mikeb mikeb has posted comments on this change. ( https://review.coreboot.org/c/coreboot/+/23856 )
Change subject: tint: introduce the new tint build system with checksum verification
......................................................................
Patch Set 12: Code-Review+1
Patch Set 12:
Luckily ./util/crossgcc/buildgcc script is quite stable - no major changes at its' core functions for at least half year - so the minor maintenance for my tint build system is rarely needed. ;-) I'm rebasing it sometimes to show that I tested it recently and its still working good.
This change is important because it adds the checksum verification for tint archive that's downloaded from FSF mirror. I trust FSF, but what if their server is hacked and tint archive replaced with something malicious? If we are the only people who are getting tint from them, such a change - without the checksum verification - could be unnoticed. Or maybe a MitM attack (replace the archive only for one person)
--
To view, visit
https://review.coreboot.org/c/coreboot/+/23856
To unsubscribe, or for help writing mail filters, visit
https://review.coreboot.org/settings
Gerrit-Project: coreboot
Gerrit-Branch: master
Gerrit-Change-Id: I1d24f222d1b92030b81bba3951e243a2a9f37290
Gerrit-Change-Number: 23856
Gerrit-PatchSet: 12
Gerrit-Owner: mikeb mikeb
mikebdp2@gmail.com
Gerrit-Reviewer: Jonathan Neuschäfer
j.neuschaefer@gmx.net
Gerrit-Reviewer: Kyösti Mälkki
kyosti.malkki@gmail.com
Gerrit-Reviewer: Martin Roth
martinroth@google.com
Gerrit-Reviewer: Mike Banon
mikebdp2@gmail.com
Gerrit-Reviewer: Nico Huber
nico.h@gmx.de
Gerrit-Reviewer: Patrick Rudolph
siro@das-labor.org
Gerrit-Reviewer: Paul Menzel
paulepanter@users.sourceforge.net
Gerrit-Reviewer: Stefan Reinauer
stefan.reinauer@coreboot.org
Gerrit-Reviewer: build bot (Jenkins)
no-reply@coreboot.org
Gerrit-Reviewer: mikeb mikeb
mikebdp2@gmail.com
Gerrit-Comment-Date: Wed, 10 Apr 2019 08:28:02 +0000
Gerrit-HasComments: No
Gerrit-Has-Labels: Yes
Gerrit-MessageType: comment