[EMAIL PROTECTED] wrote:
According to this:- http://en.wikipedia.org/wiki/Md5 and a number of articles
I've seen on Slashdot, MD5 is apparently no longer entirely secure...there's a
story on /. at the moment actually about Microsoft dropping MD5 for use in
Vista.

Should we possibly start considering something else?

In what context? For hashing our own tarballs? Or do you mean not installing md5sum(1) and the like? If the former, I agree though I don't see it as an urgent issue to deal with. If the latter, I disagree on the basis of the fact that there's lots of files out there that have only been signed with MD5, and that algoritim is surely better than no verification procedure at all.

Regards,

Matt.

--
http://linuxfromscratch.org/mailman/listinfo/lfs-dev
FAQ: http://www.linuxfromscratch.org/faq/
Unsubscribe: See the above information page

Reply via email to