Description

I have spent a lot of time making packages reproducible, but we also want to be able to trust our VM images. For this, I will use the straight-forward 'altimagebuild' package that has a stage for preparing the rootfs and another for turning that into the image.

Goals

  • it must work
  • it must be bit-reproducible

Resources

https://build.opensuse.org/package/show/home:bmwiedemann:reproducible:distribution:ring1/altimagebuild

Looking for hackers with the skills:

Nothing? Add some keywords!

This project is part of:

Hack Week 24

Activity

  • about 2 months ago: epaolantonio liked this project.
  • about 2 months ago: llansky3 liked this project.
  • about 2 months ago: bmwiedemann started this project.
  • about 2 months ago: bmwiedemann originated this project.

  • Comments

    • bmwiedemann
      about 2 months ago by bmwiedemann | Reply

      Besides the package, I documented the general method: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/2351df56d4d66b6d16a01681e97b46fa238cc04f . The package still has the extra trick with the grub2-install and mkconfig.

    Similar Projects

    This project is one of its kind!