35
Fedora F44 Change Proposal: Enforcing signature checking by default
(discussion.fedoraproject.org)
A community for everything relating to the GNU/Linux operating system (except the memes!)
Also, check out:
Original icon base courtesy of lewing@isc.tamu.edu and The GIMP
Fedora doesn't already require valid signatures on RPMs? Isn't that somewhat terrifying?
Higher level package managers like yum and dnf/dnf5 have implemented their own enforcing signature modes, enabled by default since the beginning of Fedora. This change brings the RPM side default behavior to this millenium.
So it seems it only applies to manually installing RPMs, but I think most people probably use dnf or yum to install packages
That's fair, and I suppose it's the same for Debian and .debs vs. apt install