On Wed, Apr 28, 2010 at 17:37, Linas <[email protected]> wrote: > I wrote about this topic ~1 month ago. > You don't need PKCis or distribute the keyrings themselves. GPG supports > transitive trust. > The pacman keyring would be installed by default trusting on whatever keys > a pacman root signature has signed (there could also be a different master > key for community developers). This sounds like the best solution proposed so far. +1
- Re: [pacman-dev] [arch-general] Package signing Linas
- Re: [pacman-dev] [arch-general] Package sig... Daenyth Blank
- Re: [pacman-dev] [arch-general] Package sig... Aleksis Jauntēvs
- Re: [pacman-dev] [arch-general] Package... Denis A . Altoé Falqueto
- Re: [pacman-dev] [arch-general] Pac... Aleksis Jauntēvs
- Re: [pacman-dev] [arch-general] Pac... Allan McRae
- Re: [pacman-dev] [arch-general]... Denis A . Altoé Falqueto
- Re: [pacman-dev] [arch-gen... Denis A . Altoé Falqueto
- Re: [pacman-dev] [arch-gen... Allan McRae
- Re: [pacman-dev] [arch... Denis A . Altoé Falqueto
- Re: [pacman-dev] [... Florian Pritz
- Re: [pacman-dev] [... Dan McGee
