Bug#910941: apt-get changelog uses insecure HTTP for Debian

2018-10-14 Thread Ben Hutchings
On Sun, 2018-10-14 at 01:48 +0200, David Kalnischkies wrote: > Control: clone -1 -2 > Control: severity -1 wishlist > Control: reassign -2 ftp.debian.org > > On Sat, Oct 13, 2018 at 05:06:37PM +0100, Ben Hutchings wrote: > > The default value of Acquire::Changelogs::URI::Origin::Debian is > >

Bug#910941: apt-get changelog uses insecure HTTP for Debian

2018-10-13 Thread David Kalnischkies
Control: clone -1 -2 Control: severity -1 wishlist Control: reassign -2 ftp.debian.org On Sat, Oct 13, 2018 at 05:06:37PM +0100, Ben Hutchings wrote: > The default value of Acquire::Changelogs::URI::Origin::Debian is > "http://metadata.ftp-master.debian.org/changelogs/@CHANGEPATH@_changelog;.

Bug#910941: apt-get changelog uses insecure HTTP for Debian

2018-10-13 Thread Ben Hutchings
Package: apt Version: 1.7.0 Severity: normal The default value of Acquire::Changelogs::URI::Origin::Debian is "http://metadata.ftp-master.debian.org/changelogs/@CHANGEPATH@_changelog;. Since metadata.ftp-master.debian.org supports HTTP-S and redirects to the https: scheme, the URL should be