Hello everyone:

I am trying to verify busybox downloads with the signature file.

https://www.busybox.net/downloads/busybox-1.36.0.tar.bz2
https://www.busybox.net/downloads/busybox-1.36.0.tar.bz2.sig

$ gpg --verify busybox-1.36.0.tar.bz2.sig
gpg: assuming signed data in 'busybox-1.36.0.tar.bz2'
gpg: Signature made Tue Jan  3 14:30:09 2023 UTC
gpg:                using DSA key C9E9416F76E610DBD09D040F47B70C55ACC9965B
gpg:                issuer "[email protected]"
gpg: Can't check signature: No public key

I am unable to locate the public key on busybox.net though.  Tried
searching public key servers without success:

gpg --batch --keyserver certserver.pgp.com --recv-keys C9E9416F76E610DB
gpg --batch --keyserver keyserver.ubuntu.com --recv-keys C9E9416F76E610DB
gpg --batch --keyserver pool.sks-keyservers.net --recv-keys C9E9416F76E610DB

I must be missing something.  :)

Thank you!
_______________________________________________
busybox mailing list
[email protected]
http://lists.busybox.net/mailman/listinfo/busybox

Reply via email to