Hi Paul,

none of the debian package in the repository is signed as far I known.
At this moment we choose the way number 2.

But could someone show me where is the Packages.gz file generated? I mean the source file /python, java, perl, ???/ uff, the spacewalk is mix of languages ;)

        best regards
                Peter

On 1/17/13 6:48 PM, Paul Robert Marino wrote:
Number 2 is the way all the other distros do it.
Also usually you don't resign previously signed packages.

On Jan 17, 2013 8:17 AM, "Mgr. Peter Hudec" <[email protected]
<mailto:[email protected]>> wrote:

    Hi all,

    We are using spacewalk system for debian based systems.
    We want to use the GPG verification of the packages/repository.

    1) signing repository
    Debian is using Release and Release.gpg files for this purpose. Is there
    any way how to generate these files in spacewalk system ? The only
    generated file is right now Packages.

    I haven;t found any way how to add this file to the repository
    manually or
    generate it on the fly.

    2) sign the package
    The second way how to achieve this is to sign each package before adding
    to the repository.


    At this time we prefer the first way. Does anyone have any
    experience with
    it?

             Peter

    --
    Mgr. Peter Hudec
    IT/Technical Specialist

    CNC a.s.
    Strojnícka 33
    821 05 Bratislava

    web: http://www.cnc.sk/
    mail: [email protected] <mailto:[email protected]>
    mob: +421 905 997203 <tel:%2B421%20905%20997203>



    _________________________________________________
    Spacewalk-list mailing list
    [email protected] <mailto:[email protected]>
    https://www.redhat.com/__mailman/listinfo/spacewalk-__list
    <https://www.redhat.com/mailman/listinfo/spacewalk-list>


_______________________________________________
Spacewalk-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/spacewalk-list

Reply via email to