ports/189666: devel/py-demjson: unfetchable due to rerolled tarball

John Marino freebsd.contact at marino.st
Mon May 26 19:55:36 UTC 2014


On 5/26/2014 21:36, Bartłomiej Rutkowski wrote:
> I've just mailed the upstream, explaining the situation and
> suggesting releasing such changes as minor version numbers, like
> 2.0.1 or something similar. We'll see what, if any response will I
> receive, but for now, please, patch the port with new distinfo you've
> proposed. If this happens again and we wont get any answer by that
> time, we'll consider hosting the distfiles or removing the port.

Hi Bartek,
The issue is that I can't blindly update the distinfo.  Somebody (almost
always the maintainer) has to "diff" the original version and the new
version and evaluate exactly what changed and if it's malicious.

I already got chewed out last week for not verifying this personally,
but I generally trust the maintainer if he/she said he did this.  Have
you actually looked inside the new tarball?

Thanks,
John


More information about the freebsd-python mailing list