[svn.haxx.se] · SVN Dev · SVN Users · SVN Org · TSVN Dev · TSVN Users · Subclipse Dev · Subclipse Users · this month's index

Re: Why do we check the base checksum so often?

From: Branko ─îibej <brane_at_e-reka.si>
Date: Sat, 04 Feb 2012 20:04:59 +0100

On 04.02.2012 19:51, Hyrum K Wright wrote:
> On Sat, Feb 4, 2012 at 11:06 AM, Bert Huijben <bert_at_qqmail.nl> wrote:
>> We could change that for Ev2 but how are you going to change Subversion
>> 1.0-1.7?
>>
>> Can I borrow your time-machine? ;-)
>>
>> Md5 is not unique enough to pick a base.
> Is SHA-1 sufficient? Should we be using SHA-256 to identify content in Ev2?

SHA-1 has already been spoofed. But only on contrived examples. We use
SHA-1 in the pristine store, so if there's a collision, the WC gets
blown out of the water anyway.

-- Brane
Received on 2012-02-04 20:05:37 CET

This is an archived mail posted to the Subversion Dev mailing list.