Comment 1 for bug 1716550

Revision history for this message
Colin Watson (cjwatson) wrote :

This was basically bug 1190879. Individual archive/suite pairs that were last published before that fix landed will vary depending on the exact way the upload happened, but everything after that should consistently have the stronger hashes. Unfortunately with the current architecture republishing all old PPAs would be extremely expensive - it would be much worse than https://www.chiark.greenend.org.uk/~cjwatson/blog/re-signing-ppas.html, which was just about re-signing Release files.

We haven't historically removed old suites from PPAs, essentially because PPAs are user-managed and it's up to them to clean up. It's conceivable that we might change that policy at some point, but it would be a substantial change requiring announcement and discussion.

Please don't subscribe ~ubuntu-archive to bug reports about PPAs; it is not their area. I've unsubscribed them.