Hi,

On 5/21/16 5:12 PM, Vejcik, Steve wrote:
Hi Folks – just starting down the path of using Maven and am unable to
verify the signature for the binary tar.gz archive:



gpg --verify apache-maven-3.3.9-bin.tar.gz.asc
apache-maven-3.3.9-bin.tar.gz.asc

You have to use:

gpg --verify apache-maven-3.3.9-bin.tar.gz.asc apache-maven-3.3.9-bin.tar.gz

instead ...


Kind regards
Karl Heinz Marbaise

gpg: Signature made Tue 10 Nov 2015 10:44:20 AM CST using DSA key ID
BB617866

gpg: BAD signature from "Sarel Jason van Zyl <ja...@maven.org>"



(after having imported the KEYS file cited on the main page).



I assume all is well, but want to confirm and/or find a way to verify
signature.

Thanks

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@maven.apache.org
For additional commands, e-mail: users-h...@maven.apache.org

Reply via email to