Comment 9 for bug 1883272

Revision history for this message
Erich Eickmeyer (eeickmeyer) wrote :

Jumping in on this as anything affecting affects flavors as well.

Note that is not presented over https. In #ubuntustudio we've had people complain when the SHA256 they are presented with is not over https, so they assume the checksums could be compromised. I would be happy to direct them to that tutorial since we use for our iso links, except it's moot if the basic assumption is that everything on *could* be compromised if it's not https.

I understand the logistical issues with changing to https due to the various mirrors, but this seems to be coming up with more frequently since 20.04's release.

Basically, unless becomes https, in the eyes of a lot of people, verifying SHA256 is moot if they fear it's compromised due to lack of https, which means that entire tutorial doesn't really apply in their eyes.