[Spacewalk-list] using api to determine package signing key

Jan Hutař jhutar at redhat.com
Thu Jun 6 12:28:01 UTC 2013


On Thu, 6 Jun 2013 13:40:45 +0200 Jan Hutař <jhutar at redhat.com>
wrote:

> On Mon, 3 Jun 2013 17:04:48 -0400 Maria
> <maria at purplecoffee.com> wrote:
> 
> > Hi,
> > 
> > I have written an api script to look for packages in channels
> > where they do not belong, using various different tests. One
> > thing that would be useful would be to compare the channel
> > gpg key with the key used to sign the package. However, I
> > can't see how to use the api to get the information of what
> > key was used to sign a package.  Can someone point me in the
> > right direction for that?
> > 
> > Thanks,
> > Maria
> 
> Hello,
> yes, this is a known lack of functionality. You might report it
> as a RFE bugzilla.

Sorry, this was meant for another tread.

Is packages.getDetails(key, package_id) -> vendor what you want?

Also packages.provider.associateKey(...) might be needed.

But maybe there is a easier solution?

Regards,
Jan



-- 
Jan Hutar     Systems Management QA
jhutar at redhat.com     Red Hat, Inc.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 198 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/spacewalk-list/attachments/20130606/9446b372/attachment.sig>


More information about the Spacewalk-list mailing list