[arch-general] Pacman and package signing
Gaetan Bisson
bisson at archlinux.org
Mon Aug 29 13:42:24 EDT 2011
[2011-08-29 12:13:29 -0500] Myra Nelson:
> If I sign the
> package with makepkg or manually with gpg --detach-sign, it creates a
> it creates a detached signature, .sig file. I have my key using
> pacman-key. When I attempt to install the package I get an error
> message "invalid or corrupted package (PGP signature)".
You also need to `pacman-key --edit-key` your key and put its trust
level to ultimate.
> If I manually
> sign the package with gpg --sign, every thing is fine.
Not sure I understand what you mean here...
Cheers.
--
Gaetan
More information about the arch-general
mailing list