through buildout's download utility API.

Please don't hardcode the checksum algorithm to MD5.  Security
researchers have been telling everyone to stop using MD5 (and SHA1)
for a while now.

Marius Gedminas
-- 
How much net work could a network work, if a network could net work?

Attachment: signature.asc
Description: Digital signature

_______________________________________________
Distutils-SIG maillist  -  [email protected]
http://mail.python.org/mailman/listinfo/distutils-sig

Reply via email to