On 5/28/06, Bo Ørsted Andresen <[EMAIL PROTECTED]> wrote:
this security measure. In this case the tar file changed without changing the
name after you originally installed the package (or after it was downloaded
to the mirror that you are using...). This change could be a bugfix. By
making your own digest you don't get this bugfix...

I just have to say that if upstream authors include a bug-fix without
releasing a new version (and a differently named tarball), they need a
good clubbing.

I can see a reason to release the same version of software with a
documentation update (readme, authors, known issues, faq, etc), which
would cause a different tarball with the same name.

But if any of the sources change, I feel that should *always* be a new version.

-Richard

--
[email protected] mailing list

Reply via email to