发件人:George <caozhi1214@qq.com>
收件人:dev <dev@openeuler.org>
时 间:2021-07-15 11:33:31
主 题:[Dev] 【通知】openEuler 包构建网络依赖变更通知
Hi,ALL
社区为保证openEuler系统重复构建总能获得同样的版本,避免因不确定的网络因素导致包构建的不确定,最终实现净室构建,社区基础设施近期将对包构建门禁做网络白名单管控。
(如果构建过程中依赖外部不确定的内容,会导致每次构建得到的结果可能都不一样。并且构建过程中访问网络,额外增加了中间人攻击的风险。)
如您在社区的包构建过程中(包括CI门禁和OBS任务)遇到相关网络访问问题,可以采用如下建议:
1、尽可能收紧不确定网络依赖;
2、在基础设施当前的网络中找替代依赖;
3、将依赖包引入社区;
4、如果不能使用上述建议解决构建问题可单独联系Infra组,infra@openeuler.org
Hi, ALL
The community aims to ensure that the same version is always obtained during repeated builds of the openEuler system to avoid uncertainty of package construction due to uncertain network factors.
(If the build process relies on externally uncertain content, the results of each build may be different. In addition, access to the network during the build process increases the risk of man-in-the-middle attacks.)
In the near future, the community infrastructure will implement network trustlist control for package building access control.
If you encounter network access problems during package building in the community, you can use the following suggestions:
1. Minimize the dependence on uncertain networks
2. Find alternative dependencies on the current infrastructure network.
3. Introduce dependency packages to the community.
4. If you cannot use the preceding suggestions to solve the build problem, contact the Infra team at infra@openeuler.org.