Note: A side effect of the above bug is that you may see notices
like the following when you try to verify packages:
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
This warning can be ignored as it is simply due to our signing key
not having any additional signatures so as to make it work reliably in RPM.
# rpm --checksig -v .rpm
---- yum available ----
# rpm -Uvh http://download.fedoralegacy.org/fedora/3/legacy-utils/i386/legacy-yumconf-3-4.fc3.noarch.rpm