You must log in or # to comment.
Fedora doesn’t already require valid signatures on RPMs? Isn’t that somewhat terrifying?
Higher level package managers like yum and dnf/dnf5 have implemented their own enforcing signature modes, enabled by default since the beginning of Fedora. This change brings the RPM side default behavior to this millenium.
So it seems it only applies to manually installing RPMs, but I think most people probably use dnf or yum to install packages
That’s fair, and I suppose it’s the same for Debian and .debs vs. apt install


