GoogleCloudPlatform / GoogleCloudPlatform/gcsfuse

GPG check FAILED Error

Open
#3,874 1 comment 0 reactions 0 assignees View on GitHub
p2 question
Dominant language
Go
Stars
2.3k
Forks
510
Avg merge
2d 17h
Merged PRs (30d)
35

Description

**Describe the issue**
The installation of `gcsfuse` fails to install on Rocky 10 when the GPG check is done.

**System & Version (please complete the following information):**
- OS: Rocky Linux 10
- Platform GCE VM (image: rocky-linux-10-optimized-gcp-v20250926)

**Steps to reproduce the behavior with following information:**
1. Follow the steps in the official [guide](https://cloud.google.com/storage/docs/cloud-storage-fuse/install#centosred-hatrocky-linux)

**Additional context**
```
# dnf install gcsfuse
...
gcsfuse (packages.cloud.google.com)
GPG key at https://packages.cloud.google.com/yum/doc/yum-key.gpg (0xDC6315A3) is already installed
gcsfuse (packages.cloud.google.com)
Importing GPG key 0x3E1BA8D5:
Userid : ""
Fingerprint: 3749 E1BA 95A8 6CE0 5454 6ED2 F09C 394C 3E1B A8D5
From : https://packages.cloud.google.com/yum/doc/rpm-package-key.gpg
Is this ok [y/N]: y
error: Certificate F09C394C3E1BA8D5:
Policy rejects F09C394C3E1BA8D5: No binding signature at time 2025-10-09T06:41:47Z
Key import failed (code 2). Failing package is: gcsfuse-3.4.0-1.x86_64
GPG Keys are configured as: https://packages.cloud.google.com/yum/doc/yum-key.gpg, https://packages.cloud.google.com/yum/doc/rpm-package-key.gpg
The downloaded packages were saved in cache until the next successful transaction.
You can remove cached packages by executing 'dnf clean packages'.
Error: GPG check FAILED
```

**SLO:**
We strive to respond to all bug reports within 24 business hours provided the information mentioned above is included.

Contributor guide

Open the contributing guide

Research direction

Start with the official gcsfuse installation guide for CentOS, Red Hat, and Rocky Linux, then reproduce the transaction on the listed Rocky Linux 10 GCE image using the reported dnf command. Compare the configured GPG key URLs and package metadata; done means the gcsfuse package installs successfully without the GPG check failure.

Written by the indexing model from the issue text.

Assessment

Tech stack
gcp, linux
Domain
devops, release, security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.