Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add gpg key #50

Open
dvzrv opened this issue Sep 1, 2020 · 1 comment
Open

Add gpg key #50

dvzrv opened this issue Sep 1, 2020 · 1 comment

Comments

@dvzrv
Copy link

dvzrv commented Sep 1, 2020

Hi @JonnyJD!
I'm currently packaging python-discid for Arch Linux. Could you please add the public key for 68304838CC686607 to your account so that the tags show up as verified? Thanks! :)

@dvzrv
Copy link
Author

dvzrv commented Sep 2, 2020

I just realized that the key in question is a 1024 bit DSA key. Please refrain from using it, as DSA is broken.
If you intend to use signed tags or commits in the future please consider creating a new key that is either at least 4096bit RSA or of some new curve type (e.g. ed25519).

As is the signatures can (but should not) be used by downstreams to verify the authenticity of releases.

archlinux-github pushed a commit to archlinux/svntogit-community that referenced this issue Sep 2, 2020
Remove unused validpgpkeys (the mentioned key was DSA 1024bit anyways - JonnyJD/python-discid#50).
Run tests in check() using pytest to be more future proof and report issues upstream.
Skip build in package and install docs.
Update maintainer info.

git-svn-id: file:///srv/repos/svn-community/svn@696981 9fca08f4-af9d-4005-b8df-a31f2cc04f65
archlinux-github pushed a commit to archlinux/svntogit-community that referenced this issue Sep 2, 2020
Remove unused validpgpkeys (the mentioned key was DSA 1024bit anyways - JonnyJD/python-discid#50).
Run tests in check() using pytest to be more future proof and report issues upstream.
Skip build in package and install docs.
Update maintainer info.

git-svn-id: file:///srv/repos/svn-community/svn@696981 9fca08f4-af9d-4005-b8df-a31f2cc04f65
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant