[Git][reproducible-builds/reproducible-website][master] 2023 04: += https://lists.zx2c4.com/pipermail/wireguard/2023-April/008045.html
Holger Levsen (@holger)
gitlab at salsa.debian.org
Tue Apr 11 10:43:33 UTC 2023
Holger Levsen pushed to branch master at Reproducible Builds / reproducible-website
Commits:
817ad970 by Holger Levsen at 2023-04-11T12:43:17+02:00
2023 04: += https://lists.zx2c4.com/pipermail/wireguard/2023-April/008045.html
Signed-off-by: Holger Levsen <holger at layer-acht.org>
- - - - -
1 changed file:
- _reports/2023-04.md
Changes:
=====================================
_reports/2023-04.md
=====================================
@@ -17,3 +17,18 @@ draft: true
* [FIXME](https://blog.josefsson.org/2023/04/10/trisquel-is-42-reproducible/)
* [FIXME](https://www.marktechpost.com/2023/04/09/a-new-ai-research-proposes-pythia-a-suite-of-decoder-only-autoregressive-language-models-ranging-from-70m-to-12b-parameters/) Pythia AI model that allows to "replicate the exact training process"
+
+* [FIXME](https://lists.zx2c4.com/pipermail/wireguard/2023-April/008045.html)
+ The WireGuard Android app can now be reproducibly built, so that its contents
+ can be publicly verified. The F-Droid project now does this verification, by
+ comparing their build of WireGuard to the build that the WireGuard project
+ publishes. When they match, the new version becomes available. This is very
+ positive news.
+
+ As part of this development, we're taking the opportunity to unify the signing
+ keys used for WireGuard builds by F-Droid, the Google Play Store, and
+ elsewhere. Previously, F-Droid would release builds using their own signing
+ key [1], and the Google Play Store would release builds using yet a different
+ signing key [2]. Moving forward, both F-Droid and the Google Play Store will
+ release builds using the same signing key that the WireGuard project uses [3].
+
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/817ad970f13ca3f64b3557e7c5e10fbbba0f62ad
--
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/817ad970f13ca3f64b3557e7c5e10fbbba0f62ad
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.reproducible-builds.org/pipermail/rb-commits/attachments/20230411/8c25be50/attachment.htm>
More information about the rb-commits
mailing list