[arch-general] pacman security when importing new keys?

Dennis Lange dennis at lumalab.net
Tue Feb 10 22:14:58 UTC 2015


Am 10.02.2015 um 21:43 schrieb Daniel Micay:
> On 10/02/15 09:33 AM, Dennis Lange wrote:
>> Ah ok, importing a key != trusted key. Only to get things sorted.
>> Why I need to accept the import of a key manually?
> 
> They're a new Trusted User and a new archlinux-keyring release
> with their key hasn't been released. The trust comes from the fact
> that it has been signed by 3+ master keys though - you should not
> be marking trust yourself unless you actually want to mark some
> third party packagers as trusted.
> 

Thanks for your explanation!
Next time I have not to worry to do something wrong.


More information about the arch-general mailing list