[Git][reproducible-builds/reproducible-presentations][master] toulouse talk: wip
Holger Levsen (@holger)
gitlab at salsa.debian.org
Fri Nov 15 17:13:39 UTC 2024
Holger Levsen pushed to branch master at Reproducible Builds / reproducible-presentations
Commits:
fe9e6af4 by Holger Levsen at 2024-11-15T18:13:26+01:00
toulouse talk: wip
Signed-off-by: Holger Levsen <holger at layer-acht.org>
- - - - -
2 changed files:
- 2024-11-16-R-B-rebuilding-what-is-distributed-from-ftp.debian.org/index.html
- 2024-11-16-R-B-rebuilding-what-is-distributed-from-ftp.debian.org/todo
Changes:
=====================================
2024-11-16-R-B-rebuilding-what-is-distributed-from-ftp.debian.org/index.html
=====================================
@@ -181,6 +181,7 @@ lunarⒶdebian.org / https://lunar.anargeek.net
<li>Working on Reproducible Builds since 2014.
Aiming to make all ❤️ Free Software reproducible.</li>
<li>Ask me anything, anytime. This is a pretty complex topic.</li>
+ <li class="fragment">I'm here to present the work of <b>many</b> people:</li>
<!-- li class="fragment">I'll <i>try</i> to be professional, not sure if I manage or care if I don't.</li -->
</ol>
</section>
@@ -190,189 +191,6 @@ lunarⒶdebian.org / https://lunar.anargeek.net
- <section data-background="images/Capitole_du_libre_logo.png" data-background-size="10%" data-background-position="93% 9%" data-transition="none">
- <h3>people working on this - TTBOMK</h3>
-
- <!-- taken from website.git/_data/contributors.yml -->
-<p style="font-size: 42%">
-
- akira
- • Alexander Bedrossian
- • Alexander Borkowski
- • Alexander Couzens (lynxis)
- • Alexis Bienvenüe
- • Alex Wilson
- • Allan Gunn (gunner)
- • Amit Biswas
- • Anders Kaseorg
- • Andrew Ayer
- • anonmos1
- • Anoop Nadig
- • Arnout Engelen
- • Asheesh Laroia
- • Atharva Lele
- • Ben Hutchings
- • Benjamin Hof
- • Bernhard M. Wiedemann
- • Boyuan Yang
- • Brett Smith
- • Calum McConnell
- • Carl Dong
- • Ceridwen
- • Chris Lamb
- • Chris Smith
- • Christoph Berg
- • Christopher Baines
- • Chris West
- • Cindy Kim
- • Clemens Lang
- • Clint Adams
- • Dafydd Harries
- • Daniel Edgecumbe
- • Daniel Kahn Gillmor
- • Daniel Shahaf
- • Daniel Stender
- • David A. Wheeler
- • David Bremner
- • David del Amo
- • David Prévot
- • David Suarez
- • Dhiru Kholia
- • Dhole
- • Drakonis
- • Drew Fisher
- • Ed Maste
- • Edward Betts
- • Eitan Adler
- • Elio Qoshi
- • Eli Schwartz
- • Emanuel Bronshtein
- • Emmanuel Bourg
- • Esa Peuha
- • Evangelos Ribeiro Tzaras
- • Fabian Keil
- • Fabian Wolff
- • Felix C. Stegerman
- • Feng Chai
- • Frédéric Pierret (fepitre)
- • Georg Faerber
- • Georg Koppen
- • Gonzalo Bulnes Guilpain
- • Graham Christensen
- • Greg Chabala
- • Guillem Jover
- • Hannes Mehnert
- • Hans-Christoph Steiner
- • Harlan Lieberman-Berg
- • heinrich5991
- • Helmut Grohne
- • Hervé Boutemy
- • Holger Levsen (h01ger)
- • HW42
- • Ian Muchina
- • intrigeri
- • jajajasalu2
- • Jakub Wilk
- • James Fenn
- • Jan Nieuwenhuizen
- • Jan-Benedict Glaw
- • Javier Jardón
- • Jelle van der Waa
- • Jelmer Vernooij
- • Jérémy Bobbio (lunar)
- • Jochen Sprickerhof
- • Johannes Schauer Marin Rodrigues
- • John Neffenger
- • John Scott
