Shawn Walker wrote:

> What's the preferred direction?

You also have the option of putting a dummy string in as a signature,
signing the resulting serialized format, and then replacing the dummy
string with the signature hash before writing to disk.  It's more
complicated than serializing twice, or writing the signature in a different
file, but it's not that complicated.

If you don't like that, then I concur with johansen -- option 2 is the best
of the three you outline.

Danek
_______________________________________________
pkg-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/pkg-discuss

Reply via email to