Browse Source

Remove checksums MD5 and SHA1 and only keep SHA256

Thanks Joerg Jaspert, those weak checksum records are already
removed (or at least partly) from archive.
Announcement:
  - https://lists.debian.org/debian-devel-announce/2016/03/msg00006.html
Discussion threads:
  - https://lists.debian.org/debian-devel/2016/03/threads.html#00193
  - https://lists.debian.org/debian-boot/2016/03/threads.html#00201
tags/1.43
Roger Shimizu 5 years ago
parent
commit
6b91d296dc
2 changed files with 16 additions and 3 deletions
  1. +15
    -0
      debian/changelog
  2. +1
    -3
      net-retriever

+ 15
- 0
debian/changelog View File

@@ -1,3 +1,18 @@
net-retriever (1.43) UNRELEASED; urgency=medium

[ Roger Shimizu ]
* Remove checksums MD5 and SHA1, which is considered weak and unnecessary,
and only keep SHA256.
Thanks Joerg Jaspert, those weak checksum records are already removed
(or at least partly) from archive.
Announcement:
- https://lists.debian.org/debian-devel-announce/2016/03/msg00006.html
Discussion threads:
- https://lists.debian.org/debian-devel/2016/03/threads.html#00193
- https://lists.debian.org/debian-boot/2016/03/threads.html#00201

-- Roger Shimizu <rogershimizu@gmail.com> Tue, 22 Mar 2016 22:16:30 +0900

net-retriever (1.42) unstable; urgency=medium

[ Colin Watson ]


+ 1
- 3
net-retriever View File

@@ -31,8 +31,6 @@ get_checksum() {
file="$2"

case "$type" in
MD5Sum) md5sum "$file" | cut -d' ' -f1 ;;
SHA1) sha1sum "$file" | cut -d' ' -f1 ;;
SHA256) sha256sum "$file" | cut -d' ' -f1 ;;
*) error "Unknown checksum type $type for $file"
esac
@@ -47,7 +45,7 @@ checkmatch() {
# Note: When checksum types are modified by the FTP team, make
# sure to update both the list below and the case statement in
# get_checksum().
for checksumtype in MD5Sum SHA1 SHA256; do
for checksumtype in SHA256; do
pkgchecksum=$(get_checksum "$checksumtype" "$Packages")
if [ -z "$pkgchecksum" ]; then
error "Please report a bug: get_checksum() returned nothing"


Loading…
Cancel
Save