Message242544
After further consideration, I realised there's an important difference between this case and the hash randomisation case: having the "-E" switch imply hash randomisation was OK, but having it imply HTTPS certificate verification after the system administrator has explicitly turned it off is going to cause problems.
The system administrator controlled configuration file gets around that by not relying on the interpreter's environment variable based configuration support.
As a result, I've now recommended pursuing the configuration file based approach, with a PEP to standardise the precise name, format and semantics for the configuration file: https://bugzilla.redhat.com/show_bug.cgi?id=1173041#c8
Redistributors would opt-in by patching their system Python to implement that informational PEP, rather than the feature appearing in upstream CPython itself. |
|
Date |
User |
Action |
Args |
2015-05-04 05:28:04 | ncoghlan | set | recipients:
+ ncoghlan, lemburg, barry, doko, janssen, pitrou, vstinner, alex, r.david.murray, bkabrda, dstufft, rkuska |
2015-05-04 05:28:04 | ncoghlan | set | messageid: <1430717284.43.0.498983197799.issue23857@psf.upfronthosting.co.za> |
2015-05-04 05:28:04 | ncoghlan | link | issue23857 messages |
2015-05-04 05:28:03 | ncoghlan | create | |
|