[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: https for apt to prevent man in middle transparent proxy mirror attacks?



On Thu, 10 Jun 2004, Marc Haber wrote:

> On Thu, 10 Jun 2004 00:38:38 +1000, Hamish Moffatt <hamish@debian.org>
> wrote:
> >Hence you verify the GPG signature for the top-level release file and
> >follow the md5sums from there. Simple.
> 
> As far as I remember, we don't have a program that does this
> validation automatically.

apt in experimental.

Peter
-- 
 PGP signed and encrypted  |  .''`.  ** Debian GNU/Linux **
    messages preferred.    | : :' :      The  universal
                           | `. `'      Operating System
 http://www.palfrader.org/ |   `-    http://www.debian.org/

Attachment: signature.asc
Description: Digital signature


Reply to: