[arch-releng] [PATCH 1/1] use a stronger hashing algorithm

Christian Hesse list at eworm.de
Mon Oct 16 19:28:32 UTC 2017


Gerardo Exequiel Pozzi via arch-releng <arch-releng at archlinux.org> on Mon,
2017/10/16 15:50:
> The only purpose of this is as checksum, like an "enhanced crc", in any
> case I will apply it. I know you know, just for clarify for anyone who
> read this.

Adding another note... Whoever wants to be sure should use verification with
gpg signature (boot option 'verify'). Though even that is not secure - it
checks for a valid signature, but not for a trusted key.

Nevertheless we should drop md5 - especially if it is an easy task.
-- 
main(a){char*c=/*    Schoene Gruesse                         */"B?IJj;MEH"
"CX:;",b;for(a/*    Best regards             my address:    */=0;b=c[a++];)
putchar(b-1/(/*    Chris            cc -ox -xc - && ./x    */b/42*2-3)*42);}
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 488 bytes
Desc: OpenPGP digital signature
URL: <https://lists.archlinux.org/pipermail/arch-releng/attachments/20171016/c7c6186e/attachment.asc>


More information about the arch-releng mailing list