[packman] digests SIGNATURES NOT OK

Marc Schiffbauer marc at links2linux.de
Mon Dec 13 09:48:43 CET 2021

* Giacomo Comes schrieb am 12.12.21 um 03:44 Uhr:
> I have more information about the key problem.
> Some time ago the package rpm in opensuse was patched with
> a pgp hardening changes from upstream (bsc#1185299)
> This caused a problem with the current packman key.
> However, the key itselt is not bad. It's just that
> the rpm code before patching and the code after patching 
> will consider the same key as different.
> The solution for me was to delete the packman key
> (rpm -e gpg-pubkey-1abd1afb-54176598) and then,
> when asked, reimport the key.
> After that, everything worked fine.

Thanks for that! So I guess we could leave the current key in place.  
Users just need to know the required steps.

0xCA3E7BF67F979BE5 - F7FB 78F7 7CC3 79F6 DF07
                     6E9E CA3E 7BF6 7F97 9BE5

More information about the Packman mailing list