From b0b4d2d06d44c971dd744d19d1b4edf1baab3658 Mon Sep 17 00:00:00 2001 From: Martin Weinelt Date: Mon, 24 Jun 2024 02:25:04 +0200 Subject: [PATCH] pkgs/top-level: stop permitting openssl 1.1 A year has passed and a limited number of packages still rely on this, so it is probably safe to remove these. --- pkgs/top-level/release-python.nix | 6 ------ pkgs/top-level/release.nix | 8 -------- 2 files changed, 14 deletions(-) diff --git a/pkgs/top-level/release-python.nix b/pkgs/top-level/release-python.nix index 81ea4d3403a7..bb4ead25066d 100644 --- a/pkgs/top-level/release-python.nix +++ b/pkgs/top-level/release-python.nix @@ -12,12 +12,6 @@ nixpkgsArgs ? { config = { allowUnfree = false; inHydra = true; - permittedInsecurePackages = [ - # Keep evaluating home-assistant, which is transitively affected - # by home-assistant-chip-core consuming OpenSSL 1.1. Affects roughly - # 800 jobs. - "openssl-1.1.1w" - ]; }; } }: diff --git a/pkgs/top-level/release.nix b/pkgs/top-level/release.nix index 04f10bb0fac1..8df22c6ced83 100644 --- a/pkgs/top-level/release.nix +++ b/pkgs/top-level/release.nix @@ -29,14 +29,6 @@ , nixpkgsArgs ? { config = { allowUnfree = false; inHydra = true; - permittedInsecurePackages = [ - # *Exceptionally*, those packages will be cached with their *secure* dependents - # because they will reach EOL in the middle of the 23.05 release - # and it will be too much painful for our users to recompile them - # for no real reason. - # Remove them for 23.11. - "openssl-1.1.1w" - ]; }; } # This flag, if set to true, will inhibit the use of `mapTestOn`