[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Apt sources.list



On Sat 15 Apr 2023 at 14:01:27 +0100, Alain D D Williams wrote:

> On Sat, Apr 15, 2023 at 08:52:06AM -0400, Greg Wooledge wrote:
> > On Sat, Apr 15, 2023 at 01:23:05PM +0100, Brian wrote:
> > > On Sat 15 Apr 2023 at 08:11:17 -0400, paulf@quillandmouse.com wrote:
> > > > ---
> > > > 
> > > > deb http://debian.uchicago.edu/debian/ bookworm main contrib non-free
> > > > deb-src http://debian.uchicago.edu/debian/ bookworm main contrib non-free
> > > > 
> > > > deb http://security.debian.org/debian-security bookworm-security main
> > > > contrib non-free deb-src http://security.debian.org/debian-security bookworm-security main contrib non-free
> > > > 
> > > > ---
> 
> While we are talking about this, is there any reason why all the http: should
> not be https: ?
> 
> I have done this on my own machine without ill effect.

By all means use https, but bear in mind that Debian has gone to great lengths
to implement package distribution security which doesn't really depend at all
on transport layer encryption. 

-devel has seen a number of didcussions on thia topic.

-- 
Brian.


Reply to: