From owner-freebsd-stable@FreeBSD.ORG Fri Dec 28 15:13:52 2012 Return-Path: Delivered-To: stable@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 22DBDD5A for ; Fri, 28 Dec 2012 15:13:52 +0000 (UTC) (envelope-from rainer@ultra-secure.de) Received: from mail.ultra-secure.de (mail.ultra-secure.de [78.47.114.122]) by mx1.freebsd.org (Postfix) with ESMTP id 5C8728FC08 for ; Fri, 28 Dec 2012 15:13:50 +0000 (UTC) Received: (qmail 48810 invoked by uid 89); 28 Dec 2012 15:13:44 -0000 Received: by simscan 1.4.0 ppid: 48805, pid: 48807, t: 0.1341s scanners: attach: 1.4.0 clamav: 0.97.3/m:54/d:16165 Received: from unknown (HELO suse3) (rainer@ultra-secure.de@212.71.117.1) by mail.ultra-secure.de with ESMTPA; 28 Dec 2012 15:13:43 -0000 Date: Fri, 28 Dec 2012 16:13:43 +0100 From: Rainer Duffner To: Garrett Wollman Subject: Re: Anothe pkgng question: signing a repository Message-ID: <20121228161343.059a6155@suse3> In-Reply-To: <201212272101.qBRL1hXP016548@hergotha.csail.mit.edu> References: <20121227162311$64db@grapevine.csail.mit.edu> <201212272101.qBRL1hXP016548@hergotha.csail.mit.edu> X-Mailer: Claws Mail 3.8.1 (GTK+ 2.24.10; x86_64-suse-linux-gnu) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: stable@freebsd.org X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 28 Dec 2012 15:13:52 -0000 Am Thu, 27 Dec 2012 16:01:43 -0500 (EST) schrieb Garrett Wollman : > In article <20121227162311$64db@grapevine.csail.mit.edu>, > rainer@ultra-secure.de writes: > > >I'm creating my own repository and have created a key for it. > [...] > >What does pkg expect to be in this file? > > A public key. It does not use X.509 (nor is there any reason why it > should, although I suppose it could be made to at the cost of > significant added complexity and a bootstrapping problem). Ah, OK. When I hear "key", I sort of assume there must be a certificate and a CA involved. It works now ;-) Best Regards, Rainer