Re: Nate's new key / arch mirror.

Nick Moffitt <[email protected]> Mon, 23 Aug 2004 20:14:00 -0700
Newsgroups gmane.linux.bbc.devel
Message-ID <[email protected]>
begin  Len Trigg  quotation:
> A couple of months ago, Nate Riffe wrote:
> > I've forgotten the passphrase for my arch signing key of record
> > (A5BA24A1).  Here's the stuff for the new one:
> >
> > pub  1024D/5E0E2E40 2004-07-06 Nate Riffe <inkblot at lnx-bbc.org>
> >      Key fingerprint = FBE3 A285 EFE0 E59F 616B  A001 9DA9 AF02 5E0E 2E40
> 
> What is the recommended way of getting this key?
> 
> gpg --keyserver pgp.dtype.org --search-keys "nate riffe"
> 
> Doesn't list a key with that ID.

	Yeah, on account of dtype is solid down.  I sent all the
initial keys to subkeys.pgp.net, but people should re-send them.  I
updated the arch.txt in the stable branch so that it reads:

$ echo 'gpg --default-key "<[email protected]>" --clearsign' > ~/.arch-params/signing/\=default
$ echo '/usr/bin/tla-gpg-check gpg_command="gpg --keyserver subkeys.pgp.net --keyserver-options auto-key-retrieve --verify-files -"' > ~/.arch-params/signing/\=default.check

	Try using that keyserver, anyway.

> As an aside, when I googled for lnx-bbc and 5E0E2E40, I found:
> 
> http://www.sourcecontrol.net/stats/updatestats/latest/[email protected]
> 
> which also seems to be having difficulty updating its arch tree.  I
> thought I'd mention it in case you guys weren't already aware of
> this arch mirror site.

	We tried to get them to set up, but they insist on verifying
all signatures.  They use subkeys.pgp.net, which is why I chose that
one as the official server.  Unfortunately, they also require that you
mail them with the ID of each key that may come along.  It's pretty
strict, so you'll all have to get in touch with them.

-- 
"Man, if everything were object-oriented then rsync           Nick Moffitt
could do this already. Of course, if everything were    [email protected]
object-oriented I'd have a bushy moustache and be
wearing flares, which would suck." -- Sean Neakums