Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Check package hashes and signatures (optionally) #18

Open
XVilka opened this issue Sep 29, 2022 · 3 comments
Open

Check package hashes and signatures (optionally) #18

XVilka opened this issue Sep 29, 2022 · 3 comments

Comments

@XVilka
Copy link
Member

XVilka commented Sep 29, 2022

  • Check package hashes to ensure if the download was proper
  • Check package signatures when option is set
@ret2libc
Copy link
Member

This is already done for the sources. If you see the rz-pm-db repository or the example in the read me you see there is the hash and there are also unit tests to check that installation fails if it doesn't match

@ret2libc
Copy link
Member

The signature part is not done though.

@ret2libc
Copy link
Member

Check package hashes to ensure if the download was proper

Works with v0.1.0

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants