Bad GPG signature found

So I have this issue on my Fedora install where I install Tailscale and then later (maybe weeks later) when attempting to update my system packages I get the following error and am not able to complete a system update:

Bad GPG signature found:

/var/cache/PackageKit/36/metadata/tailscale-stable-36-x86_64/packages/tailscale_1.30.2_x86_64.rpm could not be verified. /var/cache/PackageKit/36/metadata/tailscale-stable-36-x86_64/packages/tailscale_1.30.2_x86_64.rpm: digest: SIGNATURE: NOT OK

The usual fix is to uninstall Tailscale, complete the system updates and then re-install Tailscale.
Is there a way to avoid having to uninstall and re-install?

BUMP

Should I post this in the Issues on the Github site?

I’m still having this issue on multiple Fedora machines.

Just for awareness if anyone stumbles upon this issue…
The problem seems to stem from KDE’s Discover interface for upgrading. If you run a simple dnf update from CLI there are no errors and everything upgrades just fine.

3 Likes

Just wanted to thank you for coming back to update this thread.

I also ran into unsigned update errors with Fedora 38. I’m using Gnome, but still saw this error in the Software app.

As you suggested, running dnf update from the CLI proceeded without any error.