OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [suse-security] GPG 1.2.1 and YOU

From: Lars Ellenberg (l.g.eweb.de)
Date: Thu Apr 10 2003 - 18:14:05 CDT


On Thu, Apr 10, 2003 at 10:22:59PM +0100, Matt Gibson wrote:
> I've got a SuSE 7.1 system on which I've upgraded GPG to v 1.2.1, in order to
> get the integrated PGP plugin working with KMail under KDE3. This seems to
> have broken the Yast Online Update functionality when it comes to verifying
> package signatures.

you could quote some error messages?
what does rpm -v --checksig <some.rpm> tell you?
btw, iirc, previous to 7.3 there where not necessarily signatures...

> Having checked the SuSE knowledge base, I found a couple of articles on
> vaguely similar problems with other SuSE versions, but nothing I've tried so
> far based on those (primarily importing the SuSE package signing key into
> root's keyring) seems to have fixed the problem.

I don't know for sure for suse 7.1, but you might need to import into
/usr/lib/rpm/gnupg/pubring.gpg instead of root's keyring.

hth.

                Lars

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here