Re: gpg4win expired code signing cert; please renew.

Werner Koch via Gnupg-users <[email protected]>
Newsgroups gmane.comp.encryption.gpg.user
Message-ID <[email protected]>
On Fri, 17 Oct 2025 22:06, Ingo Klöcker said:

> certificate published at
> https://gpg4win.org/package-integrity.html
> has expired. That's correct. Werner should update the list of gpg4win code 

Actually I was not aware that someone(tm) put the X.509 certificate
details for AuthentiCode there.  I see no real need in this because the
PKI should guarantee that this is a valid one.  We use Authenticode only
because Microsoft demands that and some sites only allow running
programs with Authenticode signatures.  For package integrity we use
*PGP signatures.


Salam-Shalom,

   Werner

-- 
The pioneers of a warless world are the youth that
refuse military service.             - A. Einstein

_______________________________________________
Gnupg-users mailing list
[email protected]
https://lists.gnupg.org/mailman/listinfo/gnupg-users
openpgp-digital-signature.asc (application/pgp-signature, 284 B)
-----BEGIN PGP SIGNATURE-----

iJ8EARYKAEcWIQSHd0YfKgdOvEgNNZQZzByeCFsQegUCaPUkLBsUgAAAAAAEAA5t
YW51MiwyLjUrMS4xMSwyLDINHHdrQGdudXBnLm9yZwAKCRAZzByeCFsQeiY4APsH
EHirLUXHPaJtBogTG6gB++3eTyR9uxeb3OhXow3qvwEAuPS3Lfpc7hxBdSh3bZxS
HzVhe/53OJtyj7mpV6qBcQc=
=DLZh
-----END PGP SIGNATURE-----
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.