Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

RPM packages for Varnish 6.0.7 not signed #145

Open
jnk0 opened this issue Nov 25, 2020 · 6 comments
Open

RPM packages for Varnish 6.0.7 not signed #145

jnk0 opened this issue Nov 25, 2020 · 6 comments
Assignees

Comments

@jnk0
Copy link

jnk0 commented Nov 25, 2020

Expected Behavior

If yum repo is configured on CentOS or RHEL servers, updates can be done via yum update.

Current Behavior

Update via yum fails with message "Package varnish-6.0.7-1.el7.x86_64.rpm is not signed".

Possible Solution

  1. Sign the packages in Packagecloud.
  2. Disable gpgcheck for package repository.

Steps to Reproduce (for bugs)

  1. Install yum repo (see https://packagecloud.io/varnishcache/varnish60lts/install#bash-rpm).
  2. Update to new Varnish version (yum update varnish*).

Context

RPMs for Varnish 6.0.6 for example were signed.

Your Environment

  • Version used: 6.0.6
  • Operating System and version: CentOS 7
  • Source of binary packages used (if any): Packagecloud
@gquintard
Copy link
Member

assigning to me

@gquintard gquintard self-assigned this Nov 25, 2020
@jnk0
Copy link
Author

jnk0 commented Dec 7, 2020

@gquintard: Will you also make sure that the already released RPM packages for Varnish 6.0.7 will be re-released signed at Packagecloud?

@gquintard
Copy link
Member

that will possibly wait until next LTS release, but we can possibly push one out just to get the signed packages

@ninja-ops
Copy link

6.0.8 still not signed

@FabRons
Copy link

FabRons commented Aug 19, 2021

Same thing on my side:

Package varnish-6.0.8-1.el7.x86_64.rpm is not signed

Temp fix:

yum install varnish --nogpgcheck

From Packagecloud rpm repo

Regards,

Fabien.

@moutonnoireu
Copy link

I had this problem too, could you sign your packages, please ?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

5 participants