[WIP] Use packaged keyrings for Evolix and Sury repositories #198
No reviewers
Labels
No labels
bug
duplicate
enhancement
help wanted
invalid
question
security
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference: evolix/ansible-roles#198
Loading…
Add table
Reference in a new issue
No description provided.
Delete branch "keyring"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
The Goal is to use the key provided by the packaged keyrings (as Debian does), allowing them to be updated as part of the usual (security) upgrade process. It uses the keyrings as stored in /usr/share/keyrings (instead of confiles in /etc), thus allowing smooth upgrades.
It would be possible to download the keyring packages when needed, but it weakens the verification process, so I included the (small) packages directly in the repository (instead of the keyring).
[WIP] marker as it’s an untested first shot at it.
Pushed fixed version to unstable after tests
Pull request closed