Request for better instructions on verifying IDEA source signatures

smu johnson <[email protected]> Fri, 13 Aug 2010 16:48:31 -0700
Newsgroups gmane.comp.encryption.gpg.documentation
Message-ID <[email protected]>
--===============0867156261==
Content-Type: multipart/alternative; boundary=0016e6d58fd6c0eb54048dbd1e17

--0016e6d58fd6c0eb54048dbd1e17
Content-Type: text/plain; charset=ISO-8859-1

Hi,

I've been experimenting with the IDEA cipher 3rd party plugin files, and I
keep reading about how I should verify their signatures.

Unfortunately, the help provided by the GnuPG page for that is useless.
Sure, I get the .sig files, but nowhere, not even on the FTP site itself can
I find the public keys to verify the signature.

I started surfing around the GnuPG pages and read that I could find a
communal verifying key in the GnuPG\doc directory, but I don't see anything
in my Mingw32 installation.  And the key provided in armored ascii format
does not match the signature.  Great!

My argument:  I think this is bad for getting people used to doing things
right, as actually doing the safe thing has become a wild-goose chase for
me.  This by no-means encourages anyone to follow proper safety protocol if
the suggestion to verify the IDEA code is impossible or extremely difficult,
in this instance.

Thank you for reading.


-- 
smu johnson <[email protected]>

--0016e6d58fd6c0eb54048dbd1e17
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable

Hi,<br><br>I&#39;ve been experimenting with the IDEA cipher 3rd party plugi=
n files, and I keep reading about how I should verify their signatures.<br>=
<br>Unfortunately, the help provided by the GnuPG page for that is useless.=
=A0 Sure, I get the .sig files, but nowhere, not even on the FTP site itsel=
f can I find the public keys to verify the signature.<br>
<br>I started surfing around the GnuPG pages and read that I could find a c=
ommunal verifying key in the GnuPG\doc directory, but I don&#39;t see anyth=
ing in my Mingw32 installation.=A0 And the key provided in armored ascii fo=
rmat does not match the signature.=A0 Great!<br>
<br>My argument:=A0 I think this is bad for getting people used to doing th=
ings right, as actually doing the safe thing has become a wild-goose chase =
for me.=A0 This by no-means encourages anyone to follow proper safety proto=
col if the suggestion to verify the IDEA code is impossible or extremely di=
fficult, in this instance.<br>
<br>Thank you for reading.<br><br clear=3D"all"><br>-- <br>smu johnson &lt;=
<a href=3D"mailto:[email protected]">[email protected]</a>&gt;<br><br=
>

--0016e6d58fd6c0eb54048dbd1e17--


--===============0867156261==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
Gnupg-doc mailing list
[email protected]
http://lists.gnupg.org/mailman/listinfo/gnupg-doc

--===============0867156261==--