#187: drop warning about gpg signature hash
---------------------+------------------------
 Reporter:  kevin    |       Owner:  webmaster
     Type:  defect   |      Status:  new
 Priority:  major    |   Milestone:
Component:  General  |     Version:
 Keywords:           |  Blocked By:
 Blocking:           |
---------------------+------------------------
 The https://fedoraproject.org/en/verify page has a warning:

 "Please note that the Hash: SHA256 line in the CHECKSUM file is part of
 the PGP signature. It does not specify the type of hash used to verify the
 .iso files."

 While this is true, actually the gpg hash and the checksum for the isos
 are both SHA256 now. This was added back when the gpg sig was SHA1 and the
 checksum was SHA256.

 So, this warning just confuses people.

 Consider just dropping it.

-- 
Ticket URL: <https://fedorahosted.org/fedora-websites/ticket/187>
fedora-websites <https://fedoraproject.org/wiki/Websites>
Fedora Website Team's Trac instance
-- 
websites mailing list
[email protected]
https://admin.fedoraproject.org/mailman/listinfo/websites

Reply via email to