Skip to content

Use signed-by= in sources.list files #7271

@DemiMarie

Description

@DemiMarie

How to file a helpful issue

The problem you're addressing (if any)

The Qubes OS keys currently need to be included in the APT keyring via /etc/apt/trusted.d. That keyring applies to all packages, though, not just Qubes packages. Debian’s wiki recommends using signed-by= instead.

The solution you'd like

Use signed-by= with a dedicated keyring.

The value to a user, and who that user might be

Qubes OS will be compliant with Debian recommendations.

Metadata

Metadata

Assignees

No one assigned

    Labels

    C: Debian/UbuntuThis issue pertains to Debian or Ubuntu templates or standalones.P: defaultPriority: default. Default priority for new issues, to be replaced given sufficient information.

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions