[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Unable to verify file integrity of which source tarball
From: |
Luke |
Subject: |
Unable to verify file integrity of which source tarball |
Date: |
Thu, 3 Nov 2016 20:10:21 -0400 |
User-agent: |
Mozilla/5.0 (Windows NT 6.1; WOW64; rv:38.0) Gecko/20100101, Thunderbird/38.5.1 |
Hello,
It is currently not possible to verify file integrity of the "which"
packages hosted on gnu.org (https://ftp.gnu.org/gnu/which/).
gpg --keyserver keyserver.ubuntu.com --recv-keys
6FD2C61D624ACAD5
gpg: Total number processed: 1
gpg: skipped PGP-2 keys: 1
Skipped due to weak digest algo:
https://www.gnupg.org/faq/weak-digest-algos.html
Please update your GPG signing key an re-sign so that those of us
working downstream can verify the file integrity during compile time for
our packages.
Thank you,
Luke
Parabola GNU/Linux-libre Packager
signature.asc
Description: OpenPGP digital signature
[Prev in Thread] |
Current Thread |
[Next in Thread] |
- Unable to verify file integrity of which source tarball,
Luke <=