Skip to content

fix: retain apt package source identity - #267

Merged
thesayyn merged 1 commit into
bazel-contrib:mainfrom
zbarsky-openai:zbarsky/apt-source-identity
Sep 14, 2026
Merged

thesayyn merged 1 commit into
bazel-contrib:mainfrom
zbarsky-openai:zbarsky/apt-source-identity

Conversation

@zbarsky-openai

Copy link
Copy Markdown
Contributor

Keep apt indexes distinct by source URL as well as suite, component, and
architecture. An Ubuntu archive and a PPA can both publish noble/main;
deduplicating only by suite/component/architecture drops an index and can
make concurrent downloads overwrite each other's files.

Scope snapshot facts to the actual source index and retain each selected
package's download URLs. Reconstructing those URLs from the suite can
otherwise send a package download to a different repository.

Continue reading existing v2 locks and refresh package provenance from
the selected index during resolution. Add coverage for source-specific
package URLs and legacy locks, and exercise snapshot and rolling sources
that share a suite in the fact-cache regression test.

Keep indexes from different URLs separate even when suite, component,
and architecture match. Scope snapshot facts by source URL and retain
the selected package's URLs instead of reconstructing them from the
suite. Continue reading existing v2 locks and refresh their provenance
when packages are resolved. Cover mixed snapshot/rolling sources and
package URLs that differ from the suite's URLs.
@thesayyn
thesayyn merged commit ab8cc5c into bazel-contrib:main Sep 14, 2026
13 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants