Am I the only one who checks the signatures for the Dell Update bundles?

$ gpg --verify RAID_FRMW_LX_R216024.BIN.sign RAID_FRMW_LX_R216024.BIN
gpg: Signature made Thu 18 Jun 2009 05:24:20 PM EDT using DSA key ID
23B66A9D
gpg: BAD signature from "Dell, Inc. (Product Group)
<[email protected]>"


The files are from ftp.dell.com:/sas-raid/ - I have downloaded them
several times to confirm it is not a download error:


 7/14/2009  2:13 PM      4329720 RAID_FRMW_LX_R216024.BIN
 7/14/2009  2:13 PM          194 RAID_FRMW_LX_R216024.BIN.sign

$ md5sum RAID_FRMW_LX_R216024.BIN*
d272afc803b92389d4ba80b05495ab61  RAID_FRMW_LX_R216024.BIN
f8f4858f54207988d95b553e67a13f49  RAID_FRMW_LX_R216024.BIN.sign

I suspect that the DUP will probably install just fine even though the
signature check fails, but it doesn't give me any warm fuzzies.

@alex

-- 
mailto:[email protected]

_______________________________________________
Linux-PowerEdge mailing list
[email protected]
https://lists.us.dell.com/mailman/listinfo/linux-poweredge
Please read the FAQ at http://lists.us.dell.com/faq

Reply via email to