Re: Solved: Etch is not installable

Heinrich Rebehn writes:

> Hugo Vanwoerkom wrote:
>> Heinrich Rebehn wrote:
>>> Heinrich Rebehn wrote:
>>>> Hi list,
>>>> I tried installing etch today, but the installation of the base
>>>> system fails to install initrd-tools, lilo and grub, thus leaving
>>>> the system unbootable.
>>>> The package installation fails with
>>>> "The following packages cannot be authenticated"
>>>> i also tried using different mirrors, but to no avail.
>>>> What can i do?
>>>> Thanks for any help,
>>>> Heinrich
>>> In the install system, hacked /bin/apt-install to invoke apt-get
>>> with --force-yes
>> Heinrich,
>> This:
>> APT::Get::AllowUnauthenticated "true";
>> in /etc/apt/apt.conf
>> wouldn't do the same thing?
>> H
> This may well be, i did not know about that. At installation time i
> would expact this to work "out of the box".
> Thanks for the hint anyway, will use it for future installations :-)

Actually, you would NOT want to use that setting in general. It
protects against compromised repositories. Joey Hess had the following
to say today:

> From: Joey Hess <joeyh@debian.org>
> Subject: Re: Package Signatures
> Newsgroups: gmane.linux.debian.user
> Date: Wed, 4 Jan 2006 13:51:18 -0500
> Lukas Ruf wrote:
> > - how do the power users of Debian react in such situations?  Do you
> >   continue with the apt-get upgrade or do you skip it?
> That really depends on the machine to some extent. The message you
> quoted could occur if someone has compromised the mirror and is trying
> to provide trojaned packages, so if I care about the security of the
> machine I don't do anything until I've checked whether I can trust the
> key. If it's some one-off or unimportant machine, I might say "y" and
> assume that if it's a real compromise someone else will notice it and a
> large stink will eventually be raised about the security breach.

Bill Wohler
Maintainer of comp.mail.mh FAQ and MH-E. Vote Libertarian!
If you're passed on the right, you're in the wrong lane.

