Bug#1000836: libu2f-host: reproducible builds: Embedded timestamp in u2f-host.pdf

Vagrant Cascadian vagrant at reproducible-builds.org
Mon Nov 29 23:55:06 GMT 2021


Source: libu2f-host
Severity: normal
Tags: patch
User: reproducible-builds at lists.alioth.debian.org
Usertags: timestamps
X-Debbugs-Cc: reproducible-bugs at lists.alioth.debian.org

The build timestamp is embedded in u2f-host.pdf:

  https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/diffoscope-results/libu2f-host.html

  ./usr/share/doc/libu2f-host-dev/u2f-host.pdf

  November·15,·2021
  vs.
  December·20,·2022


The attached patch fixes this by setting FORCE_SOURCE_DATE=1 in
debian/rules, which texlive needs in order to respect SOURCE_DATE_EPOCH,
which is set during debian package builds to the timestamp in the latest
debian/changelog entry.

  https://reproducible-builds.org/docs/source-date-epoch/

With this patch applied, libu2f-host should build reproducibly on
tests.reproducible-builds.org.


Thanks for maintaining libu2f-host!


live well,
  vagrant
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-debian-rules-Export-FORCE_SOURCE_DATE-1-in-order-for.patch
Type: text/x-diff
Size: 700 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/reproducible-bugs/attachments/20211129/dd420bc0/attachment.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/reproducible-bugs/attachments/20211129/dd420bc0/attachment.sig>


More information about the Reproducible-bugs mailing list