FC2T3 torrent locations

Jesse Keating jkeating at j2solutions.net
Tue Apr 27 00:26:50 UTC 2004


On Monday 26 April 2004 16:54, Matias Feliciano wrote:
> MD5SUM is along the iso. And signed by "Fedora Project
> <fedora at redhat.com>".
>
> $ gpg --verify MD5SUM
> gpg: WARNING: using insecure memory!
> gpg: please see http://www.gnupg.org/faq.html for more information
> gpg: Signature made Thu Apr 22 20:47:53 2004 CEST using DSA key ID
> 4F2A6FD2 gpg: Good signature from "Fedora Project
> <fedora at redhat.com>"
>
> > from fedora.us or similar just to make sure. If they check out then
> > yes I am a lucky dog :)
>
> It's better to wait a little.
> And use GPG. It's perfect when using "untrusted" mirror.
> Visit http://www.gnupg.org/

An ISO that has problems could have been signed/released by RH, sent to 
mirrors, then a problem could have been discovered that would require a 
re-push (not huge w/ rsync to just twiddle the bits a bit) new isos.  
SO the isos are signed, but may be the wrong version.

-- 
Jesse Keating RHCE      (geek.j2solutions.net)
Fedora Legacy Team      (www.fedoralegacy.org)
GPG Public Key          (geek.j2solutions.net/jkeating.j2solutions.pub)
 
Was I helpful?  Let others know:
 http://svcs.affero.net/rm.php?r=jkeating
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: signature
URL: <http://listman.redhat.com/archives/fedora-test-list/attachments/20040426/eb3cc8c3/attachment.sig>


More information about the fedora-test-list mailing list