On 10/02/15 07:59 AM, Dennis Lange wrote: > Hi Manuel, > > thanks for posting this thread. I also wondered about the key from > eworm. Sure he is a trusted user but accepting keys made me a little bit > nervous. Is there a way to verify my pacman keys? > > Dennis It already verifies the keys by default... you have to go out of your way to manually mark a key as trusted. Importing a key != marking a key as trusted. It is only trusted if 3+ of the five master keys signed it or if you explicitly mark it with pacman-key.
Attachment:
signature.asc
Description: OpenPGP digital signature