redhat-announce or similar mailing list to keep up to date with
security patches.
logcheck) and read
root's mail! (add root: <username> to /etc/aliases
and run newaliases).
rpm --checksig <file.rpm>, after loading the GPG key of your
packager into your key ring with gpg --import <public key>.)