summaryrefslogtreecommitdiff
path: root/pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch
diff options
context:
space:
mode:
authorAlyssa Ross <hi@alyssa.is>2019-06-30 14:04:22 +0000
committerAlyssa Ross <hi@alyssa.is>2019-06-30 14:09:02 +0000
commitc727083e6565293c0e38f033fc1db07b187bddb0 (patch)
tree21933649f96477c7c0c833f5128978d27459e9b0 /pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch
parente295fd81370929a4268e94ba95d86f3f296d610c (diff)
gnupg: change default keyserver to non-SKS
See https://gist.github.com/rjhansen/67ab921ffb4084c865b3618d6955275f. The SKS network is vulnerable to certificate poisoning, which can destroy GnuPG installations. keys.openpgp.org is a new non-SKS keyserver that is resistant to this type of attack. With such an attack being possible, it is unsafe to use SKS keyservers for almost anything, and so we should protect our users from a now unsafe default. keys.openpgp.org offers some (but not all) functionality of SKS, and is better than nothing. This default is only present in gnupg22. gnupg20 and gnupg1orig are not affected.
Diffstat (limited to 'pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch')
0 files changed, 0 insertions, 0 deletions