https://bugzilla.redhat.com/show_bug.cgi?id=1211212 --- Comment #4 from Petr Pisar <ppisar@xxxxxxxxxx> --- Yes. I noticed it now. It ignores MANIFEST.SKIP by default. Provided the the security concern is correct, it does not make sense to employ the MANIFEST.SKIP again. Actually there is no security reason why to verify the signature when running the upstream tests (i.e. after the build). The only remaining purpose for doing it with respect to MANIFEST.SKIP is a sanity test that all will-be-distributed files were signed. It sound more like an author test for me. -- You are receiving this mail because: You are on the CC list for the bug. -- Fedora Extras Perl SIG http://www.fedoraproject.org/wiki/Extras/SIGs/Perl perl-devel mailing list perl-devel@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/perl-devel