Message from discussion
Debian should move away from MD5 (and at best also from SHA1) (in secure APT and friends)
Received: by 10.66.73.7 with SMTP id h7mr602728pav.6.1350007801955;
Thu, 11 Oct 2012 19:10:01 -0700 (PDT)
Path: jt13ni5221pbb.1!nntp.google.com!npeer03.iad.highwinds-media.com!feed-me.highwinds-media.com!cyclone03.ams2.highwinds-media.com!news.highwinds-media.com!voer-me.highwinds-media.com!news.panservice.it!diesel.cu.mi.it!bofh.it!news.nic.it!robomod
From: Paul Wise <p...@debian.org>
Newsgroups: linux.debian.devel
Subject: Re: Debian should move away from MD5 (and at best also from SHA1) (in secure APT and friends)
Date: Fri, 12 Oct 2012 04:10:01 +0200
Message-ID: <jTCRj-311-3@gated-at.bofh.it>
References: <jTkB3-1pq-3@gated-at.bofh.it> <jTvwu-I0-31@gated-at.bofh.it> <jTBse-PW-3@gated-at.bofh.it>
X-Original-To: debian-de...@lists.debian.org
Old-Return-Path: <paul.is.w...@gmail.com>
X-Amavis-Spam-Status: No, score=-7.689 tagged_above=-10000 required=5.3
tests=[BAYES_00=-2, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
FREEMAIL_FROM=0.001, LDO_WHITELIST=-5, RCVD_IN_DNSWL_LOW=-0.7,
T_TO_NO_BRKTS_FREEMAIL=0.01] autolearn=ham
X-Policyd-Weight: using cached result; rate:hard: -7
Dkim-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=gmail.com; s=20120113;
h=mime-version:sender:in-reply-to:references:date
:x-google-sender-auth:message-id:subject:from:to:content-type;
bh=uzumugGXFSZjGKowgKi3nuqAGes90szLglSvRKX9JiQ=;
b=Qra38cr2gmZaY4hqjgZVRTewdQdyZ3X/ABKruf5AKNlbBc0OOFBDUxB7T1saPAYzkl
1VJLIGmvRD1HW+kkmbq7J982IAqtJ70w5NuD22MZFpcQobGJdNeyQapaRQ7njIgMAjOT
enOVz5R4EENJ7VCiFGjarUpNYZK7oOO7xiPlO6Rfe7xDgql2ohM1phCNTcyE7IA27SIr
BVooY4XIm25W1+uyuaLiaAUTTv0a1SfSTlklQwn2gLvPvt4M0ifcoPnupoB0V8M0Jl8R
AY8vgX/QaGZtbQ+lPDoUf/DKsrGDh5q+1Qh+Sh7+NaRlL6gUWjRa+uLrIVKqtie3lIAb
kGFg==
MIME-Version: 1.0
Sender: robo...@news.nic.it
X-Mailing-List: <debian-devel@lists.debian.org> archive/latest/287513
List-ID: <debian-devel.lists.debian.org>
List-URL: <http://lists.debian.org/debian-devel/>
Approved: robo...@news.nic.it
Lines: 18
Organization: linux.* mail to news gateway
X-Original-Date: Fri, 12 Oct 2012 10:09:24 +0800
X-Original-Message-ID: <CAKTje6F-37FUhWCGFNXMU-mD-quTORa6MWJewXhRzFUeHG7...@mail.gmail.com>
X-Original-References: <1349911198.3341.117.ca...@fermat.scientia.net>
<20121011181855.GA8...@roeckx.be>
<1350001815.3370.65.ca...@fermat.scientia.net>
X-Original-Sender: paul.is.w...@gmail.com
X-Received-Bytes: 2933
Content-Type: text/plain; charset=UTF-8
On Fri, Oct 12, 2012 at 8:30 AM, Christoph Anton Mitterer wrote:
> I further looked around:
> e.g. the Release file seems to only use MD5.... not so good :(
Wrong, the Release file has had all 3 since sarge. woody had MD5 & SHA-1.
--
bye,
pabs
http://wiki.debian.org/PaulWise
--
To UNSUBSCRIBE, email to debian-devel-REQU...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: http://lists.debian.org/CAKTje6F-37FUhWCGFNXMU-mD-quTORa6MWJewXhRzFUeHG7...@mail.gmail.com