On Wed, Nov 22, 2006 at 07:22:35AM +0100, Andreas Tille wrote: > But Hendrik Sattler is perfectly right and this knowledge has to be stored > at prominant places like: > > a) installation manual > b) apt-key.8 > c) perhaps somewhere else
It is already at the "Securing Debian Manual", see section 7.4 'Package signing in Debian': http://www.debian.org/doc/manuals/securing-debian-howto/ch7.en.html#s-deb-pack-sign I guess that qualifies for c). Of course, it could be improved, that's what patches are for. /me goes to waiting mode :) Regards Javier
signature.asc
Description: Digital signature