Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 17 Nov 2012 15:43:31 +0400
From:      Peter Vereshagin <peter@vereshagin.org>
To:        questions@freebsd.org
Subject:   sha-1 Re: Security Incident on FreeBSD Infrastructure
Message-ID:  <20121117114331.GB5642@external.screwed.box>
In-Reply-To: <201211171004.qAHA4QH4082362@freefall.freebsd.org>
References:  <201211171004.qAHA4QH4082362@freefall.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Hello.

2012/11/17 10:04:26 +0000 FreeBSD Security Officer <security-officer@freebsd.org> => To FreeBSD Security :
FSO> -----BEGIN PGP SIGNED MESSAGE-----
FSO> Hash: SHA1

What's the state of the art about 'sha-1' digesting with freebsd security? At
the least debian seemed to be migratring since 2009:

  http://www.debian-administration.org/users/dkg/weblog/48

"We need to be prepared for the eventual deprecation of SHA-1, but we do
appear to still have time."

How much serious shall this be to us?

Thank you.

--
Peter Vereshagin <peter@vereshagin.org> (http://vereshagin.org) pgp: A0E26627 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20121117114331.GB5642>