Declare jboss-logging to be not signed by pzygielo · Pull Request #1744 · s4u/pgp-keys-map (original) (raw)

Conversation

@pzygielo

@pzygielo

@sonarqubecloud

@pzygielo pzygielo marked this pull request as ready for review

September 10, 2023 08:35

@slawekjaranowski

Large organizations like RedHat don't use Sonatype for publishing artifacts.
Their repositories are simply synced into central .. so They can have different policies.

https://central.sonatype.org/publish/large-orgs/

We can try to report a issue for JBoss or try to find reported alrady.

slawekjaranowski

@pzygielo

I guess I was wrong in that matter. I thought that policies are validated on sync as well. But that could be the reason for this exceptional case indeed.
Thanks for checking.

This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.Learn more about bidirectional Unicode characters

[ Show hidden characters]({{ revealButtonHref }})

Labels

2 participants

@pzygielo @slawekjaranowski