[aur-general] FYI: New packages have to be signed

Ionut Biru ibiru at archlinux.org
Tue Nov 1 14:14:44 EDT 2011


On 11/01/2011 05:04 PM, Smartboy wrote:
> Just wondering, as a user, does this mean Pacman will now complain if one
> builds and installs unsigned packages from the AUR?
>

it won't complain because SignLevel is Optional TrustedOnly, which means 
that it will check if a signature is available.


p.s top posting sucks

> Smartboy
>
> On Tue, Nov 1, 2011 at 7:40 AM, Pierre Schmitz<pierre at archlinux.de>  wrote:
>
>> Hi all,
>>
>> as discussed all new packages have to be signed from now on. This mean
>> that if you use a build server you have to download the package to
>> create the signature. Also see
>> https://wiki.archlinux.org/index.php/DeveloperWiki:Signing_Packages
>>
>> A new version of devtools will follow soon.
>>
>> Greetings,
>>
>> Pierre
>>
>> --
>> Pierre Schmitz, http://pierre-schmitz.com
>>


-- 
Ionuț


More information about the aur-general mailing list