Software Distribution Current main concern: security One of the our current serious limitations is the lack of security, we do not have any integrity or authority technology in place for our packages, they are provided by several mirrors which can be potentially compromised. APT repositories already provide the expected level of security with PGP signed MD5 checksums. APT Adoption Requirements APT is a stable and widely used software distribution technology, however it has some limitations when applied to our specific distribution model that need to be resolved:

Pin: origin local.getdeb.net
Pin-Priority: 400'

There are a few projects to extend the current software distribution options, all of them are based on APT but use different approaches: https://launchpad.net/ubuntu/+spec/third-party-apt https://blueprints.launchpad.net/ubuntu/+spec/apt-firefox-archive-handler

Since most of this APT based methods are tied to the existing apt distribution methods and maintainers for which the development control is very strict it may be preferable to create a new simpler technology, that could meet both the security and single click goals, this will be described on a new page, SoftwareDistributionSystem .

SoftwareDistribution (last edited 2008-01-26 16:00:16 by JoaoPinto)