[packagekit] Signed packages again again

Matthias Clasen matthias.clasen at gmail.com
Thu Nov 15 15:17:10 PST 2007


On Nov 15, 2007 6:08 PM, David Zeuthen <david at fubar.dk> wrote:
>
> > Also, how do we define trusted?
>
> Didn't I define that with this
>
>  where "untrusted" means that the package isn't signed by a key that the
>  user has decided to trust. Specifically for rpm this means that the
>  user hasn't done 'rpm --import <key>' for the key the package is signed
>  with. Specifically if the rpm isn't signed, this action will be
>  needed.

Hmm.

In the use-cases PK is designed for, all updates should be "trusted", no ?



More information about the PackageKit mailing list