Request for better instructions on verifying IDEA source signatures
smu johnson <[email protected]> Fri, 13 Aug 2010 16:48:31 -0700
| Newsgroups | gmane.comp.encryption.gpg.documentation |
|---|---|
| Message-ID | <[email protected]> |
--===============0867156261== Content-Type: multipart/alternative; boundary=0016e6d58fd6c0eb54048dbd1e17 --0016e6d58fd6c0eb54048dbd1e17 Content-Type: text/plain; charset=ISO-8859-1 Hi, I've been experimenting with the IDEA cipher 3rd party plugin files, and I keep reading about how I should verify their signatures. Unfortunately, the help provided by the GnuPG page for that is useless. Sure, I get the .sig files, but nowhere, not even on the FTP site itself can I find the public keys to verify the signature. I started surfing around the GnuPG pages and read that I could find a communal verifying key in the GnuPG\doc directory, but I don't see anything in my Mingw32 installation. And the key provided in armored ascii format does not match the signature. Great! My argument: I think this is bad for getting people used to doing things right, as actually doing the safe thing has become a wild-goose chase for me. This by no-means encourages anyone to follow proper safety protocol if the suggestion to verify the IDEA code is impossible or extremely difficult, in this instance. Thank you for reading. -- smu johnson <[email protected]> --0016e6d58fd6c0eb54048dbd1e17 Content-Type: text/html; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Hi,<br><br>I've been experimenting with the IDEA cipher 3rd party plugi= n files, and I keep reading about how I should verify their signatures.<br>= <br>Unfortunately, the help provided by the GnuPG page for that is useless.= =A0 Sure, I get the .sig files, but nowhere, not even on the FTP site itsel= f can I find the public keys to verify the signature.<br> <br>I started surfing around the GnuPG pages and read that I could find a c= ommunal verifying key in the GnuPG\doc directory, but I don't see anyth= ing in my Mingw32 installation.=A0 And the key provided in armored ascii fo= rmat does not match the signature.=A0 Great!<br> <br>My argument:=A0 I think this is bad for getting people used to doing th= ings right, as actually doing the safe thing has become a wild-goose chase = for me.=A0 This by no-means encourages anyone to follow proper safety proto= col if the suggestion to verify the IDEA code is impossible or extremely di= fficult, in this instance.<br> <br>Thank you for reading.<br><br clear=3D"all"><br>-- <br>smu johnson <= <a href=3D"mailto:[email protected]">[email protected]</a>><br><br= > --0016e6d58fd6c0eb54048dbd1e17-- --===============0867156261== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline _______________________________________________ Gnupg-doc mailing list [email protected] http://lists.gnupg.org/mailman/listinfo/gnupg-doc --===============0867156261==--