On 21/11/2018 19:35, Mike Linksvayer wrote:

I wonder whether INFOCERT's request is justifiable? I imagine they think obfuscated code is less likely to be modified, any modification potentially making the software non-compliant with the regulation, risking INFOCERT's reputation? Why isn't it good enough to have a warning that only unmodified versions are certified and that any

Obfuscating makes it more work to modify, but if you actually want to avoid modifications, you should digitally sign.

Obfuscation, to the extent that it makes it impossible to change, goes way beyond the level that makes it impossible to verify for security.

License-discuss mailing list

Reply via email to