当前时区为 UTC + 8 小时



发表新帖 回复这个主题  [ 13 篇帖子 ] 
作者 内容
1 楼 
 文章标题 : 【solved】pacman4
帖子发表于 : 2012-01-19 21:08 
头像

注册: 2008-09-25 20:56
帖子: 720
送出感谢: 11
接收感谢: 5
看了下wiki,又是密钥环又是主键神马的,最后链到gnupg手册去了,好长,朕凌乱了,然后看了几个帖子不管用,
求大神简单做法,Never就算了

代码:
错误:cifs-utils: key "771DF6627EDF681F" is unknown
:: 导入 PGP 密匙 7EDF681F,"Tobias Powalowski <[email protected]>",创建 2011-07-18 吗? [Y/n]


代码:
#
# /etc/pacman.conf
#
# See the pacman.conf(5) manpage for option and repository directives

#
# GENERAL OPTIONS
#
[options]
# The following paths are commented out with their default values listed.
# If you wish to use different paths, uncomment and update the paths.
#RootDir     = /
#DBPath      = /var/lib/pacman/
#CacheDir    = /var/cache/pacman/pkg/
#LogFile     = /var/log/pacman.log
#GPGDir      = /etc/pacman.d/gnupg/
HoldPkg     = pacman glibc
# If upgrades are available for these packages they will be asked for first
SyncFirst   = pacman
#XferCommand = /usr/bin/curl -C - -f %u > %o
#XferCommand = /usr/bin/wget --passive-ftp -c -O %o %u
#CleanMethod = KeepInstalled
Architecture = auto

# Pacman won't upgrade packages listed in IgnorePkg and members of IgnoreGroup
IgnorePkg   = qemu-kvm chromium thunderbird wicd gedit evolution mypaint epiphany vlc virtualbox sdlmame firefox grub xournal mplayer libreoffice-zh-CN xbmc qtcreator
IgnoreGroup = libreoffice

#NoUpgrade   =
#NoExtract   =

# Misc options
#UseSyslog
#UseDelta
#TotalDownload
CheckSpace
#VerbosePkgLists

# PGP signature checking
# NOTE: None of this will work without running `pacman-key --init` first.
# The compiled in default is equivalent to the following line. This requires
# you to locally sign and trust packager keys using `pacman-key` for them to be
# considered valid.
SigLevel = Optional TrustedOnly
# If you wish to check signatures but avoid local sign and trust issues, use
# the following line. This will treat any key imported into pacman's keyring as
# trusted.
#SigLevel = Optional TrustAll
# For now, off by default unless you read the above.
#SigLevel = Never

#
# REPOSITORIES
#   - can be defined here or included from another file
#   - pacman will search repositories in the order defined here
#   - local/custom mirrors can be added here or in separate files
#   - repositories listed first will take precedence when packages
#     have identical names, regardless of version number
#   - URLs will have $repo replaced by the name of the current repo
#   - URLs will have $arch replaced by the name of the architecture
#
# Repository entries are of the format:
#       [repo-name]
#       Server = ServerName
#       Include = IncludePath
#
# The header [repo-name] is crucial - it must be present and
# uncommented to enable the repo.
#

# The testing repositories are disabled by default. To enable, uncomment the
# repo name header and Include lines. You can add preferred servers immediately
# after the header, and they will be used before the default mirrors.

#[testing]
#SigLevel = PackageRequired
#Include = /etc/pacman.d/mirrorlist

[core]
#SigLevel = PackageRequired
Include = /etc/pacman.d/mirrorlist

[extra]
#SigLevel = PackageOptional
Include = /etc/pacman.d/mirrorlist

#[community-testing]
#SigLevel = PackageRequired
#Include = /etc/pacman.d/mirrorlist

[community]
#SigLevel = PackageOptional
Include = /etc/pacman.d/mirrorlist

# An example of a custom package repository.  See the pacman manpage for
# tips on creating your own repositories.
#[custom]
#SigLevel = Optional TrustAll
#Server = file:///home/custompkgs



代码:
$ cat /etc/pacman.d/gnupg/gpg.conf
no-greeting
no-permission-warning
lock-never
keyserver hkp://pgp.mit.edu:11371
keyserver-options timeout=10


