[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Packages and signatures



* Matt Zimmerman 

| A CD vendor presses a CD using the contents of the archive at time X, and the
| archive is compromised at X+k.  The CD vendor does not need to worry about his
| CD contents.

You do not always know when a compromise takes place - you just find
out that somebody has rooted you.  In which case one cannot know for
sure which packages are ok and which aren't.

-- 

Tollef Fog Heen
Unix _IS_ user friendly... It's just selective about who its friends are.



Reply to: