[Rd] Certificates are not trusted

2024-08-15 Thread Ben Engbers

Hi,

After returning home from holiday I tried to update my Fedora 
installation with the command 'sudo dnf update -y'.


This command now terminates with the following error:
error: Verifying a signature using certificate 
3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
):

  1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
  2. Key 9D60CBB71A3B4456 invalid: key is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
error: Verifying a signature using certificate 
3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
):

  1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
  2. Key 9D60CBB71A3B4456 invalid: key is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
Copr repo for cran owned by iucar 


  11 kB/s | 985  B 00:00
GPG-sleutel op 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg 
(0x1A3B4456) is al geïnstalleerd
error: Verifying a signature using certificate 
3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
):

  1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
  2. Key 9D60CBB71A3B4456 invalid: key is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
error: Verifying a signature using certificate 
3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
):

  1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
  2. Key 9D60CBB71A3B4456 invalid: key is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
error: Verifying a signature using certificate 
3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
):

  1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
  2. Key 9D60CBB71A3B4456 invalid: key is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
error: Verifying a signature using certificate 
3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
):

  1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
  2. Key 9D60CBB71A3B4456 invalid: key is not alive
  because: The primary key is not live
  because: Expired on 2024-08-13T00:46:08Z
De GPG-sleutels bedoeld voor repository "Copr repo for cran owned by 
iucar" zijn al geïnstalleerd maar niet correct voor dit pakket.
Controleer of de juiste sleutel-URLs voor deze repository zijn 
opgegeven.. Pakket dat mislukt is: 
R-CRAN-kernlab-0.9.33-1.fc40.copr7906033.x86_64
 GPG-sleutels zijn geconfigureerd als: 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg
Publieke sleutel voor 
R-CRAN-tseries-0.10.57-1.fc40.copr7906036.x86_64.rpm is niet vertrouwd. 
Pakket dat mislukt is: R-CRAN-tseries-0.10.57-1.fc40.copr7906036.x86_64
 GPG-sleutels zijn geconfigureerd als: 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg
De gedownloade pakketten zijn in de cache opgeslagen tot de volgende 
sucessvolle transactie.
Je kan pakketten in de cache verwijderen met het uitvoeren van 'dnf 
clean packages'.

Fout: GPG-check is MISLUKT

Deepl translates the last part of this message as:
The GPG keys intended for repository ‘Copr repo for cran owned by
iucar’ are already installed but not correctly for this package.
Check
 whether the correct key URLs are specified for this repository. Package
that failed is: R-CRAN-kernlab-0.9.33-1.fc40.copr7906033.x86_64
 GPG keys are configured as: 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg

Public
 key for R-CRAN-tseries-0.10.57-1.fc40.copr7906036.x86_64.rpm is
not trusted. Package failed:
R-CRAN-tseries-0.10.57-1.fc40.copr7906036.x86_64
 GPG keys are configured as: 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg

The downloaded packages are cached until the next successful transaction.
You can delete cached packages by running ‘dnf clean packages’.
Error: GPG check failed

Translated with DeepL.com (free version)

How can I renew or update the certificates?

Ben Engbers
__
R-devel@r-project.org mailing list
https://stat.ethz.ch/mailman/listinfo/r-devel


Re: [Rd] Certificates are not trusted

2024-08-15 Thread Ben Engbers

I checked the installed versions from R-CRAN-kernlab and R-CRAN-tseries
R-CRAN-kernlab = 0.9.32
R-CRAN-tseries = 0.10.56
.
Updating these packages fails because of incorrect installation


Op 15-08-2024 om 14:57 schreef Ben Engbers:

Hi,



The GPG keys intended for repository ‘Copr repo for cran owned by
iucar’ are already installed but not correctly for this package.
Check
  whether the correct key URLs are specified for thiconfigured as: 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg

Publics repository. Package
that failed is: R-CRAN-kernlab-0.9.33-1.fc40.copr7906033.x86_64
  GPG keys are 
  key for R-CRAN-tseries-0.10.57-1.fc40.copr7906036.x86_64.rpm is

not trusted. Package failed:
R-CRAN-tseries-0.10.57-1.fc40.copr7906036.x86_64
  GPG keys are configured as: 
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg

The downloaded packages are cached until the next successful transaction.
You can delete cached packages by running ‘dnf clean packages’.
Error: GPG check failed



Ben Engbers
__
R-devel@r-project.org mailing list
https://stat.ethz.ch/mailman/listinfo/r-devel


--
Ben Engbers
Grietjeshof 77
6721 VH  Bennekom
+31 6 23634840
__
R-devel@r-project.org mailing list
https://stat.ethz.ch/mailman/listinfo/r-devel


Re: [Rd] Certificates are not trusted

2024-08-15 Thread Ivan Krylov via R-devel
В Thu, 15 Aug 2024 14:57:13 +0200
Ben Engbers  пишет:

> GPG-sleutel op 
> https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg 
> (0x1A3B4456) is al geïnstalleerd
> error: Verifying a signature using certificate 
> 3124D2EF76DA4D972F6BE4AC9D60CBB71A3B4456 (iucar_cran (None) 
> ):
>1. Certificiate 9D60CBB71A3B4456 invalid: certificate is not alive
>because: The primary key is not live
>because: Expired on 2024-08-13T00:46:08Z

The copy of Iñaki Ucar's public key stored on your computer has
expired. Meanwhile, the public key at
https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg
has not expired (the current file will expire in 2028).

The suggested workaround is to download the public key anew and import
it manually: https://github.com/fedora-copr/copr/issues/2894

Either way, this is a problem related to Fedora Copr, not an R-devel
problem. May be a better fit for r-sig-fed...@r-project.org.

-- 
Best regards,
Ivan

__
R-devel@r-project.org mailing list
https://stat.ethz.ch/mailman/listinfo/r-devel


Re: [Rd] 'Fedora' (only!!) -- Certificates are not trusted

2024-08-15 Thread Martin Maechler
> Ben Engbers 
> on Thu, 15 Aug 2024 15:40:37 +0200 writes:

> I checked the installed versions from R-CRAN-kernlab and R-CRAN-tseries
> R-CRAN-kernlab = 0.9.32
> R-CRAN-tseries = 0.10.56
> .
> Updating these packages fails because of incorrect installation

PLEASE !!!   Do not spam the R-devel mailing list with things
that should've gone to  r-sig-fed...@r-project.org

{ where I *did* CC this (a different msg), a moment ago
  This E-mail is hopefully the *LAST* one on R-devel with this topic!! }

Martin
(co-maintainer of the R-devel mailing list)

--
Martin Maechler
ETH Zurich and R-Core

> Op 15-08-2024 om 14:57 schreef Ben Engbers:
>> Hi,

>> The GPG keys intended for repository ‘Copr repo for cran owned by
>> iucar’ are already installed but not correctly for this package.
>> Check whether the correct key URLs are specified for thiconfigured as: 
>> https://download.copr.fedorainfracloud.org/results/iucar/cran/pubkey.gpg
>> Publics repository. 
>> Package that failed is: R-CRAN-kernlab-0.9.33-1.fc40.copr7906033.x86_64

.

__
R-devel@r-project.org mailing list
https://stat.ethz.ch/mailman/listinfo/r-devel