Bug#1121406: clhep: reproducible-builds: build date in PDF file
Vagrant Cascadian
vagrant at reproducible-builds.org
Tue Sep 22 21:37:45 BST 2026
On 2025-11-25, Vagrant Cascadian wrote:
> The date is embedded in a shipped PDF file:
>
> https://tests.reproducible-builds.org/debian/rb-pkg/unstable/amd64/diffoscope-results/clhep.html
>
> ./usr/share/doc/clhep/GenericFunctions/genericFunctions.pdf.gz
>
> November·24,·2025
> vs.
> December·27,·2026
>
> The attached patch sets FORCE_SOURCE_DATE in debian/rules to ensure that
> texlive respects SOURCE_DATE_EPOCH for a reproducible date.
>
> According to my local tests, with this patch applied clhep should
> build reproducibly on tests.reproducible-builds.org!
I can confirm that this is still an issue, and the patch still fixes it.
I would like to perform a Non-Maintainer Upload (NMU) in the coming
weeks applying the patch. Please let me know if there are outstanding
concerns!
live well,
vagrant
> From f16dc481429b4d13f7434bea32174df6555984c7 Mon Sep 17 00:00:00 2001
> From: Vagrant Cascadian <vagrant at reproducible-builds.org>
> Date: Tue, 25 Nov 2025 13:07:14 -0800
> Subject: [PATCH] debian/rules: Set FORCE_SOURCE_DATE=1 for reproducible PDF
> generation.
>
> ---
> debian/rules | 3 +++
> 1 file changed, 3 insertions(+)
>
> diff --git a/debian/rules b/debian/rules
> index ead6449..5c516e0 100755
> --- a/debian/rules
> +++ b/debian/rules
> @@ -2,6 +2,9 @@
>
> export DEB_BUILD_MAINT_OPTIONS = hardening=+all
>
> +# Ensure pdflatex respects SOURCE_DATE_EPOCH when generating PDFs
> +export FORCE_SOURCE_DATE = 1
> +
> %:
> dh $@ --sourcedirectory=CLHEP --buildsystem=cmake+ninja
>
> --
> 2.39.5
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 227 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/debian-science-maintainers/attachments/20260922/c9d5da26/attachment.sig>
More information about the debian-science-maintainers
mailing list