Julien concern about the bug making apt-check-sigs unusable in Sarge can
be addressed by patching the script. It can be modified to (optionally)
accept valid signature by expired key.

Handling of the new command line option would require accepting VALIDSIG
in addition to GOODSIG and treating SIGEXPIRED as "non lethal".

Turning apt-check-sigs into official sarge package (security update) may
also make sence [as I understand from previous messages it is obsolete
in later releases].

-- 
[pl2en Andrew] Andrzej Adam Filip : [EMAIL PROTECTED] : [EMAIL PROTECTED]
http://anfi.homeunix.net/


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to