On Tue, Jul 03, 2007 at 12:54:12AM -0400, seth vidal wrote:
> 1. gpg keyring outside of the rpmdb for verifying the repomd.xml
>    - we could do either:
>       1. make  gpg keyring on the fly from the pubkey entries in the
> rpmdb and 
>          save it
>       2. when we import the gpg keys to begin with we also import them
> into this 
>          gpg keyring

While 1 sounds so terribly icky, I can imagine a case where somebody
might import a gpg key by hand, bypassing yum's chance to import the key
into its own keyring. So perhaps 1 is the better option.

-James

Attachment: pgpoHNpnHsYT9.pgp
Description: PGP signature

_______________________________________________
Yum-devel mailing list
[email protected]
https://lists.dulug.duke.edu/mailman/listinfo/yum-devel

Reply via email to