- • Joshua Lock
- • Joshua Watt
- • Juan Picca
- • Juri Dispan
- • Justin Cappos
- • kpcyrd
- • Kushal Das
- • Levente Polyak
- • Linus Nordberg
- • Liyun Li
- • Ludovic Courtès
- • Lukas Puehringer
- • Maliat Manzur
- • marco
- • Marco Villegas
- • MarcoFalke
- • Marcus Hoffmann (bubu)
- • Marek Marczykowski-Górecki
- • Maria Glukhova
- • Mariana Moreira
- • marinamoore
- • Martin Suszczynski
- • Mathieu Bridon
- • Mathieu Parent
- • Mattia Rizzolo
- • Michael Pöhn
- • Mike Perry
- • Morten Linderud
- • Muz
- • Mykola Nikishov
- • Nick Gregory
- • Nicolas Boulenguez
- • Nicolas Vigier
- • Niels Thykier
- • Niko Tyni
- • Oejet
- • Omar Navarro Leija
- • opi
- • Orhun Parmaksiz
- • Oskar Wirga
- • Paul Gevers
- • Paul Spooren
- • Paul Wise
- • Peter Conrad
- • Peter De Wachter
- • Peter Wu
- • Philip Rinn
- • Pol Dellaiera
- • Profpatsch
- • Rahul Bajaj
- • Reiner Herrmann
- • Richard Purdie
- • Robbie Harwood
- • Roland Clobus
- • Russ Cox
- • Santiago Torres
- • Santiago Vila
- • Sascha Steinbiss
- • Satyam Zode
- • Scarlett Clark
- • Sebastian Crane
- • Seth Schoen
- • Simon Butler
- • Simon Josefsson
- • Simon Schricker
- • Snahil Singh
- • Stefano Rivera
- • Stefano Zacchiroli
- • Stéphane Glondu
- • Steven Adger
- • Steven Chamberlain
- • Sune Vuorela
- • Sylvain Beucler
- • Thomas Vincent
- • Tianon Gravi
- • Tim Jones
- • Tobias Stoeckmann
- • Tom Fitzhenry
- • Ulrike Uhlig
- • Vagrant Cascadian
- • Valentin Lorentz
- • Valerie R Young
- • Vipul
- • Wookey
- • Ximin Luo
-
- </p>
- </section>
-
<section data-background="images/Capitole_du_libre_logo.png" data-background-size="10%" data-background-position="93% 9%" data-transition="none">
<h4>according to https://reproducible-builds.org/who/people/</em></h4>
@@ -570,7 +388,7 @@ lunarⒶdebian.org / https://lunar.anargeek.net
<li class="fragment">Who knows about Reproducible Builds, why and how?</li>
<li class="fragment">Who contribute(s|d) to Reproducible Builds?</li>
<li class="fragment">Who knows that Reproducible Builds have been known for more than 10 years?<span class="fragment"> >30 years?</span></li>
- <li class="fragment">Who knows about SBOM? <span class="fragment"> (Software Bill of Materials) ~= our .buildinfo files from 2014!</li>
+ <li class="fragment">Who knows about SBOM? (Software Bill of Materials) ~= our .buildinfo files from 2014!</li>
</ul>
</section>
@@ -603,8 +421,8 @@ lunarⒶdebian.org / https://lunar.anargeek.net
</ul>
</section>
- <section data-background-color="white">
- <img class="fragment" src="images/fosdem2014-2.png" width="100%">
+ <section data-background-color="white" data-transition="none">
+ <img src="images/fosdem2014-2.png" width="100%">
</section>
<section data-background="images/Capitole_du_libre_logo.png" data-background-size="10%" data-background-position="93% 9%" data-transition="none">
@@ -621,7 +439,7 @@ lunarⒶdebian.org / https://lunar.anargeek.net
<h3>Our mission</h3>
<ul>
<li>Enable anyone to independently verify that a given source produces bit by bit identical results.</li>
- <li class="fragment">most people will say: what does that even mean?
+ <li class="fragment">Most people will probably say: what does that even mean?
