Is it just me, or don't we have a policy that all software distributions should be PGP/GPG or equivalently signed with the release manager's key? 8-)

Admittedly, plus points to Forrest and Xindice since they've already moved their distributions to the mirroring system at www.apache.org/dist/xml/[subproject]. But I'd really like to see future releases also get signed before they're put on the distro site.

Thanks,
Shane


--------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]



Reply via email to