[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#963697: marked as done (apt: "apt-key verify" should be documented)



Your message dated Thu, 25 Jun 2020 15:19:29 +0200
with message-id <20200625151439.GA73468@debian.org>
and subject line Re: Bug#963697: apt: "apt-key verify" should be documented
has caused the Debian Bug report #963697,
regarding apt: "apt-key verify" should be documented
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact owner@bugs.debian.org
immediately.)


-- 
963697: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=963697
Debian Bug Tracking System
Contact owner@bugs.debian.org with problems
--- Begin Message ---
Package: apt
Version: 1.8.2.1
Severity: wishlist

Neither `apt-key --help` nor `man apt-key` mention the `verify` command.

Please also document if that API is stable - I guess so as
`warn_on_script_usage` is not called for its path.


-- System Information:
Debian Release: 10.4
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.19.0-9-amd64 (SMP w/4 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8), LANGUAGE=de:en_US (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages apt depends on:
ii  adduser                 3.118
ii  debian-archive-keyring  2019.1
ii  gpgv                    2.2.12-1+deb10u1
ii  libapt-pkg5.0           1.8.2.1
ii  libc6                   2.28-10
ii  libgcc1                 1:8.3.0-6
ii  libgnutls30             3.6.7-4+deb10u4
ii  libseccomp2             2.3.3-4
ii  libstdc++6              8.3.0-6

Versions of packages apt recommends:
ii  ca-certificates  20200601~deb10u1

Versions of packages apt suggests:
pn  apt-doc         <none>
ii  aptitude        0.8.11-7
ii  dpkg-dev        1.19.7
ii  gnupg           2.2.12-1+deb10u1
ii  gnupg1          1.4.23-1
ii  gnupg2          2.2.12-1+deb10u1
ii  powermgmt-base  1.34

-- no debconf information

--- End Message ---
--- Begin Message ---
On Thu, Jun 25, 2020 at 02:53:35PM +0200, Philipp Hahn wrote:
> Package: apt
> Version: 1.8.2.1
> Severity: wishlist
> 
> Neither `apt-key --help` nor `man apt-key` mention the `verify` command.
> 
> Please also document if that API is stable - I guess so as
> `warn_on_script_usage` is not called for its path.

The only stability we provide is that apt-key del ensures that the
given fingerprint is not present in trusted.gpg, if you run it from
a maintainer script of a package that depends on gnupg.

apt-key is deprecated. Especially `add -` - people should have stopped
using that ages ago.

The verify subcommand is for internal use only, and an implementation
detail that might disappear or diverge in behavior once apt stops
using apt-key for verification purposes.
-- 
debian developer - deb.li/jak | jak-linux.org - free software dev
ubuntu core developer                              i speak de, en

--- End Message ---

Reply to: