sebb> Surely one can allow for differences in the values of these entries?

Different values would make checksum of the archive different.

In the ideal world I must not trust binaries of a release (e.g. during
release vote). I should be able to build exactly the same binaries in my
environment and verify that my checksum matches the one presented for a
vote.

sebb> This was added to make it easier to track back to the builder in case
sebb> there are issues with the build.

Neither history nor comments in build xml mean that.

${user.name} can easily contain private bits.

Vladimir

Reply via email to