[Rpm-maint] [rpm-software-management/rpm] OpenPGP Backend based on Sequoia (Issue #1978)

nwalfield notifications at github.com
Wed Apr 13 20:36:19 UTC 2022


> I suggest fixing these tests in the internal parser, _provided_ that tests are added that make sure the Sequoia backend won’t actually verify a signature using the bad subkey. My PR #1993 should do most of it.

I created tests to check that Sequoia accepts a signature from a valid subkey, rejects a signature from an expired subkeys, and rejects a signature from a revoked subkey.  Sequoia passes the tests.  Unfortunately, [as mentioned](https://github.com/rpm-software-management/rpm/pull/1993#issuecomment-1098461204), the internal parser is unable to handle these certificates.

How do you recommend that I proceed?



-- 
Reply to this email directly or view it on GitHub:
https://github.com/rpm-software-management/rpm/issues/1978#issuecomment-1098463755
You are receiving this because you are subscribed to this thread.

Message ID: <rpm-software-management/rpm/issues/1978/1098463755 at github.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.rpm.org/pipermail/rpm-maint/attachments/20220413/4f65e2b6/attachment-0001.html>


More information about the Rpm-maint mailing list