.buildinfo
server
In order to build packages reproducibly, you not only need identical
sources but also some external definition of the environment used for a
particular build. This definition includes the inputs and the outputs
and—in the Debian case—are available in a
$package_$architecture_$version.buildinfo
file.
It is not currently clear how these files could or should be handled in practice, hence the creation of this server to investigate.
0x1310D22166A88B5F
profitbricks-build6-i386 (Automatically generated key for signing .buildinfo files)
0xA6B59AB7CD69D4AC
profitbricks-build2-i386 (Automatically generated key for signing .buildinfo files)
0xB42DAAC6B200534A
codethink-sled11-arm64 (Automatically generated key for signing .buildinfo files)
0xBFF95736F711C117
profitbricks-build15-amd64 (Automatically generated key for signing .buildinfo files)
0x9AF2973C993317DB
codethink-sled16-arm64 (Automatically generated key for signing .buildinfo files)
0x5FA3DA39796FBACF
profitbricks-build1-amd64 (Automatically generated key for signing .buildinfo files)
0x9538881E43D098FB
jtx1b (Automatically generated key for signing .buildinfo files)
0x4AB633F00B2AAAA1
odxu4a (Automatically generated key for signing .buildinfo files)
0x3B7B0B0B40A455E9
opi2a (Automatically generated key for signing .buildinfo files)
0x00C8B57F4FD162BC
odu3a (Automatically generated key for signing .buildinfo files)
0xB42DAAC6B200534A
codethink-sled11-arm64 (Automatically generated key for signing .buildinfo files)
0xFDD087C6FCA6B1BE
codethink-sled10-arm64 (Automatically generated key for signing .buildinfo files)
0xA6B59AB7CD69D4AC
profitbricks-build2-i386 (Automatically generated key for signing .buildinfo files)
0x1310D22166A88B5F
profitbricks-build6-i386 (Automatically generated key for signing .buildinfo files)
0xB42DAAC6B200534A
codethink-sled11-arm64 (Automatically generated key for signing .buildinfo files)
0x192E42C740CBB29A
codethink-sled12-arm64 (Automatically generated key for signing .buildinfo files)
0x4EE7D57983E7F103
ff2b (Automatically generated key for signing .buildinfo files)
0x3790BB94D873CF00
p64c (Automatically generated key for signing .buildinfo files)
0xAAA3AE5F86A5D0BA
codethink-sled13-arm64 (Automatically generated key for signing .buildinfo files)
0xC58597F326D8D216
codethink-sled14-arm64 (Automatically generated key for signing .buildinfo files)
$ gpg --output=- --clearsign my.buildinfo | curl -X PUT --max-time 30 --data-binary @- https://buildinfo.debian.net/api/submit