On Sat, 15 Apr 2023 14:01:27 +0100 Alain D D Williams <a...@phcomp.co.uk> wrote:
> While we are talking about this, is there any reason why all the > http: should not be https: ? > > I have done this on my own machine without ill effect. One reason is if one is using a local cache which does not inspect https streams. Last I knew, such local caches included apt-cacher-ng. -- Does anybody read signatures any more? https://charlescurley.com https://charlescurley.com/blog/