[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Default package-archives to HTTPS
From: |
Ben Sturmfels |
Subject: |
Re: Default package-archives to HTTPS |
Date: |
Tue, 08 Sep 2015 09:04:02 +1000 |
User-agent: |
Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Icedove/31.8.0 |
On 08/09/15 09:00, Xue Fuqiao wrote:
> On Mon, Sep 7, 2015 at 12:43 PM, Ben Sturmfels <address@hidden> wrote:
>> Hi Folks,
>
> Hi Ben,
>
>> I've attached a small patch to switch the `package-archives' default,
>> http://elpa.gnu.org/packages/, to HTTPS. This helps to avoid
>> surveillance or tampering with downloaded packages.
>
> Thanks for wanting to contribute! There was some related discussion
> before, but (unfortunately) no substantial progress has been made yet.
>
> See:
>
> * https://debbugs.gnu.org/cgi/bugreport.cgi?bug=21382
> * https://lists.gnu.org/archive/html/emacs-devel/2015-05/msg00110.html
Fantastic, thanks Xue. Please disregard my message - I'm glad Francois
is already onto this. :)
signature.asc
Description: OpenPGP digital signature