Comment 19 for bug 256245

Revision history for this message
In , Kde-gj5 (kde-gj5) wrote :

Version: (using KDE 3.5.9)
Installed from: Ubuntu Packages
OS: Linux

Generally other package managers (e.g apt or synaptic) warn the user if packages are unsigned. While this might have at one point been a nice to have feature, in the current era of DNS cache poisoning attacks package signatures are the only guarantee we have that the package being installed is authentic. This is essential.

In the past, I would have categorized this as a wish, but no longer.