< slangasek> asac: ah.  well, I would argue that relying on LP SSL to verify 
.dsc files is the wrong trust 
                   model

I think this has a point. And while using ca-certificates in recommends
is probably helpful, couldnt me also make dget just print a warning and
ignore certificates? Note that .dsc files are verified by gpg anyway.

** Changed in: devscripts (Ubuntu)
       Status: New => Incomplete

-- 
dget/dgetlp should have ca-certificates in their Recommends field.
https://bugs.launchpad.net/bugs/247157
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to