Re: secure package signing related websites

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]



Ionut Biru <ibiru@xxxxxxxxxxxxx> on Sun, 04 Mar 2012 12:57:53 +0200:
> On 03/04/2012 12:22 PM, Christian Hesse wrote:
> > I think it makes sense to not allow pages related to package signing being
> > delivered via http. Instead automatically redirect to https to avoid man
> > in the middle attacks. First site that comes to my mind:
> > https://www.archlinux.org/master-keys/
> 
> open a feature request and tag it with {archweb}

Done. Thanks!
https://bugs.archlinux.org/task/28771
-- 
Best regards,
Chris
                         O< ascii ribbon campaign
                   stop html mail - www.asciiribbon.org


[Index of Archives]     [Linux Wireless]     [Linux Kernel]     [ATH6KL]     [Linux Bluetooth]     [Linux Netdev]     [Kernel Newbies]     [Share Photos]     [IDE]     [Security]     [Git]     [Netfilter]     [Bugtraq]     [Yosemite News]     [MIPS Linux]     [ARM Linux]     [Linux Security]     [Linux RAID]     [Linux ATA RAID]     [Samba]     [Device Mapper]
  Powered by Linux