which-bugs
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Unable to verify file integrity of which source tarball


From: Luke
Subject: Unable to verify file integrity of which source tarball
Date: Thu, 3 Nov 2016 20:10:21 -0400
User-agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:38.0) Gecko/20100101, Thunderbird/38.5.1

Hello,
It is currently not possible to verify file integrity of the "which"
packages hosted on gnu.org (https://ftp.gnu.org/gnu/which/).

gpg --keyserver keyserver.ubuntu.com --recv-keys
6FD2C61D624ACAD5                                                          
gpg: Total number processed: 1
gpg:     skipped PGP-2 keys: 1

Skipped due to weak digest algo:

https://www.gnupg.org/faq/weak-digest-algos.html


Please update your GPG signing key an re-sign so that those of us
working downstream can verify the file integrity during compile time for
our packages.


Thank you,
Luke
Parabola GNU/Linux-libre Packager


Attachment: signature.asc
Description: OpenPGP digital signature


reply via email to

[Prev in Thread] Current Thread [Next in Thread]