apt rejects sha1 and rsa1024 signatures after upgrade to version >= 2.9.19 - when GnuPG is replaced with Sequoia
2
votes
1
answer
445
views
After upgrading
apt
to version >= 2.9.19 SHA1 and RSA1024 signatures are rejected.
There is a section in its changelog which says:
>apt (2.9.19) unstable; urgency=medium
>
> * Replace GnuTLS and gcrypt with OpenSSL
> * Replace GnuPG with Sequoia on supported Debian platforms
> - methods: Add new sqv method
> - debian: Add default policy to allow SHA-1 self-signatures until 2026
> - debian: Plug sqv into the package build
So I thought this would enable a policy to accept SHA1 signatures, but perhaps I misunderstood.
Asked by likewise
(690 rep)
Jan 11, 2025, 10:59 PM
Last activity: Jan 12, 2025, 12:14 AM
Last activity: Jan 12, 2025, 12:14 AM