On 2010-May-29 19:38:20 -0300, Sylvio César <[email protected]> wrote: >2010/5/29 Alexey Dokuchaev <[email protected]>: >> On Sat, May 29, 2010 at 04:22:21PM +0000, Sylvio Cesar Teixeira wrote: >>> sylvio 2010-05-29 16:22:21 UTC >>> >>> FreeBSD ports repository >>> >>> Modified files: >>> math/dislin distinfo-6.0 distinfo-7.0 pkg-plist >>> Log: >>> - Tarball rerolled >> >> I've noticed several commits similar to this one about with port; which >> brings us to the following questions: >> >> - Did you verified the changes? > >Yes, the pkg-plist update too to this port.
I think you may have misunderstood the issue. The Project's concern with rerolled distfiles is that they may contain unuathorised (and potentially malicious) changes to the content. In order to guard against that, it is expected that before committing an update to the distinfo file, the committer will diff both the old and new distfiles and verify that any changes are not harmful. -- Peter Jeremy
pgpIyZ7rnqgp6.pgp
Description: PGP signature
