Group: Software/FSDG distributions/Security
From LibrePlanet
(Clarify move) |
(→Introduction: Add releases signatures) |
||
Line 2: | Line 2: | ||
This page tracks the progress of FSDG distributions with regard to reproducible builds, bootstrapable builds and other similar security features. | This page tracks the progress of FSDG distributions with regard to reproducible builds, bootstrapable builds and other similar security features. | ||
+ | |||
+ | == Releases and signatures == | ||
+ | |||
+ | {| class="wikitable" border="1" | ||
+ | ! Distribution | ||
+ | ! Signed installers | ||
+ | |- | ||
+ | ! Dragora 3.0-beta1 | ||
+ | | {{no|Checksums only}}<ref>https://mirror.fsf.org/dragora/v3/iso/beta1/</ref> | ||
+ | |- | ||
+ | ! Dynebolic | ||
+ | | ? | ||
+ | |- | ||
+ | ! Guix 1.4.0 | ||
+ | | {{yes}}<ref>https://guix.gnu.org/en/download/</ref> | ||
+ | |- | ||
+ | ! Guix "latest" | ||
+ | | {{no}}<ref>https://guix.gnu.org/en/download/latest/</ref> | ||
+ | |- | ||
+ | ! Hyperbola v0.4.2 | ||
+ | | {{yes}}<ref>https://wiki.hyperbola.info/doku.php?id=en:manual:verify_live_images</ref> | ||
+ | |- | ||
+ | ! LibreCMC | ||
+ | | ? | ||
+ | |- | ||
+ | ! Parabola | ||
+ | | {{yes}}<ref>https://wiki.parabola.nu/Get_Parabola</ref> | ||
+ | |- | ||
+ | ! ProteanOS | ||
+ | | ? | ||
+ | |- | ||
+ | ! PureOS 10 (byzantium) | ||
+ | | {{no|Checksums only}}<ref>https://downloads.puri.sm/byzantium/gnome/2022-06-02/</ref> | ||
+ | |- | ||
+ | ! Replicant 6.0 0004 | ||
+ | | {{yes}}<ref>https://ftp.osuosl.org/pub/replicant/images/replicant-6.0/0004/images/</ref> | ||
+ | |- | ||
+ | ! Trisquel 10.0.1 | ||
+ | | {{yes}}<ref>https://cdimage.trisquel.info/trisquel-images/</ref> | ||
+ | |- | ||
+ | ! Ututo S | ||
+ | | ? | ||
+ | |} | ||
== Repdoducible builds and bootstrapable builds == | == Repdoducible builds and bootstrapable builds == |
Revision as of 12:03, 22 February 2023
Contents
Introduction
This page tracks the progress of FSDG distributions with regard to reproducible builds, bootstrapable builds and other similar security features.
Releases and signatures
Distribution | Signed installers |
---|---|
Dragora 3.0-beta1 | Checksums only[1] |
Dynebolic | ? |
Guix 1.4.0 | Yes[2] |
Guix "latest" | No[3] |
Hyperbola v0.4.2 | Yes[4] |
LibreCMC | ? |
Parabola | Yes[5] |
ProteanOS | ? |
PureOS 10 (byzantium) | Checksums only[6] |
Replicant 6.0 0004 | Yes[7] |
Trisquel 10.0.1 | Yes[8] |
Ututo S | ? |
Repdoducible builds and bootstrapable builds
Self hosted distributions
Distribution | Reproducible builds officially supported[9] | Comments |
---|---|---|
Dragora | ? |
|
Dynebolic | ? |
|
Guix | Yes |
|
Hyperbola | ? |
|
Parabola | ? |
|
PureOS | ? |
|
Trisquel | ? |
|
Ututo S | ? |
|
Small distributions
Distribution | Reproducible builds officially supported[9] | Comments |
---|---|---|
LibreCMC | ? |
|
ProteanOS | ? |
|
Replicant | not yet |
|
- ↑ https://mirror.fsf.org/dragora/v3/iso/beta1/
- ↑ https://guix.gnu.org/en/download/
- ↑ https://guix.gnu.org/en/download/latest/
- ↑ https://wiki.hyperbola.info/doku.php?id=en:manual:verify_live_images
- ↑ https://wiki.parabola.nu/Get_Parabola
- ↑ https://downloads.puri.sm/byzantium/gnome/2022-06-02/
- ↑ https://ftp.osuosl.org/pub/replicant/images/replicant-6.0/0004/images/
- ↑ https://cdimage.trisquel.info/trisquel-images/
- ↑ 9.09.1 If reproducible builds officially supported, we should be able to open bugs about non reproducible packages and/or send patches to fix them. If it is not supported we could try to send patches to enable reproducible builds and/or help the distribution supporting it instead.
- ↑ 10.0010.0110.0210.0310.0410.0510.0610.0710.0810.0910.10 The official lists of projects supporting reproducible is at https://reproducible-builds.org/projects/ . Note that not all theses projects are FSDG compliant and that some might even contain nonfree software and other really problematic issues.
- ↑ https://wiki.parabola.nu/Reproducible_Builds