You are not logged in.

#1 2024-03-01 09:03:16

nicod11
Member
Registered: 2024-03-01
Posts: 3

archlinux32-keyring seems signed with an expired key

Hi,

New to archlinux32.
Before pacstrap to my new system, I wanted to update package archlinux32-keyring but this one failed due to key C8E8F5A0AF9BA7E7 (mail@andreasbaumann.cc) that is not trusted.

I edited the key to pass it to Ultimate Trust but this still failed. I did of course a pacman-key init and pacman-key --populate.

I showed that this key is expired since 29 january 2024, is it normal ?

Offline

#2 2024-03-01 10:42:14

abaumann
Administrator
From: Zurich
Registered: 2019-11-14
Posts: 1,032
Website

Re: archlinux32-keyring seems signed with an expired key

I could have sworn that the updated key is in archlinux32-keyring-20240131-5.1-any.pkg.tar.zst. Which version of
archlinux32-keyring do you have? Maybe you have an old key on the installation CD? This can be solved
as mentioned in https://bbs.archlinux32.org/viewtopic.php?id=3390

Offline

#3 2024-03-01 11:13:36

nicod11
Member
Registered: 2024-03-01
Posts: 3

Re: archlinux32-keyring seems signed with an expired key

I have the version installed with the installation CD yes . I try to install the new version with command pacman -Sy archlinux32-keyring but that fail due to this key.

I have no difference in behavior when putting the parameter "sigLevel = Never" in pacman.conf. Something to do to update the configuration of pacman ?

Offline

#4 2024-03-01 16:44:22

abaumann
Administrator
From: Zurich
Registered: 2019-11-14
Posts: 1,032
Website

Re: archlinux32-keyring seems signed with an expired key

Offline

#5 2024-03-02 11:19:36

nicod11
Member
Registered: 2024-03-01
Posts: 3

Re: archlinux32-keyring seems signed with an expired key

Yes I did, after inserting "sigLevel = Never" in pacman.conf I execute pacman -Sy archlinux-keyring archlinux32-keyring but that fail for archlinux32-keyring due to the problem with this key.
I have no problem to update package archlinux-keyring.

Maybe I'm wrong but it seems that the new package is still signed with this old key, and that fail this integrity check by consequence.

Offline

Board footer

Powered by FluxBB