Hi Paul,
none of the debian package in the repository is signed as far I known.
At this moment we choose the way number 2.
But could someone show me where is the Packages.gz file generated? I
mean the source file /python, java, perl, ???/ uff, the spacewalk is mix
of languages ;)
best regards
Peter
On 1/17/13 6:48 PM, Paul Robert Marino wrote:
Number 2 is the way all the other distros do it.
Also usually you don't resign previously signed packages.
On Jan 17, 2013 8:17 AM, "Mgr. Peter Hudec" <[email protected]
<mailto:[email protected]>> wrote:
Hi all,
We are using spacewalk system for debian based systems.
We want to use the GPG verification of the packages/repository.
1) signing repository
Debian is using Release and Release.gpg files for this purpose. Is there
any way how to generate these files in spacewalk system ? The only
generated file is right now Packages.
I haven;t found any way how to add this file to the repository
manually or
generate it on the fly.
2) sign the package
The second way how to achieve this is to sign each package before adding
to the repository.
At this time we prefer the first way. Does anyone have any
experience with
it?
Peter
--
Mgr. Peter Hudec
IT/Technical Specialist
CNC a.s.
Strojnícka 33
821 05 Bratislava
web: http://www.cnc.sk/
mail: [email protected] <mailto:[email protected]>
mob: +421 905 997203 <tel:%2B421%20905%20997203>
_________________________________________________
Spacewalk-list mailing list
[email protected] <mailto:[email protected]>
https://www.redhat.com/__mailman/listinfo/spacewalk-__list
<https://www.redhat.com/mailman/listinfo/spacewalk-list>
_______________________________________________
Spacewalk-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/spacewalk-list