En regardant les clé d’authentifications pour les dépôts de mon sources.list, j’ai trouvé ça[code]# apt-key list
/etc/apt/trusted.gpg
pub 1024D/6070D3A1 2006-11-20 [expire: 2009-07-01]
uid Debian Archive Automatic Signing Key (4.0/etch) ftpmaster@debian.org
pub 1024D/ADB11277 2006-09-17
uid Etch Stable Release Key debian-release@lists.debian.org
pub 1024D/BBE55AB3 2007-03-31 [expire: 2010-03-30]
uid Debian-Volatile Archive Automatic Signing Key (4.0/etch)
sub 2048g/36CA98F3 2007-03-31 [expire: 2010-03-30]
pub 1024D/F42584E6 2008-04-06 [expire: 2012-05-15]
uid Lenny Stable Release Key debian-release@lists.debian.org
pub 4096R/55BE302B 2009-01-27 [expire: 2012-12-31]
uid Debian Archive Automatic Signing Key (5.0/lenny) ftpmaster@debian.org
pub 2048R/6D849617 2009-01-24 [expire: 2013-01-23]
uid Debian-Volatile Archive Automatic Signing Key (5.0/lenny)
pub 1024D/1F41B907 1999-10-03
uid Christian Marillat marillat@debian.org
uid Christian Marillat marillat@free.fr
sub 1536g/C28DCC42 1999-10-03
sub 1024D/5D3877A7 2002-08-26
pub 1024D/7FAC5991 2007-03-08
uid Google, Inc. Linux Package Signing Key linux-packages-keymaster@google.com
sub 2048g/C07CB649 2007-03-08[/code]La dernière clé relative à Google m’inquiète un peu !
Je suis certain de ne pas avoir volontairement introduit cette clé dans mon système.
Vous avez ça chez vous ?


