07687a8514
server's certificate. This is perfectly safe: we don't care whether the server is being spoofed --- only the cryptographic hash of the output matters. svn path=/nixpkgs/trunk/; revision=4377
24 lines
625 B
Bash
24 lines
625 B
Bash
source $stdenv/setup
|
|
|
|
header "exporting $url (r$rev) into $out"
|
|
|
|
prefetch=$(dirname $out)/svn-checkout-tmp-$outputHash
|
|
echo $prefetch
|
|
if test -e "$prefetch"; then
|
|
mv $prefetch $out
|
|
else
|
|
# Pipe the "p" character into Subversion to force it to accept the
|
|
# server's certificate. This is perfectly safe: we don't care
|
|
# whether the server is being spoofed --- only the cryptographic
|
|
# hash of the output matters.
|
|
echo 'p' | svn export -r "$rev" "$url" $out
|
|
fi
|
|
|
|
actual=$(nix-hash $out)
|
|
if test "$actual" != "$outputHash"; then
|
|
echo "hash is $actual, expected $outputHash" >&2
|
|
exit 1
|
|
fi
|
|
|
|
stopNest
|