2011/3/7 Miklos Vajna <[email protected]>:
> On Mon, Mar 07, 2011 at 05:24:19PM +0000, Ananda Samaddar 
> <[email protected]> wrote:
>> > Nope - at the moment we just store SHA1 of the packages, to avoid
>> > accidental corruptions. Patches are welcome to improve that in
>> > pacman-g2, it would not be too hard to use gpgv for this, if one needs
>> > it.
>>
>> That's a real shame, the Arch Wiki says that you use a version of
>> pacman that does support package signing.  I'm afraid that this is the
>> main reason I want to switch from Arch.  Their security is not very
>> good.
>
> Please ask them to correct the info, then. Misleading anybody would be
> bad, indeed.
>
>> Unfortunately I am not a developer, just an 'advanced user' so I
>> wouldn't be able to code anything myself.
>
> TBH, While being able to fix issues yourself is nice, in most cases a
> packager's life is more about building and testing than coding.
>
> Thanks.
>
> _______________________________________________
> Frugalware-devel mailing list
> [email protected]
> http://frugalware.org/mailman/listinfo/frugalware-devel
>
>

Vmiklos, maybe some of theses questions and answers could be placed on
http://frugalware.org/about


-- 
Devil505
http://frugalware.org/~devil505/blog
_______________________________________________
Frugalware-devel mailing list
[email protected]
http://frugalware.org/mailman/listinfo/frugalware-devel

Reply via email to