Skip to content

Explain when xbps warns about a changed RSA key and when not #645

@camoz

Description

@camoz

Right now the following parts mention that xbps might report about a new RSA key:

xbps-install might ask you to verify the RSA keys for the packages you are installing.

To me, that does not sound very encouraging, especially because it's a security-relevant step. When I was first reading it, I thought "hm, so does that mean it sometimes just forgets about it?". Explaining what that "might" depends on would probably help, e.g. "if condition, then xbps-install will ask you to verify the RSA keys".

Someone on IRC said that the condition depends on whether the new key is already on the system, and that in turn depends on the installation method.

AFAIK the chroot and fde guides will be merged someday, then it has to be explained only in two places. The troubleshooting section can then link to the explanation in the unified installation guide, then it has to be explained only in one place.

Edit: Use correct link

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions