Re: creaping featurism
seth vidal <[email protected]>
| Newsgroups | gmane.linux.rpm.metadata |
|---|---|
| Message-ID | <1068418094.16321.133.camel@binkley> |
> Those metadata are useful, but not for the process of building a distributed > transaction solver. Why should we add them to the metadata description ? > IMHO extracting them is fine, but they are not needed for this purpose > so at best it should be optional. > Also note that the MD5 is confusing for users, they think it's the > package md5 while it means the payload MD5 in RPM at least, <nod> To be terribly honest I was mostly thinking about the gpg/pgp signature as useful for dep resolving. I know this is ludicrous at some level but I've been asked, by multiple people to allow depresolution based on signature. so if you have two packages that resolve a dependency for some package, you should look at the gpg sigs to see who they are signed by and install the one with a preferred signature. Have the RC or apt people been asked to do this sort of thing? -sv