RFE to RedHat patch install error "Public key for XXXX.rpm is not installed"

Hey guys,

A result of a PMR turned into a RFE to see if the BigFix team can create a fixlet that will identify and correct RedHat patch installs errors like the one below (from /var/opt/BESClient/EDRDeployData/EDR_DeploymentResults.txt):

Public key for 2016017502_1.rpm is not installed
[Thu May 19 01:48:46 IST 2016] 2016017502 ____ Failed to install the following packages:
[Thu May 19 01:48:46 IST 2016] 2016017502 ____ glibc-2.12-1.166.el6_7. 7.i686.rpm glibc-headers-2.12-1.166.el6_7.7.x86_64.rpm nscd-2.12-1.166. el6_7.7.x86_64.rpm glibc-2.12-1.166.el6_7.7.x86_64.rpm glibc-common- 2.12-1.166.el6_7.7.x86_64.rpm glibc-devel-2.12-1.166.el6_7.7.x86_64.rpm

Public key for 2850886_1.rpm is not installed
[Sat May 14 05:35:07 IST 2016] 2850886 ____ Failed to install the
following packages:
[Sat May 14 05:35:07 IST 2016] 2850886 ____ java-1.6.0-openjdk-devel-
1.6.0.38-1.13.10.0.el6_7.x86_64.rpm java-1.6.0-openjdk-javadoc-1.6.0.38-
1.13.10.0.el6_7.x86_64.rpm java-1.6.0-openjdk-1.6.0.38-1.13.10.0.el6_7.
x86_64.rpm libjpeg-turbo-1.2.1-3.el6_5.x86_64.rpm libjpeg-turbo-devel-
1.2.1-3.el6_5.x86_64.rpm

Public key for 2850798_1.rpm is not installed
[Sat May 14 06:31:31 IST 2016] 2850798 ____ Failed to install the
following packages:
[Sat May 14 06:31:31 IST 2016] 2850798 ____ ca-certificates-2010.63-3.
el6_1.5.noarch.rpm

I am not so sure about you guys, but the users from my environment loves to mess up with the yum repositories and loose the default gpg key redhat signature. This doesn’t allow BigFix to install the patches correctly as it cannot verify the patch signature anymore.
If anyone already had this issue and would like to see a fixlet to correct that can vote on this RFE:

http://www.ibm.com/developerworks/rfe/execute?use_case=viewRfe&CR_ID=89474

Thanks!

1 Like