Derek Price wrote:
One more thought on planning this feature, this is important enough to
go into the stable release series, I think, but we are awfully close to
being able to bless feature as stable anyhow.

Would there be any objections to GPG-signed commits going into stable as
things stand?

Would there be any objections to 1.12.x being blessed as stable after
adding GPG-signed commits, importing an updated diffutils, possibly
completing the commitid stuff, and maybe an RC release or two?

Since security measures usually improve (or are completely disproved) with wide-spread review, I'd be disinclined to add it into the current stable release without at least _some_ field trials to make sure the approach is correct and bug-free.

I'd feel better with the second approach - add it to 1.12.x, with the other changes, produce as many RC releases as are required to get it right, then (hallelujah!) declare 1.12 released.

--
Jim



_______________________________________________
Bug-cvs mailing list
[email protected]
http://lists.nongnu.org/mailman/listinfo/bug-cvs

Reply via email to