# HG changeset patch # User Oleksandr Gavenko # Date 1452412629 -7200 # Node ID 048f61a3be91b78de7a8c8a0456bfc78d0400679 # Parent c6dc48292ee82e718aaf7a9139d16a6cf2c71642 Importing package signing key. diff -r c6dc48292ee8 -r 048f61a3be91 debian-apt.rst --- a/debian-apt.rst Sat Jan 09 20:50:54 2016 +0200 +++ b/debian-apt.rst Sun Jan 10 09:57:09 2016 +0200 @@ -75,9 +75,20 @@ $ cat /etc/apt/sources.list deb http://www.backports.org/debian/ etch-backports main contrib non-free -Getting new keys for packages. +Importing package signing key. ============================== -:: + +Usualy you can safely update keyring via ``debian-keyring`` package because it +is signed by prevoius keyring:: + + $ sudo apt-get install debian-keyring + +Defferent 3rd party provide keys for download. If you trust key (or get it in a +trusted way) it is easy to import it:: + + $ sudo apt-key add $FILE.pgp + +Another way to resolve warning:: $ sudo apt-get update ... @@ -88,6 +99,8 @@ 9AA38DCD55BE302B ... +is to use key servers directly:: + $ gpg --keyserver pgp.mit.edu --recv-key 9AA38DCD55BE302B \ --keyserver-options http-proxy=http://user:pass@192.168.1.1:3128 gpg: requesting key 55BE302B from hkp server pgp.mit.edu