3 ms·
> The only viable way to allow it is by vetting every upload, and uh, good luck finding volunteers for that. Debian seems to have no problems with that.
by thresh 11y ago
> The only viable way to allow it is by vetting every upload, and uh, good luck finding volunteers for that.
Debian seems to have no problems with that.
- lisivka 11y agoWhy parrent comment was downvoted? Major Linux distributions (Fedora/Debian/SuSE/etc.) are excellent example of proper solution for the "dependency hell" problem for C programs. JavaScript is the new C, but for web, so same solution will appear for same problem.
- nyan4 11y ago> Debian seems to have no problems with that. Because Debian developers do not package all sort of crap.
- pjc50 11y agoDebian vets the hell out of the developers, but once you're a dev you can update any package. It's a major faux pax to push an update to a package that you're not responsible for without a very good reason, but since they're all signed with the uploader's public keys this isn't a problem.
- bpchaps 11y agoYeah, no. This is 90% of the reason why I stopped using Debian based distros. There's a complete lack of consistency with how they do their package management to the point that I eventually started to build most things from source. Too many outdated and unpatched packages. Archlinux is a bit better, but the crazy amount of timeouts and the everything-goes mentality is getting pretty frustrating. CentOS/rhel isn't much better, for what it's worth. Dear god, those repos....