On Thu, 28 May 2015 17:15:01 -0600 Stephen John Smoogen smooge@gmail.com wrote:
Wow.. I thought this was already in place a long time ago. I say this looks good and should be done.
ok. I tried to push this out today, fell into a rabbit hole and reverted it. ;(
The problem is this: If we have proxies talk to their local mirrorlist server, we don't want them to do so via http. It could be MITMed or sniffed or whatever. So, I tried to get the mirrorlists able to do https. No big problem there, but I could find no way to make httpd happy with the change to https there. :(
Unless we can figure out a way to get that part working, I fear this will all just be a dream.
kevin