bluca asked me to help with sponsoring this. > Unlike Ubuntu, Debian or Fedora, on Archlinux there is no single archive key that users can use to verify packages and repositories, the key of the individual uploader is needed to verify each package that they upload, so updates are necessary when new packages/maintainers are added.
This doesn't seem like it's practical to maintain via SRUs then? As I mentioned in bug 2075505, I'm not sure that maintaining and updating packages in Ubuntu archive is the correct architecture here. I'm declining to sponsor this without consensus amongst Ubuntu developers that constant SRUs of these packages is the right architecture to use. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2076416 Title: [SRU] Upload latest archlinux-keyring from oracular to noble-proposed To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/archlinux-keyring/+bug/2076416/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs