On 2019-07-31 21:35, Jason L Tibbitts III wrote:
>>>>> "NG" == Neal Gompa
<ngompa13(a)gmail.com> writes:
NG> You just set localpkg_gpgcheck=1 in /etc/dnf/dnf.conf
NG> That said, you probably don't want to do that, since most downloaded
NG> packages aren't signed...
Cool! I wasn't even aware of this
setting. Can we set that and then
override with --nogpgcheck for the exceptions?
I think that the ideal behavior would be to always check, but
warn/prompt for unsigned packages or those with signature failures.
Certainly it's better to verify as much as possible as often as
possible.
That would be even better, except maybe when scripting.