_________________
UCHIHA
运气是为白痴准备的


最后由 youqika 编辑于 2012-01-19 23:04,总共编辑了 1 次

页首
 用户资料  
 
2 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 21:14 
头像

注册: 2010-01-28 10:45
帖子: 19507
送出感谢: 6
接收感谢: 41
代码:
sudo pacman-key --init

代码:
sudo mv /etc/pacman.conf.pacnew /etc/pacman.conf

执行这两条后看看


_________________

*********宁静致远*********
如果我说的有什么不对,请看签名第一行


页首
 用户资料  
 
3 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 21:28 
头像

注册: 2008-09-25 20:56
帖子: 720
送出感谢: 11
接收感谢: 5
已经执行过了,贴的pacman.conf是新的


_________________
UCHIHA
运气是为白痴准备的


页首
 用户资料  
 
4 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 21:40 
头像

注册: 2010-04-23 20:40
帖子: 1950
地址: 浙江·杭州
系统: Arch Linux
送出感谢: 2
接收感谢: 31
youqika 写道:
求大神简单做法,Never就算了

# PGP signature checking
# NOTE: None of this will work without running `pacman-key --init` first.
# The compiled in default is equivalent to the following line. This requires
# you to locally sign and trust packager keys using `pacman-key` for them to be
# considered valid.
#SigLevel = Optional TrustedOnly
# If you wish to check signatures but avoid local sign and trust issues, use
# the following line. This will treat any key imported into pacman's keyring as
# trusted.
#SigLevel = Optional TrustAll
# For now, off by default unless you read the above.
SigLevel = Never

为什么我调成 NEVER 就没事了?


_________________
我是 Giumo Clanjor(哆啦比猫/兰威举)
Where there is a hacker, there is art. | Develop for Developers. (C & perl5)
博客 | Clanjor Prods.
类 C 语言到 brainfuck 编译器


页首
 用户资料  
 
5 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 21:45 
头像

注册: 2008-09-25 20:56
帖子: 720
送出感谢: 11
接收感谢: 5
cjxgm 写道:
youqika 写道:
求大神简单做法,Never就算了

# PGP signature checking
# NOTE: None of this will work without running `pacman-key --init` first.
# The compiled in default is equivalent to the following line. This requires
# you to locally sign and trust packager keys using `pacman-key` for them to be
# considered valid.
#SigLevel = Optional TrustedOnly
# If you wish to check signatures but avoid local sign and trust issues, use
# the following line. This will treat any key imported into pacman's keyring as
# trusted.
#SigLevel = Optional TrustAll
# For now, off by default unless you read the above.
SigLevel = Never

为什么我调成 NEVER 就没事了?

Never就是不验证签名,跟以前一样的。。。


_________________
UCHIHA
运气是为白痴准备的


页首
 用户资料  
 
6 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 21:54 

注册: 2010-02-01 19:24
帖子: 312
送出感谢: 0 次
接收感谢: 2
我直接设成never了事。


_________________
archlinux + openbox

个人blog: http://www.lifeintheweb.tk


页首
 用户资料  
 
7 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 21:55 
头像

注册: 2009-10-20 21:13
帖子: 2089
地址: Pacific Western University
送出感谢: 0 次
接收感谢: 7
https://wiki.archlinux.org/index.php/Pacman-key

root下,照archwiki提到脚本运行一次就行了


页首
 用户资料  
 
8 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 22:04 

注册: 2010-06-28 19:14
帖子: 141
送出感谢: 3
接收感谢: 2
http://www.archlinuxcn.org/viewtopic.php?f=27&t=542

看这个,导入key就可以了


页首
 用户资料  
 
9 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 22:04 
头像

注册: 2010-04-23 20:40
帖子: 1950
地址: 浙江·杭州
系统: Arch Linux
送出感谢: 2
接收感谢: 31
表示不明白为什么要有这个签名,装个软件干嘛要这么麻烦


_________________
我是 Giumo Clanjor(哆啦比猫/兰威举)
Where there is a hacker, there is art. | Develop for Developers. (C & perl5)
博客 | Clanjor Prods.
类 C 语言到 brainfuck 编译器


页首
 用户资料  
 
10 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 22:07 
头像

注册: 2009-07-29 20:11
帖子: 2245
地址: Gensokyo
系统: Arch Linux
送出感谢: 4
接收感谢: 23
http://www.archlinuxcn.org/viewtopic.php?f=22&t=533
http://www.archlinuxcn.org/viewtopic.php?f=27&t=542


