On Tue, Feb 17, 2015 at 08:28:09PM +0100, Michael Schwendt wrote:
> On Tue, 17 Feb 2015 09:55:37 -0700, Kevin Fenzi wrote:
> 
> > > 1. "fedup --network rawhide" : failed with a missing image?
> > >    Why doesn't it work by default?
> > 
> > Strange. The mirrormanager mirrorlist for images looks good here, and
> > the images look fine. Ah... it's because they are not signed. 
> 
>   | Downloading failed: couldn't get boot images: No more mirrors to try.
>   | Last error was: [Errno 14] HTTP Error 404 - Not Found
> 
> > Re-run with --nogpgcheck? 
> 
> D'oh! That seems to lead to something. A Fedora-specific tool could
> really know about "rawhide" and tell about --nogpgcheck being needed.

Since the user might not know, that it is is not signed, it is good to
make require consent from the user to do it insecurely. However, fedup
should probably make the security problem more obvious so one can get
insecure packages if wanted.

Regards
Till
-- 
devel mailing list
devel@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/devel
Fedora Code of Conduct: http://fedoraproject.org/code-of-conduct

Reply via email to