Re: Signed push progress?
- From
Junio C Hamano <gitster@pobox.com>
- Date
- Sep 28, 2011, 16:35 UTC
- Message-ID
- <7v62kc1v7m.fsf@alter.siamese.dyndns.org>
- In-Reply-To
- <20110928075054.GA13727@orbis-terrarum.net>
"Robin H. Johnson" <robbat2@gentoo.org> writes:
> from CVS to Git (we're very close now), we've decided that the signed > pushes will provide better security than our plan of previous plan of > using signed notes, so we'd like to see signed pushes succeed.
Could you elaborate on your "previous plan" a bit? What is a signed note, how would it help validate the authenticity, how do developers interact using it and what do you perceive as weaknesses compared to the signed push that we discussed a few weeks ago?