Skip to content

Comment on Effing Package Managementparent

Comments

Don't forget that if it's a RPM that comes out of the process you can gpg sign it, and verify the files that it provided when your server gets hacked. Sure, yeah, you can do that with a tar file, but it's pretty easy to run one command on a server and see what's changed.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.