_________________
Phoenix's island
Loliplus Web Services


页首
 用户资料  
 
11 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 22:08 

注册: 2010-06-28 19:14
帖子: 141
送出感谢: 3
接收感谢: 2
cjxgm 写道:
表示不明白为什么要有这个签名,装个软件干嘛要这么麻烦



貌似长久以来,pacman被诟病的一大缺点就是无法验证gpg签名,所以如果有人黑了软件仓库的服务器,在软件包里加入恶意程序,就会给用户带来问题。貌似是这么回事。


页首
 用户资料  
 
12 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 22:42 
头像

注册: 2008-09-25 20:56
帖子: 720
送出感谢: 11
接收感谢: 5
qifei9 写道:
http://www.archlinuxcn.org/viewtopic.php?f=27&t=542

看这个,导入key就可以了


嗯,这个简单 :em11

不过朕人品不好,貌似被和谐了,换了端口还是不行
代码:
gpg: 下载密钥‘4C7EA887’,从 hkp 服务器 pgp.mit.edu
gpg: 公钥服务器超时
gpg: 从公钥服务器接收失败:公钥服务器错误
==> 正在更新可信数据库...
gpg: 需要 3 份勉强信任和 1 份完全信任,PGP 信任模型
gpg: 深度:0 有效性:  1 已签名:  2 信任度:0-,0q,0n,0m,0f,1u
gpg: 深度:1 有效性:  2 已签名:  3 信任度:0-,0q,0n,2m,0f,0u
==> 正在更新可信数据库...
gpg: 不需要检查信任度数据库
gpg: 下载密钥‘CDFD6BB0’,从 hkp 服务器 pgp.mit.edu
^C
gpg: Interrupt caught ... exiting


:em47 :em47 :em47 :em47 :em47


_________________
UCHIHA
运气是为白痴准备的


页首
 用户资料  
 
13 楼 
 文章标题 : Re: pacman4
帖子发表于 : 2012-01-19 23:03 
头像

注册: 2008-09-25 20:56
帖子: 720
送出感谢: 11
接收感谢: 5
hasee.wu 写道:
https://wiki.archlinux.org/index.php/Pacman-key

root下,照archwiki提到脚本运行一次就行了

唐骏GG正解

Master Signing Keys
代码:
for key in FFF979E7 CDFD6BB0 4C7EA887 6AC6A4C2 824B18E8; do
    pacman-key --recv-keys $key
    pacman-key --lsign-key $key
    printf 'trust\n3\nquit\n' | gpg --homedir /etc/pacman.d/gnupg/ \
        --no-permission-warning --command-fd 0 --edit-key $key
done


代码:
错误:cifs-utils: key "771DF6627EDF681F" is unknown
:: 导入 PGP 密匙 7EDF681F,"Tobias Powalowski <[email protected]>",创建 2011-07-18 吗? [Y/n] y
错误:git: key "5C2E46A0F53A76ED" is unknown
:: 导入 PGP 密匙 F53A76ED,"Dan McGee <[email protected]>",创建 2007-06-27 吗? [Y/n] y
(2/2) 正在检查软件包完整性                         [######################] 100%
(2/2) 正在加载软件包文件                           [######################] 100%
(2/2) 正在检查文件冲突                             [######################] 100%
(2/2) 正在检查可用硬盘空间                         [######################] 100%
(1/2) 正在更新 cifs-utils                          [######################] 100%
(2/2) 正在更新 git                                 [######################] 100%


_________________
UCHIHA
运气是为白痴准备的


页首
 用户资料  
 
显示帖子 :  排序  
发表新帖 回复这个主题  [ 13 篇帖子 ] 

当前时区为 UTC + 8 小时


在线用户

正在浏览此版面的用户:没有注册用户 和 0 位游客


不能 在这个版面发表主题
不能 在这个版面回复主题
不能 在这个版面编辑帖子
不能 在这个版面删除帖子
不能 在这个版面提交附件

前往 :  
本站点为公益性站点,用于推广开源自由软件,由 DiaHosting VPSBudgetVM VPS 提供服务。
我们认为:软件应可免费取得,软件工具在各种语言环境下皆可使用,且不会有任何功能上的差异;
人们应有定制和修改软件的自由,且方式不受限制,只要他们自认为合适。

Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group
简体中文语系由 王笑宇 翻译