Why Nostr? What is Njump?
2025-04-24 05:37:59
in reply to

Wombatadon on Nostr: nprofile1q…nqkt3 1. Use a package manager that validates packages on installation. ...


1. Use a package manager that validates packages on installation.
Typically done transparently with gpg. Both yum/dnf and apt do this. For yum, ensure gpgcheck is enabled (default)
2. Compare the installed binaries with the packet manifest. yum/dnf do this via rpm -Va, apt probably does.
3. Optionally - install and use fapolicyd, configure integrity to sha256. (allow listing)
Hashes are calculated on installation by yum, checked on each use.
Author Public Key
npub1skl8d3l6hrz87nnxqxpzt4v3ss4a8xztlc8g6y6m3m5n4f75vlmq00vcp8