LWN.net Logo

Re: Attacks on package managers

Re: Attacks on package managers

Posted Apr 14, 2009 19:10 UTC (Tue) by nevyn (subscriber, #33129)
In reply to: Attacks on package managers by lurk546
Parent article: Attacks on package managers

Duh, rawhide isn't signed. Fedora only signs the releases (what normal people use). However in current rawhide they also have metalink to provide security (sha256 hashes of everything) of the repodata.


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds