▲ 0 r/archlinux
How to delay package upgrades by 24 hours?
I am looking for a way to delay package downloads and upgrades by 24 hours (a.k.a. they must be 24 hours old or it downloads an older variant). However I have had trouble finding a proper solution.
The reason I am looking for this is because dependency chain attacks are on the rise (my company has already been hit once), and I want to secure my system from these kinds of attacks wherever possible.
I am aware I could just head to another distro, like Debian, which isn't a rolling release. However I am already here and don't want to go through the trouble of learning another flavor of Linux.
u/Ralkey_official — 17 hours ago