[Fedora-packaging] Re: RFC: Signed JAR Packaging Policy

Rex Dieter rdieter at math.unl.edu
Mon May 14 14:00:16 UTC 2007


Jesse Keating wrote:

> On Wednesday 09 May 2007 22:04:00 Rex Dieter wrote:
>> Duh, my bad for not actually re-reading the *whole* previous thread.
>> spot pointed out that only "companies" can ask Sun for CA's, and that
>> Fedora wouldn't qualify.  But, hey, why not try and ask anyway?  The
>> worst that can happen is that Sun says no, in which case, what's so evil
>> about using a "Red Hat" java CA?  Regardless, for lack of a CA cert to
>> work with, this discussion is moot.
> 
> redistributability.

huh?  redistributability of what exactly?

If you're talking about the keys, I'm not advocating (re)distributing the
java CA keys, any more than I'd advocate (re)distributing the keys fedora
uses to sign it's rpms (cause that'd be silly/useless).

-- Rex





More information about the packaging mailing list