[Reproducible-builds] Reproducibility vs signatures

Holger Levsen holger at layer-acht.org
Mon Aug 3 10:27:21 UTC 2015


Hi,

On Montag, 3. August 2015, Ben Hutchings wrote:
> That sort of works as long as there's only one architecture we want to
> do this for.  But the ability to verify modules is useful in general so
> I would like to turn that on for all architectures.

how is this going to work for builds on buildds anyway? I suppose you are not 
planning to build+sign all arch manually?

And who can sign those kernels anyway? I suppose anybody should stil be able 
to build+sign+boot kernels, or?


cheers,
	Holger
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 828 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.alioth.debian.org/pipermail/reproducible-builds/attachments/20150803/52b220bb/attachment.sig>


More information about the Reproducible-builds mailing list