On Wed, 2017-03-08 at 21:48 -0500, Christopher Meng wrote: > Hi list, > > Per some old news[1], I believe SHA-1 is not secure anymore. But after > checking fedora-review(1), I still see possibility of using SHA-1. > > Is it the time to drop SHA-1? What do you mean by 'using SHA-1' and 'drop SHA-1', exactly? You're not giving enough context. Not all uses of hashing algorithms have security consequences. -- Adam Williamson Fedora QA Community Monkey IRC: adamw | Twitter: AdamW_Fedora | XMPP: adamw AT happyassassin . net http://www.happyassassin.net _______________________________________________ devel mailing list -- devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to devel-leave@xxxxxxxxxxxxxxxxxxxxxxx