Gentoo Archives: gentoo-dev

From: "Michał Górny" <mgorny@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Trustless Infrastructure
Date: Mon, 02 Jul 2018 17:21:33
Message-Id: 1530552080.891.12.camel@gentoo.org
In Reply to: Re: [gentoo-dev] Trustless Infrastructure by "Jason A. Donenfeld"
1 W dniu pon, 02.07.2018 o godzinie 19∶01 +0200, użytkownik Jason A.
2 Donenfeld napisał:
3 > On Mon, Jul 2, 2018 at 6:58 PM Michał Górny <mgorny@g.o> wrote:
4 > > - Have verification use a keyring of all Gentoo developers, with a
5 > > > manual prompt to add new Gentoo developers to it.
6 > >
7 > > How are you going to distribute this keyring, and how are you going to
8 > > protect attacker from injecting malicious key into it?
9 >
10 > Same model as Arch.
11 >
12
13 Please write it down here instead of expecting us to figure it out.
14 It's your proposal, and it should be complete.
15
16 --
17 Best regards,
18 Michał Górny

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-dev] Trustless Infrastructure "Jason A. Donenfeld" <zx2c4@g.o>