[Git][reproducible-builds/reproducible-website][master] hamburg2023: consistency tweaks
Arnout Engelen (@raboof-guest)
gitlab at salsa.debian.org
Thu Nov 2 16:58:15 UTC 2023
Arnout Engelen pushed to branch master at Reproducible Builds / reproducible-website
Commits:
052785fb by Arnout Engelen at 2023-11-02T17:57:56+01:00
hamburg2023: consistency tweaks
- - - - -
7 changed files:
- _events/hamburg2023/born-repro.md
- _events/hamburg2023/guix-todo.md
- _events/hamburg2023/images-filesystems.md
- _events/hamburg2023/public-verification.md
- _events/hamburg2023/rb-commandments.md
- _events/hamburg2023/signature-storage.md
- _events/hamburg2023/verification-use-cases.md
Changes:
=====================================
_events/hamburg2023/born-repro.md
=====================================
@@ -1,38 +1,36 @@
---
layout: event_detail
-title: Born Reproducible 1
+title: Collaborative Working Sessions - Born Reproducible I
event: hamburg2023
order: 213
permalink: /events/hamburg2023/site-audiences/
---
-# Notes
+- Who is running it
+- Who is running builds
+- At what granularity are build steps defined
+- What os/platform are necessary to support
+- How (or if) non-owned build inputs are fetched/supported
+- What are the different "stacks" that run builders
+- How closely does "build input" reflect the full set of things that can inpact output
+- How "explicit" is the build definition
-Who is running it
-Who is running builds
-At what granularity are build steps defined
-What os/platform are necessary to support
-How (or if) non-owned build inputs are fetched/supported
-What are the different "stacks" that run builders
-How closely does "build input" reflect the full set of things that can inpact output
-How "explicit" is the build definition
-
-Rebuild evidence
-(re)builder indentity
-Both successes and failures to rebuild
+- Rebuild evidence
+- (re)builder indentity
+- Both successes and failures to rebuild
What are we trying to do?
-Understand build diffs
-Build integrity <- many similar builders
-Build malice <- many different builders
-Rebuild debugging/detection
-* Transient mismatch
-* Deterministic mismatch
-Rebuild smells <- environment variation injector (e.g., build diversity fuzzer)
+* Understand build diffs
+* Build integrity <- many similar builders
+* Build malice <- many different builders
+* Rebuild debugging/detection
+ * Transient mismatch
+ * Deterministic mismatch
+* Rebuild smells <- environment variation injector (e.g., build diversity fuzzer)
What are the techniques that can help?
-File system isolation
-Ephemeral environment
-Deterministic Scheduling
-Multiple sequential rebuilds
+* File system isolation
+* Ephemeral environment
+* Deterministic Scheduling
+* Multiple sequential rebuilds
=====================================
_events/hamburg2023/guix-todo.md
=====================================
@@ -1,6 +1,6 @@
---
layout: event_detail
-title: Guix To-Do's
+title: Collaborative Working Sessions - Guix To-Do's
event: hamburg2023
order: 203
permalink: /events/hamburg2023/guix-todo/
@@ -8,12 +8,12 @@ permalink: /events/hamburg2023/guix-todo/
# Long term goals:
- - All packages build reproducibly
- - Benefits security
- - Future proofing
-
- - K of N trust in substitutes (where K > 1)
- - Benefits security
+- All packages build reproducibly
+ - Benefits security
+ - Future proofing
+
+- K of N trust in substitutes (where K > 1)
+ - Benefits security
# Things related to reproducible builds
=====================================
_events/hamburg2023/images-filesystems.md
=====================================
@@ -1,13 +1,11 @@
---
layout: event_detail
-title: Images, filesystems and containers
+title: Collaborative Working Sessiosn - Images, filesystems and containers
event: hamburg2023
order: 303
permalink: /events/hamburg2023/images-filesystems/
---
-# Filesystem/Container images meeting
-
https://reproducible-builds.org/docs/system-images/
## Filesystems
=====================================
_events/hamburg2023/public-verification.md
=====================================
@@ -1,6 +1,6 @@
---
layout: event_detail
-title: Public verification service
+title: Collaborative Working Sessions - Public verification service
event: hamburg2023
order: 205
permalink: /events/hamburg2023/verification1/
=====================================
_events/hamburg2023/rb-commandments.md
=====================================
@@ -1,13 +1,11 @@
---
layout: event_detail
-title: The Ten Commandments
+title: Collaborative Working Sessions - The Ten Commandments
event: hamburg2023
order: 201
permalink: /events/hamburg2023/rb-commandments/
---
-# RB Ten Commandments
-
original draft:
Commandments by the church of reproducible builds
=====================================
_events/hamburg2023/signature-storage.md
=====================================
@@ -1,14 +1,11 @@
---
layout: event_detail
-title: Signature storage and sharing
+title: Collaborative Working Sessions - Signature storage and sharing
event: hamburg2023
order: 204
permalink: /events/hamburg2023/signature-storage/
---
-Signature storage and sharing
------------------------------
-
* Most uses PGP keys, some uses SSH keys for commit signing (YubiKeys
support HSM management of SSH keys)
* Key discovery is not always trivial
=====================================
_events/hamburg2023/verification-use-cases.md
=====================================
@@ -1,14 +1,11 @@
---
layout: event_detail
-title: Verification Use Cases
+title: Collaborative Working Sessions - Verification Use Cases
event: hamburg2023
order: 211
permalink: /events/hamburg2023/verification2/
---
-Verification use cases
-----------------------
-
- have some central place for people to upload attestations?
- put everything into one database?
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/052785fb090d39eff25b410cbcc3a3188cae2a59
--
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/052785fb090d39eff25b410cbcc3a3188cae2a59
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.reproducible-builds.org/pipermail/rb-commits/attachments/20231102/50772ce4/attachment.htm>
More information about the rb-commits
mailing list