Baptiste Daroussin <b...@freebsd.org> wrote:

> The main problem with that is: we have no way to keep a valid sum
> of the distfiles if it is autogenerated (in particular with github)
> and this sum is really important.

No question about the importance of the checksum, to prevent trojans
and other problems if the distfile were to change "silently".

If I am understanding correctly, you seem to be saying that two
distfiles autogenerated from the _same_ tag etc. in the _same_
repository, and actually containing exactly the same code, can
nevertheless generate different checksums!?  Wouldn't that be a
bug in the DVCS?
_______________________________________________
freebsd-ports@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-ports
To unsubscribe, send any mail to "freebsd-ports-unsubscr...@freebsd.org"

Reply via email to