Reproducible Builds get funded by the Core Infrastructure Initiative
On Tue 23 June 2015
with tags debian reproducible builds
Written by Ana Guerrero Lopez
The Core Infrastructure Initiative announced today that they will
support two Debian Developers, Holger Levsen and Jérémy Bobbio, with $200,000
to advance their Debian work in reproducible builds and to collaborate more
closely with other distributions such as Fedora, Ubuntu, OpenWrt to benefit
from this effort.
The Core Infrastructure Initiative (CII) was established in 2014 to
fortify the security of key open source projects. This initiative is funded by
more than 20 companies and managed by The Linux Foundation.
The reproducible builds initiative aims to enable anyone to reproduce
bit by bit identical binary packages from a given source, thus enabling anyone
to independently verify that a binary matches the source code from which it
was said it was derived. For example, this allow the users of Debian to rebuild
packages and obtain exactly identical packages to the ones provided by the
Debian repositories.