Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Maybe for rubygems, not so easy for apt/rpm as they use gpg signing/verification of package indices.


RubyGems also have signing facilities. Most authors don't bother signing however because generating a key is too much trouble.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: