Ruediger Pluem wrote:
> 
> At least obtaining the KEYS file via
> 
> http_s_://svn.apache.org/viewvc/httpd/site/trunk/dist/KEYS?revision=494598
> 
> should increase the trust in the KEYS file and it contents (provided that
> our repository has not been hacked).

His point - he loaded the KEYS file into both GpG and PgP and neither
would acknowledge those keys as valid signatories.  Obviously they
weren't imported 'with trust' and perhaps our documents need to clarify
what options to GPG/PGP are required to load "TRUSTED" KEYS into those
apps.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to