Baptiste Daroussin <b...@freebsd.org> wrote: > The main problem with that is: we have no way to keep a valid sum > of the distfiles if it is autogenerated (in particular with github) > and this sum is really important.
No question about the importance of the checksum, to prevent trojans and other problems if the distfile were to change "silently". If I am understanding correctly, you seem to be saying that two distfiles autogenerated from the _same_ tag etc. in the _same_ repository, and actually containing exactly the same code, can nevertheless generate different checksums!? Wouldn't that be a bug in the DVCS? _______________________________________________ freebsd-ports@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-ports To unsubscribe, send any mail to "freebsd-ports-unsubscr...@freebsd.org"