Le mercredi, 28 février 2018, 06.04:27 h CET Sean Whitton a écrit :
> On Tue, Feb 27 2018, Didier 'OdyX' Raboud wrote:
> > ** is restricted to be arch:all (~ shipping interpreter scripts)
> 
> There are compiled binary ecosystems that would benefit from your
> proposal, such as Haskell, so could you say more about why you want this
> restriction?

Mostly out of wanting to (eventually) start small.  It just reduces the 
problem surface.  Arch:all packages can virtually be built anywhere, on any 
architecture, so vdebs wouldn't (really) need a buildd network; or at least 
not a multiple-architectures' buildd network.

At first glance, it would also seem to vastly facilitate reproducibility, and 
reduces potential for executables' injection.

In pretty much the same vein as dh-virtualenv, a possibility would be to do 
install-time build, through triggers for example.

Attachment: signature.asc
Description: This is a digitally signed message part.

Reply via email to