Re: Bits from the Testing Security team

Jonas Meurer <jonas@freesources.org> writes:

>> Well, I would consider statically linking a non embedded (i.e. a packaged) 
>> library a bug... Are there known cases where this is a required condition?
> cryptsetup is statically linked against libgcrypt and libgpg-error, as
> both are in /usr/lib, and relying on a mounted /usr is not an option for
> cryptsetup.

What are the reasons not to move openssl, libgcrypt and libgpg-error
from /usr to /?

Reinhard Tartler, KeyID 945348A4

