From b9fe55705f19fc39889da6157714039047aed4c9 Mon Sep 17 00:00:00 2001 From: Joey Hess Date: Thu, 1 Oct 2015 15:54:37 -0400 Subject: Do verification of checksums of annex objects downloaded from remotes. * When annex objects are received into git repositories, their checksums are verified then too. * To get the old, faster, behavior of not verifying checksums, set annex.verify=false, or remote..annex-verify=false. * setkey, rekey: These commands also now verify that the provided file matches the key, unless annex.verify=false. * reinject: Already verified content; this can now be disabled by setting annex.verify=false. recvkey and reinject already did verification, so removed now duplicate code from them. fsck still does its own verification, which is ok since it does not use getViaTmp, so verification doesn't happen twice when using fsck --from. --- debian/changelog | 14 ++++++++++++++ 1 file changed, 14 insertions(+) (limited to 'debian') diff --git a/debian/changelog b/debian/changelog index 7dfeabf50..548ba0593 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,3 +1,17 @@ +git-annex (5.20150931) UNRELEASED; urgency=medium + + * Do verification of checksums of annex objects downloaded from remotes. + * When annex objects are received into git repositories from other git + repos, their checksums are verified then too. + * To get the old, faster, behavior of not verifying checksums, set + annex.verify=false, or remote..annex-verify=false. + * setkey, rekey: These commands also now verify that the provided file + matches the key, unless annex.verify=false. + * reinject: Already verified content; this can now be disabled by + setting annex.verify=false. + + -- Joey Hess Thu, 01 Oct 2015 12:42:56 -0400 + git-annex (5.20150930) unstable; urgency=medium * Added new linux standalone "ancient" build to support kernels -- cgit v1.2.3