Posted by: Anonymous Coward
on October 27, 2004 09:07 PM
Have opensource hosted md5sum servers (where the program maintainer would update the sum) apt-get or other package managers could go and check a long list of md5sums over several servers to ensure the package downloaded is the correct and untouched one? The idea that there would be too many sources for the sums being checked it would be impossible to crack and change every one of them.
Could this be incorperated into package managers
Posted by: Anonymous Coward on October 27, 2004 09:07 PM#