Hello Ralph,

Saturday, May 8, 2004, 3:05:57 AM, you wrote:

RS> Robert Menschel wrote:

RM>> I'd gladly sign the rulesets I post with my own PGP signature, to
RM>> authenticate them, but IMO that signature would cause --lint
RM>> failures.  

RS> You can create a detached signature, i.e. using
RS>    gpg --detach-sign foobar.cf
RS> This will create the signature file foobar.sig, and you can use
RS>    gpg --verify foobar.sig foobar.cf
RS> to verify the authenticity of foobar.cf. I'll include both files so
RS> you can try it yourself. ...

Looks good.  Even works with proprietary PGP 8, which is what I use.

I'll be releasing updates to the SARE_SUB_* rules this weekend, and will
sign them.

Bob Menschel



Reply via email to