Clear questions and runnable code get the best and fastest answer |
|
PerlMonks |
Re^4: Getting Fed Up with ActiveStateby tsee (Curate) |
on Dec 03, 2006 at 19:25 UTC ( [id://587536]=note: print w/replies, xml ) | Need Help?? |
Addressing your remark about special cases: It wasn't me who started doing those binary releases of PAR. I just became responsible for the PAR releases and continued ongoing practice. Whether 15 versions of Template::Toolkit should be supplied via CPAN is an entirely different question than whether we should add various PPM packages per distribution. Furthermore, I do know organizations who only allow thoroughly inspected code to be used. But that doesn't matter. It's a question of principle. Why would you view the authors of source distributions as trustworthy, and those same people packaging those same modules in binary form as untrustworthy? If you have the processes and procedures in place to verify the integrity of your systems when you build a module from CPAN via a source distribution, those same processes and procedures should also be used to detect miscreant binary installations. That's ridiculous. Disassemble shared libraries? I don't think so. Also, you suggested that anybody should be able to upload PPMs for any modules. Steffen
In Section
Meditations
|
|