[Haskell-cafe] Offer to mirror Hackage
markus.l2ll at gmail.com
Tue Dec 14 10:02:39 CET 2010
The reason for mirror was avilability, yes, and when the signatures were
only on the central sever, then the user could choose not to install
packages from mirrors, when they were not available.
But now if the signatures were generated by the uploader, then the morrors
would be just as secure as the central? I mean -- if we don't trust DNS,
then the main hackage has no special security advantages?
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Haskell-Cafe