[Secure-testing-team] Adding signatures to the public key of the archive

Andreas Barth aba at not.so.argh.org
Wed Oct 19 09:15:50 UTC 2005


* Olivier Berger (oberger at ouvaton.org) [051019 09:26]:
> I'd like to suggest the addition of signatures of Debian developers to
> the archive's public key at http://secure-testing-master.debian.net/ziyi-2005-7.asc
> 
> All I get if I issue a : 
> 
> # gpg --list-sigs 8722E71E
> pub   1024D/8722E71E 2005-08-24 [expires: 2008-01-31]
> uid                  secure-testing Archive Key 2005-7 <katie at secure-testing.debian.net>
> sig 3        97856265 2005-09-19  Jean-Philippe Souque (Gruikdadude) <jean-philippe at souque.com>
> sig 3        8722E71E 2005-08-24  secure-testing Archive Key 2005-7 <katie at secure-testing.debian.net>
> sub   2048g/A04E64FA 2005-08-24 [expires: 2008-01-31]
> sig          8722E71E 2005-08-24  secure-testing Archive Key 2005-7 <katie at secure-testing.debian.net>

It should look like:
pub   1024D/8722E71E 2005-08-24 [expires: 2008-01-31]
uid                  secure-testing Archive Key 2005-7 <katie at secure-testing.debian.net>
sig 3        8722E71E 2005-08-24  secure-testing Archive Key 2005-7 <katie at secure-testing.debian.net>
sig          EC36A185 2005-08-26  Andreas Barth (Debian Key) <aba at debian.org>
sub   2048g/A04E64FA 2005-08-24 [expires: 2008-01-31]
sig          8722E71E 2005-08-24  secure-testing Archive Key 2005-7 <katie at secure-testing.debian.net>

BTW, I wouldn't trust any of the signatures of people who are not in the
ftp-master role on that key - how can they verify that the key is
correct? I updated the key on the web now.


Cheers,
Andi




More information about the Secure-testing-team mailing list