[packagekit] Extending the RepoDetail signal

Richard Hughes hughsient at gmail.com
Thu Oct 7 04:08:26 PDT 2010


On 7 October 2010 11:25, Anders F Björklund <afb at algonet.se> wrote:
> Does this make any difference between whether it is the rpm packages
> that are signed, or if it is the repomd.xml metadata that is signed ?

I think just the latter. If the files are unsigned in a signed repo,
we should probably abort with an error. If they are unsigned in an
unsigned repo, we just ask the user for the unsigned authentication,
which is hopefully what happens now.

Certainly, for a user, anything more than a boolean "safe" and
"unsafe" is probably overkill.

Richard.



More information about the PackageKit mailing list