svn commit: r518273 - head/comms/conserver-com
Craig Leres
leres at freebsd.org
Thu Nov 28 19:31:16 UTC 2019
On 11/24/2019 10:37 PM, Alexey Dokuchaev wrote:
> On Sat, Nov 23, 2019 at 01:43:27PM -0800, Craig Leres wrote:
>> On 2019-11-23 13:37, Mathieu Arnold wrote:
>>> On Sat, Nov 23, 2019 at 09:08:02PM +0000, Craig Leres wrote:
>>>> New Revision: 518273
>>>> URL:https://svnweb.freebsd.org/changeset/ports/518273
>>>>
>>>> Log:
>>>> comms/conserver-com: Update distinfo and remove BROKEN
>>> This seems to be missing the description of the changes between the two
>>> distribution files.
>>
>> Sorry. "Apparently github occasionally changes their software resulting
>> in a change in the tarchive checksum. Update to reflect the current
>> version."
>
> The thing is, you are expected to obtain both versions of the distfile
> and compare them, explicitly asserting in the commit log that there were
> no malicious changes introduced (and it they were, notify the upstream,
> other distros' package maintainers, users, and general public immediately).
>
> This is documented in the PHB Section 13.18.
When this happened, I downloaded the new tarchive and unpacked both and
did a diff -r on them; the files were identical. It looked like the same
files packaged in a different order.
I understand now that this should have gone in the commit message.
Craig
More information about the svn-ports-all
mailing list