Use apt's trusted.gpg for pkg verification

This commit is contained in:
Henrik Grimler 2019-01-26 16:37:25 +00:00
parent 2bf220ba71
commit 04d20d71dd

View File

@ -524,12 +524,12 @@ termux_step_get_repo_files() {
done<SYMLINKS.txt done<SYMLINKS.txt
rm SYMLINKS.txt rm SYMLINKS.txt
) )
# Import Fornwalls key:
gpg --import packages/apt/trusted.gpg
( (
cd ${TERMUX_COMMON_CACHEDIR} cd ${TERMUX_COMMON_CACHEDIR}
curl --fail -LO "$TERMUX_REPO_URL/$TERMUX_REPO_DISTRIBUTION/InRelease" \ curl --fail -LO "$TERMUX_REPO_URL/$TERMUX_REPO_DISTRIBUTION/InRelease" \
|| termux_error_exit "Download of $TERMUX_REPO_URL/$TERMUX_REPO_DISTRIBUTION/InRelease failed" || termux_error_exit "Download of $TERMUX_REPO_URL/$TERMUX_REPO_DISTRIBUTION/InRelease failed"
# Import Fornwalls key:
gpg -k $TERMUX_REPO_SIGNING_KEY 2>/dev/null || gpg --keyserver pool.sks-keyservers.net --recv $TERMUX_REPO_SIGNING_KEY
gpg --verify InRelease gpg --verify InRelease
) )
for arch in all $TERMUX_ARCH; do for arch in all $TERMUX_ARCH; do