On Thu, Oct 23, 2008 at 01:43:31PM -0500, Raphael Geissert wrote:
> Luk Claes wrote:

> > Raphael Geissert wrote:

> >> What about getting every maintainer's key in a keyring and LDAP? it would
> >> finally allow for a better management system to take place

> > The problem is that not all maintainers have keys in the first place.

> Which in theory is not good. Even packages that later get uploaded by a DD
> should be signed.

That shouldn't be relevant if the sponsor is doing their job of reviewing
the package before upload.

-- 
Steve Langasek                   Give me a lever long enough and a Free OS
Debian Developer                   to set it on, and I can move the world.
Ubuntu Developer                                    http://www.debian.org/
[EMAIL PROTECTED]                                     [EMAIL PROTECTED]


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to