Re: DM key transition

2016-05-12 Thread Eric Cooper
On Tue, May 03, 2016 at 12:52:10PM +0100, Jonathan McDowell wrote:
> [...]
> I /think/ we're ok to process this, but I've been waiting on a
> response from the other team members before following up with Eric.

Has there been any progress on this?  Thanks.

--
Eric Cooper e c c @ c m u . e d u



Re: DM key transition

2016-05-03 Thread Jonathan McDowell
On Tue, May 03, 2016 at 09:21:47PM +1000, Aníbal Monsalve Salazar wrote:
> On Mon, 2016-05-02 18:13:23 -0400, Eric Cooper wrote:
> > Would you please consider adding my new key to the DM keyring, and
> > if that's not possible, please let me know the next steps I should
> > take instead.
> >
> > My previous key, 0xB882EBD7, has this fingerprint:
> > FC3D 302E 02E4 69C3 0AA8  9067 F7D9 31D4 B882 EBD7
> >
> > My new key, 0x62CD5132, has this fingerprint:
> > 5DB9 7647 7B8A A684 73EE  0314 8756 8F15 62CD 5132
>
> Please ask a DD to sponsor your key replacement request by sending
> an email signed with a key in the Debian keyring to
> keyr...@rt.debian.org and with a subject including the string
> "[Debian RT]".
> 
> The message must include the full fingerprints of both the old and
> new keys; this is to provide the key maintainers with confirmation
> the replacement is for the right key, and also to help prevent
> replay attacks for the request.

Eric has already done this; there's been some internal keyring-maint
discussion about this due to the difference in the way DM/DD 1024D key
removals were performed. I /think/ we're ok to process this, but I've
been waiting on a response from the other team members before following
up with Eric.

J.

-- 
/-\ |   Is this real - that's the first
|@/  Debian GNU/Linux Developer |thing I think every morning.
\-  |


signature.asc
Description: Digital signature


Re: DM key transition

2016-05-03 Thread Aníbal Monsalve Salazar
On Mon, 2016-05-02 18:13:23 -0400, Eric Cooper wrote:
> Hi, I have been maintaining the approx, ocaml-sha, and
> syslog-ocaml packages.  But I was unable to get my 4096-bit key
> signed by any DDs in time for the transition away from 1024-bit
> keys.
>
> I've finally been able to do this (with 3 DD signatures now).
> Would you please consider adding my new key to the DM keyring, and
> if that's not possible, please let me know the next steps I should
> take instead.
>
> My previous key, 0xB882EBD7, has this fingerprint:
> FC3D 302E 02E4 69C3 0AA8  9067 F7D9 31D4 B882 EBD7
>
> My new key, 0x62CD5132, has this fingerprint:
> 5DB9 7647 7B8A A684 73EE  0314 8756 8F15 62CD 5132
>
> Thanks.
>
> --
> Eric Cooper e c c @ c m u . e d u

Hello Eric,

Please ask a DD to sponsor your key replacement request by sending
an email signed with a key in the Debian keyring to
keyr...@rt.debian.org and with a subject including the string
"[Debian RT]".

The message must include the full fingerprints of both the old and
new keys; this is to provide the key maintainers with confirmation
the replacement is for the right key, and also to help prevent
replay attacks for the request.

Regards,

Aníbal


signature.asc
Description: Digital signature