Please read this before reporting a bug:
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
https://wiki.archlinux.org/title/Bug_reporting_guidelines
Do NOT report bugs when a package is just outdated, or it is in the AUR. Use the 'flag out of date' link on the package page, or the Mailing List.
REPEAT: Do NOT report bugs for outdated packages!
FS#70218 - [firewalld] Package is unreproducible due to .pyc shipped in the package
Attached to Project:
Community Packages
Opened by Z. Ren (zren) - Tuesday, 30 March 2021, 07:02 GMT
Last edited by Maxime Gauduin (Alucryd) - Wednesday, 14 April 2021, 09:59 GMT
Opened by Z. Ren (zren) - Tuesday, 30 March 2021, 07:02 GMT
Last edited by Maxime Gauduin (Alucryd) - Wednesday, 14 April 2021, 09:59 GMT
|
DetailsHi!
While conducting a research in the spirit of the "reproducible builds" [1], we have noticed that the package firewalld could not be built reproducibly, in that the python interpreter introduces non-determinism when generating the bytecode (.pyc file, see the attached diff.json). According to the documentation [2], invoking "export PYTHONHASHSEED=0" before the bytecode compiling will solve this issue. The attached patch does exactly this. Once applied, the package can be built reproducibly. Additional info: * firewalld 0.9.3-1 Steps to reproduce: The unreproducible build result could be detected with reprotest [2]. [1]: https://wiki.debian.org/ReproducibleBuilds [2]: https://wiki.archlinux.org/index.php/Python_package_guidelines#Reproducible_bytecode [3]: https://wiki.archlinux.org/index.php/DeveloperWiki:ReproducibleBuilds Best wishes. |
This task depends upon
Closed by Maxime Gauduin (Alucryd)
Wednesday, 14 April 2021, 09:59 GMT
Reason for closing: Fixed
Additional comments about closing: 0.9.3-2
Wednesday, 14 April 2021, 09:59 GMT
Reason for closing: Fixed
Additional comments about closing: 0.9.3-2
diff.json