Hacker News new | ask | show | jobs
by chei0aiV 3767 days ago
If you can think of any improvements Debian could make, please do suggest them via bug reports or on the mailing list. If you would like to work on fixing some of our issues, here are the ones we know about:

https://wiki.debian.org/Hardening/RepoAndImages

2 comments

Debian is already outstanding in this regard (and others)!

One minor suggestion would be to provide ISO hashes over HTTPS. It's just as secure as using GPG with fingerprints sent over HTTPS, and it's a lot easier.

The fingerprints (https://www.debian.org/CD/verify) could also be made more prominent (perhaps put on the main download page).

Thanks again!

Maybe in a GPG-signed release email add magnet URLs for the official torrents.

This is kind of in 'No magnet: links for bittorrent downloads on SSL'