On Wed, Feb 27, 2019 at 9:30 PM Kouhei Sutou wrote:
> Hi,
>
> > - How should We handle the signing procedure? Simply omit?
>
> For .deb and .rpm, we need to sign them to install them by
> apt/yum.
>
> We should use a GPG key only for nightly for this
> propose. We should not use GPG keys in
> htt
Hi,
> - How should We handle the signing procedure? Simply omit?
For .deb and .rpm, we need to sign them to install them by
apt/yum.
We should use a GPG key only for nightly for this
propose. We should not use GPG keys in
https://dist.apache.org/repos/dist/release/arrow/KEYS for
this propose.
W
I'd be in favor in having nightlies made available in a central place
for testing. I think it would help users verify whether bugs have been
fixed in master or not.
Other ASF projects do make nightlies available with appropriate
disclosures that they are not releases:
https://jmeter.apache.org/ni