Re: Debian SHA-1 deprecation

2016-05-19 Thread Daniel Pocock
On 19/05/16 03:17, Paul Wise wrote: > On Wed, May 18, 2016 at 9:20 PM, Daniel Pocock wrote: > >> Can anybody comment on how Debian users will be impacted by SHA-1 >> deprecation? > > There is some info related to that in these two wiki pages: > > https://wiki.debian.org/SHA-1 The way that pa

Re: Debian SHA-1 deprecation

2016-05-18 Thread Paul Wise
On Wed, May 18, 2016 at 11:09 PM, Elmar Stellnberger wrote: > Besides these issues; has anyone ever thought of deprecating md5sum-s in > package headers and using sha256sums instead? That would be of great help > for tools like debsums or https://www.elstel.org/debcheckroot. AFAIK the md5sums i

Re: Debian SHA-1 deprecation

2016-05-18 Thread Paul Wise
On Wed, May 18, 2016 at 9:20 PM, Daniel Pocock wrote: > Can anybody comment on how Debian users will be impacted by SHA-1 > deprecation? There is some info related to that in these two wiki pages: https://wiki.debian.org/SHA-1 https://wiki.debian.org/Teams/Apt/Sha1Removal -- bye, pabs https:/

Re: Debian SHA-1 deprecation

2016-05-18 Thread Elmar Stellnberger
Am 2016-05-18 um 15:20 schrieb Daniel Pocock: Can anybody comment on how Debian users will be impacted by SHA-1 deprecation? In particular: - will libraries like OpenSSL and GnuTLS continue to support it in stretch and beyond? - will web servers like Apache support it in server certificates

Debian SHA-1 deprecation

2016-05-18 Thread Daniel Pocock
Can anybody comment on how Debian users will be impacted by SHA-1 deprecation? In particular: - will libraries like OpenSSL and GnuTLS continue to support it in stretch and beyond? - will web servers like Apache support it in server certificates or certificate chains? - will web servers and o