diff options
| author | Alyssa Ross <hi@alyssa.is> | 2019-06-30 14:04:22 +0000 |
|---|---|---|
| committer | Alyssa Ross <hi@alyssa.is> | 2019-06-30 14:09:02 +0000 |
| commit | c727083e6565293c0e38f033fc1db07b187bddb0 (patch) | |
| tree | 21933649f96477c7c0c833f5128978d27459e9b0 /pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch | |
| parent | e295fd81370929a4268e94ba95d86f3f296d610c (diff) | |
gnupg: change default keyserver to non-SKS
See https://gist.github.com/rjhansen/67ab921ffb4084c865b3618d6955275f.
The SKS network is vulnerable to certificate poisoning, which can
destroy GnuPG installations. keys.openpgp.org is a new non-SKS keyserver
that is resistant to this type of attack.
With such an attack being possible, it is unsafe to use SKS keyservers
for almost anything, and so we should protect our users from a now
unsafe default. keys.openpgp.org offers some (but not all) functionality
of SKS, and is better than nothing.
This default is only present in gnupg22. gnupg20 and gnupg1orig are not
affected.
Diffstat (limited to 'pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch')
0 files changed, 0 insertions, 0 deletions
