For example: without the enforcing mode, you just strip the signature from the
package and modify it all you like. And rpm will merrily install the unsigned
messed with thing with zero complaints. That is the wacko present of the last
25 years.
--
Reply to this email directly or view it on GitHub:
https://github.com/rpm-software-management/rpm/pull/3439#issuecomment-2485656330
You are receiving this because you are subscribed to this thread.
Message ID: <rpm-software-management/rpm/pull/3439/[email protected]>
_______________________________________________
Rpm-maint mailing list
[email protected]
https://lists.rpm.org/mailman/listinfo/rpm-maint