[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: verification of packages with gnupg/apt-key



Lennart Sorensen wrote:

> I was under the impression the majority of packages in debian were not
> signed, since no one has come up with a way for the buildd to sign a
> package using a package maintainers key (and I imagine no one should try
> either).

All packages are signed.  Ones uploaded by the buildd's are signed by
the buildd owner instead (semi-manually after the build completes, not
as an automated process AIUI).

Cameron.

Attachment: signature.asc
Description: Digital signature


Reply to: