From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from smtpout2.vodafonemail.de (smtpout2.vodafonemail.de [145.253.239.133]) by sourceware.org (Postfix) with ESMTPS id 2F7653858D37 for ; Sat, 22 Jan 2022 20:45:16 +0000 (GMT) DMARC-Filter: OpenDMARC Filter v1.4.1 sourceware.org 2F7653858D37 Authentication-Results: sourceware.org; dmarc=none (p=none dis=none) header.from=nexgo.de Authentication-Results: sourceware.org; spf=pass smtp.mailfrom=nexgo.de Received: from smtp.vodafone.de (smtpa06.fra-mediabeam.com [10.2.0.37]) by smtpout2.vodafonemail.de (Postfix) with ESMTP id 5089660D44 for ; Sat, 22 Jan 2022 21:45:15 +0100 (CET) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nexgo.de; s=vfde-smtpout-mb-15sep; t=1642884315; bh=cg+oUY3QdxrKN7PvO+g67SPC85bsNJQAr05buy6RYUA=; h=From:To:Subject:References:Date:In-Reply-To; b=M4b6qf+1cl2HPil/pUCOnpFf4pEMAZhmLxTVbJhQdkg+HV8GRIOFCsR/ijC/Yu2O3 88E6M3vZfsN03ulr/jl4XVDSjHPUiSlOTEYTQwpaB1CK3dp13C2VYqDc+7LFRSc1Jx yo5ncj6oMwUmMsAAql+Qcu9aQs4PjUrqMM4OjKKU= Received: from Gertrud (p5b2f3fbc.dip0.t-ipconnect.de [91.47.63.188]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by smtp.vodafone.de (Postfix) with ESMTPSA id 4Jh7Y65Px0zMkrt for ; Sat, 22 Jan 2022 20:45:11 +0000 (UTC) From: Achim Gratz To: cygwin-apps@cygwin.com Subject: Re: Using ZChunk for =?utf-8?Q?setup=E2=80=A6?= References: <87h7ad5fv6.fsf@Rainer.invalid> <6ee3cda2-33b8-ccdc-ef24-f75a1d8ee046@dronecode.org.uk> Date: Sat, 22 Jan 2022 21:45:07 +0100 In-Reply-To: <6ee3cda2-33b8-ccdc-ef24-f75a1d8ee046@dronecode.org.uk> (Jon Turney's message of "Sat, 22 Jan 2022 20:23:21 +0000") Message-ID: <87tudvts8c.fsf@Rainer.invalid> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/27.2 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain X-purgate-type: clean X-purgate-Ad: Categorized by eleven eXpurgate (R) http://www.eleven.de X-purgate: This mail is considered clean (visit http://www.eleven.de for further information) X-purgate: clean X-purgate-size: 1211 X-purgate-ID: 155817::1642884314-00006655-AC304E48/0/0 X-Spam-Status: No, score=-3030.0 required=5.0 tests=BAYES_00, DKIM_SIGNED, DKIM_VALID, DKIM_VALID_AU, DKIM_VALID_EF, RCVD_IN_BARRACUDACENTRAL, RCVD_IN_DNSWL_LOW, RCVD_IN_MSPIKE_H2, SPF_HELO_NONE, SPF_PASS, TXREP autolearn=no autolearn_force=no version=3.4.4 X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on server2.sourceware.org X-BeenThere: cygwin-apps@cygwin.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Cygwin package maintainer discussion list List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 22 Jan 2022 20:45:17 -0000 Jon Turney writes: > How would the signature be checked? Is it for the reconstructed full > zchunk file? The signature should be for the full (reconstructed) file I think, the individual chunks of the changeset are locked in by SHA256 checksums anyway. > One slightly related issue which it would be good to address if > possible when adding this is that rsync is only file-atomic, not > repo-atomic, so we may get a compressed ini file and signature which > don't match as they are different moments in time during an update. I > think currently no-one notices this if it happens, as setup silently > falls back to an older compression type, but it would be nice to stop > generating those eventually. One of the things I am still thinking about is switching from the ini format to YAML. In this case the signature could/should be part of the data structure (JOSE/COSE style), so you'd only ever have to look at a single file and it wouldn't matter how you got it together. Regards, Achim. -- +<[Q+ Matrix-12 WAVE#46+305 Neuron microQkb Andromeda XTk Blofeld]>+ Factory and User Sound Singles for Waldorf rackAttack: http://Synth.Stromeko.net/Downloads.html#WaldorfSounds