Thanks Matthias... Then to check the authenticity of the asc files, we need to have your public-key published... isn't that correct? Sorry if either a) I'm missing the point or b) it's already been published.
I'm new to asc/pgp/gpg protection and my assumptions are based on reading http://httpd.apache.org/dev/verification.html Thanks for clarifying how we can validate that the file we got is the file that was signed during the ant build process. Langley -----Original Message----- From: Matthias Wessendorf [mailto:[EMAIL PROTECTED] Sent: Thursday, February 03, 2005 4:00 AM To: MyFaces Discussion Subject: Re: asc files? John, I made the files using PGP. HTH, Matthias John Langley wrote: > Hi Folks, > Can someone tell me what key was used to sign the asc files up on the > incubator website? I haven't been able to find any indication of who's > key was used. In lieu of this... maybe an md5sum posted there would meet > some of the same goals... i.e. checking that the file we download is > indeed the file that was posted. > > Thanks in advance! > > Langley > -- Matthias We�endorf Aechterhoek 18 DE-48282 Emsdetten Germany phone: +49-2572-9170275 cell phone: +49-179-1118979 email: matzew AT apache DOT org url: http://www.wessendorf.net callto://mwessendorf (Skype) icq: 47016183

