[pacman-dev] [Package Signing] [repo-add] Check signature used to verify is not only good but is also in a list of accepted keys

Denis A. Altoé Falqueto denisfalqueto at gmail.com
Thu Feb 3 21:05:53 EST 2011


On Fri, Feb 4, 2011 at 12:10 AM, Allan McRae <allan at archlinux.org> wrote:
> Essentially I am not so sure myself!
>
> This TODO came from a note in the "repo-add: add -v/--verify option" commit
> message.   But in the end, I would think the pacman keyring should be used
> for verification here as separation from the users keyring is probably
> preferable.

Fine, I'll implement it and we can discuss it further when I submit the patches.

Thanks!

-- 
A: Because it obfuscates the reading.
Q: Why is top posting so bad?

-------------------------------------------
Denis A. Altoe Falqueto
Linux user #524555
-------------------------------------------


More information about the pacman-dev mailing list