</ul>
<br/>
<br/>
@@ -700,10 +518,10 @@ lunarⒶdebian.org / https://lunar.anargeek.net
<br><span class="fragment" style="font-size: 100%">https://reproducible-builds.org/resources/
<br>https://reproducible-builds.org/docs/
<br>https://reproducible-builds.org/docs/publications/</span></li>
- <li><span class="fragment" style="font-size: 70%">https://www.whitehouse.gov/briefing-room/statements-releases/2021/06/08/...</span></li>
- <ul class="fragment" style="font-size: 70%">
+ <span class="fragment"><li style="font-size: 70%">https://www.whitehouse.gov/briefing-room/statements-releases/2021/06/08/...</li>
+ <ul style="font-size: 70%">
<li><u>requires</u> "Software Bill of Material" (SBOM)s for govermental software</li>
- <li>so far only <u>recommends</u> reproducible builds / <b>verified</b> SBOMs</li>
+ <li>so far only <u>recommends</u> reproducible builds / <b>verified</b> SBOMs</li></span>
</ul></ul>
</section>
@@ -829,8 +647,8 @@ lunarⒶdebian.org / https://lunar.anargeek.net
<section data-background="images/Capitole_du_libre_logo.png" data-background-size="10%" data-background-position="93% 9%" data-transition="none">
<h2>Common reasons for unreproducibilities:</h2>
- <li class="fragment">timestamps, timestamps, timestamps<li>
- <li class="fragment">timestamps, timestamps, timestamps<li>
+ <span class="fragment"><li>timestamps, timestamps, timestamps<li>
+ <li>timestamps, timestamps, timestamps<li></span>
<li class="fragment">build paths, build paths<li>
<li class="fragment">all the rest</li>
</section>
@@ -885,12 +703,12 @@ lunarⒶdebian.org / https://lunar.anargeek.net
<ul>
<li class="fragment">430 known issue types in reproducible-notes.git<li>
<li class="fragment">Lunar's talk at CCCamp 2015</li>
+ <li class="fragment">https://reproducible-builds.org/docs/</li>
<span class="fragment">
<li>It's much easier to show common pitfalls making a package unreproducible than the opposite:<ul>
<li style="font-size: 85%">https://github.com/bmwiedemann/theunreproduciblepackage</li></ul></li</ul></li>
</span>
- <li class="fragment">https://reproducible-builds.org/docs/</li>
- </ul>
+ </ul>
</section>
<!-- section data-background="images/Capitole_du_libre_logo.png" data-background-size="10%" data-background-position="93% 9%" data-transition="none">
@@ -1256,7 +1074,6 @@ Warpforge.
<h2><code>snapshot.debian.org</code> got fixed!</h2>
<h1>🥳</h1>
<p>huge thanks to Linux Nordberg and DSA!</p>
- <p class="fragment">IMO this deserves a proper announcement with the technical details...!</p>
</section>
=====================================
2024-11-16-R-B-rebuilding-what-is-distributed-from-ftp.debian.org/todo
=====================================
@@ -1,6 +1,4 @@
-slash most of the 11y talk
slash more, make it a 30min talk, 5min intro, 10min old stuff, 10min news stuff, the end
-enabling supply chain security!
early slide: the diff between theory and praxis? 70% (or whatever then number then will be)
nach history
vor rebuilder
@@ -9,9 +7,6 @@ early slide: the diff between theory and praxis? 70% (or whatever then number th
[12:17] < Oejet> 159 `^debsnap failed$` out of latest 1000 logs.
[13:12] < jochensp> | h01ger: most (all?) of the 404 I saw where due to infrastructure and worked when retried
-drop ancient history?
-drop wireguard example, replace with somethin simpler?
-
introduce https://reproduce.d.n
explain rbuilderd archtecture and setup - it's easy
@@ -21,9 +16,10 @@ explain rbuilderd archtecture and setup - it's easy
update some numbers
ask people for $arch hardware to setup rebuilderd instances
mention riscv64 nodes
-admins wanted
mention netbsd table?
different "Summary, looking forward"
+'Short summary of Reproducible Debian' is also not the best title
+
out of scope: ?
mention potential debian.tests.r-b.o, archlinux.t.r-b.o, though atm tests.r-b.o points to ci tests, thats confusing
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-presentations/-/commit/fe9e6af4ec8ad2c4cee53a50c6d5db80a1c5d582
--
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-presentations/-/commit/fe9e6af4ec8ad2c4cee53a50c6d5db80a1c5d582
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.reproducible-builds.org/pipermail/rb-commits/attachments/20241115/1cc98611/attachment.htm>
More information about the rb-commits
mailing list