On 10/27/25 1:10 PM, Richard W.M. Jones wrote:
On Fri, Oct 24, 2025 at 03:42:28PM +0300, Panu Matilainen wrote:
On 10/24/25 12:35 PM, Vít Ondruch wrote:

Dne 24. 10. 25 v 11:15 Panu Matilainen napsal(a):
On 10/24/25 11:56 AM, Vít Ondruch wrote:

Dne 23. 10. 25 v 19:19 Allison King via devel-announce napsal(a):

Mock has a plugin for signing locally built packages, and
COPR has it's own automatic signing.


Is this enabled by default?

For COPR, yes.

For mock, I don't see how it could be because it cannot know how
you'd like to sign your packages.


Honestly, neither I know. I was fine doing my packages without
signature. But this change appears to force me (either to use some
additional options or) to have signature. So this change seems
incomplete to me without mock singing the packages out of the box
or with little documented setup.

Of course, we can add a bit about configuring mock to do signing eg
using a key set up with rpm-setup-autosign. That's a fair point.

Couldn't we create a "host signing key" when RPM is installed, and
have that sign any locally rpmbuild-/mock- built RPMs?

Technically possible I suppose, but it's not a good model on a multiuser system.

        - Panu -


Rich.


--
_______________________________________________
devel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to