Gentoo Archives: gentoo-security

From: Kurt Lieber <klieber@g.o>
To: gentoo-security@l.g.o
Subject: Re: [gentoo-security] Securing portage --- an OpenBSD approach
Date: Fri, 12 Nov 2004 16:34:34
Message-Id: 20041112163411.GC2441@mail.lieber.org
In Reply to: Re: [gentoo-security] Securing portage --- an OpenBSD approach by Klaus Wagner
1 On Fri, Nov 12, 2004 at 05:16:24PM +0100 or thereabouts, Klaus Wagner wrote:
2 > ps. are there any plans for having a https site for gentoo, or
3 > the webservers, where the snapshots are put onto?
4
5 No -- we have very little control over our community mirrors, which is why
6 we made a decision to go the other way and assume all the distribution
7 points are untrusted. That's why things are (or at least will be) signed
8 by developers before they're uploaded to CVS.
9
10 --kurt