Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ohpc-release install fails signature check #61

Open
sjpb opened this issue Nov 10, 2020 · 1 comment
Open

ohpc-release install fails signature check #61

sjpb opened this issue Nov 10, 2020 · 1 comment

Comments

@sjpb
Copy link
Collaborator

sjpb commented Nov 10, 2020

Under some circumstances installing the ohpc-release repo for openhpc v2 fails with

Failed to validate GPG signature for ohpc-release-2-1.el8.x86_64

Not clear why: worked on alaska with centos8 cloud image, failed using docker centos:8, then failed on alaska using a new deployment host with centos8 cloud image. Tried going back to same ansible version as working run, still failed.

@sjpb
Copy link
Collaborator Author

sjpb commented Nov 13, 2020

Currently fixed in master by disabling GPG check but from @jovial:

It would preferable to include the expected GPG key in this role and check the package signature. This would protect against the webserver being compromised. But, as master is currently broken without this change maybe that can be looked at another time.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant