summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Antoine Beaupré [Thu, 15 Feb 2018 15:49:18 +0000 (10:49 -0500)]
move archive keyring out of global trust path
The [repository instructions][1] have been changed to avoid writing
third-party keyring files to the global trust anchors (in
`/etc/apt/trusted-gpg.d`) and instead write those to a more neutral
location (`/usr/share/keyrings`, alongside other keyring files).
[1]: https://wiki.debian.org/RepositoryInstructions
The downside of this change is that the key fingerprint isn't
validated directly through this process. But considering that
validation of the key is anchored through HTTPS validation in the
first place, we do not *really* lose anything by moving that to the
`.gpg` file transfer: that file's integrity is still checked through
HTTPS. Furthermore, not storing the explicit fingerprint here will
make future key rotations easier as they will not require
documentation updates.
Note that this change will also require a change in the
`grml-debian-keyring` package to install the keyring file in the new
location. If that package does not install a `.sources` or `.list`
file, that move will also break existing configurations, so a NEWS
entry might be in order as well.
This is related to the [proposed website documentation change][2]
[2]: https://github.com/grml/grml.org/pull/21
Michael Prokop [Thu, 7 Apr 2016 13:22:08 +0000 (15:22 +0200)]
Release new version 2016.04.07
Michael Prokop [Thu, 7 Apr 2016 13:21:40 +0000 (15:21 +0200)]
Bump Standards-Version to 3.9.7
Michael Prokop [Thu, 7 Apr 2016 13:21:33 +0000 (15:21 +0200)]
Use Grml Team in maintainer field and add formorer and myself as uploaders
Michael Prokop [Thu, 7 Apr 2016 13:16:31 +0000 (15:16 +0200)]
Use github repository mirror in Vcs-git header
Addressing vcs-field-uses-insecure-uri until we've SSL on our
infrastructure everywhere.
Michael Prokop [Sun, 16 Aug 2015 21:21:52 +0000 (23:21 +0200)]
Release new version 2015.08.16
Michael Prokop [Sun, 16 Aug 2015 12:26:22 +0000 (14:26 +0200)]
Add new signing key for Grml repositories
Generated via:
% gpg --gen-key
% gpg --output keyrings/grml-archive.gpg --export 0xEA2EA4AB 0xECDEA787 --ascii --export-options=export-minimal
while 0xECDEA787 is the old, existing key
and 0xEA2EA4AB is the newly created one.
Updated md5sums.txt via:
% md5sum keyrings/grml-archive.gpg > md5sums.txt
% gpg --clearsign md5sums.txt
% mv md5sums.txt.asc md5sums.txt
Michael Prokop [Thu, 18 Jun 2015 11:16:14 +0000 (13:16 +0200)]
Release new version 2015.06.18
Michael Prokop [Thu, 18 Jun 2015 11:10:27 +0000 (13:10 +0200)]
Force gzip compression for lenny support
Fixes:
| dpkg-deb: file `grml-debian-keyring_2015.06.18_all.deb' contains ununderstood data member data.tar.xz , giving up
Thanks: Christoph Berg <myon@debian.org> for the hint
Michael Prokop [Thu, 18 Jun 2015 10:49:36 +0000 (12:49 +0200)]
Drop unused /usr/share/keyrings
Michael Prokop [Thu, 18 Jun 2015 10:49:03 +0000 (12:49 +0200)]
origins/Grml: adjust description and fix mail address
Michael Prokop [Thu, 18 Jun 2015 10:45:43 +0000 (12:45 +0200)]
Execute wrap-and-sort -a on debian/
Michael Prokop [Thu, 18 Jun 2015 10:44:56 +0000 (12:44 +0200)]
Replace GRML with Grml in package description
Michael Prokop [Thu, 18 Jun 2015 10:44:02 +0000 (12:44 +0200)]
GPG clearsign md5sums.txt with my key (ID 0xB7EA3737)
Sebastian Boehm [Wed, 17 Jun 2015 11:05:38 +0000 (13:05 +0200)]
Install archive key to /etc/apt/trusted.gpg.d/
Sebastian Boehm [Wed, 17 Jun 2015 10:47:03 +0000 (12:47 +0200)]
Remove obsolete debian/files
Sebastian Boehm [Mon, 18 May 2015 12:39:15 +0000 (14:39 +0200)]
Bump Standards-Version
Sebastian Boehm [Mon, 18 May 2015 12:30:42 +0000 (14:30 +0200)]
Fix lintian warning: debhelper-but-no-misc-depends
Sebastian Boehm [Mon, 18 May 2015 12:24:05 +0000 (14:24 +0200)]
Fix lintian warning: maintainer-script-lacks-debhelper-token
Sebastian Boehm [Mon, 18 May 2015 12:23:16 +0000 (14:23 +0200)]
Fix lintian warning: maintainer-script-ignores-errors
Michael Prokop [Sat, 26 Nov 2011 17:49:16 +0000 (18:49 +0100)]
Release new version 2011.11.26
Christian Hofstaedtler [Fri, 14 Oct 2011 00:21:38 +0000 (02:21 +0200)]
Switch to debhelper, verify keyring md5sums during build
Michael Prokop [Wed, 12 Oct 2011 16:34:46 +0000 (18:34 +0200)]
drop .hgtags file
Christian Hofstaedtler [Wed, 27 Jul 2011 19:32:54 +0000 (21:32 +0200)]
install Grml origin for dpkg
Christian Hofstaedtler [Wed, 27 Jul 2011 19:27:41 +0000 (21:27 +0200)]
Update debian/control headers Homepage, Vcs-*, Origin, Bugs
Michael Prokop [Wed, 12 Sep 2007 23:39:51 +0000 (01:39 +0200)]
Apply patch-bomb by ft, thanks a lot
Alexander Wirt [Sun, 10 Jun 2007 08:49:09 +0000 (10:49 +0200)]
Add prio and XS-Vcs header
Alexander Wirt [Sun, 10 Jun 2007 08:30:05 +0000 (10:30 +0200)]
compress changelog
Alexander Wirt [Sun, 10 Jun 2007 08:27:28 +0000 (10:27 +0200)]
Added tag 2007.06.10 for changeset
2be0ee8b7134
Alexander Wirt [Sun, 10 Jun 2007 08:24:54 +0000 (10:24 +0200)]
Initial import