Hi Mike, On Mon, 2016-05-09 at 19:14 +0000, Mike Gran wrote: > Optional but recommended: Send your key to a GPG public key server: > 'gpg --keyserver keys.gnupg.net --send-keys KEYID', where KEYID is > the eight hex digits reported by 'gpg --list-public-keys' on the > 'pub' line before the date. For full information about GPG, see > <http://www.gnu.org/software/gpg>. > > So is that not optional then?
Definitely optional, don't worry. It's an extra convenience, though, for people who want to check the signature on the distribution. In order to check the .tar.gz.sig file, they need your public key. So, either your public key needs to be available somewhere of your choosing, like your website, or it should be in a public keyserver. I'll suggest to rms an update to the maintainers document that clarifies this purpose. Thanks, Brandon
signature.asc
Description: This is a digitally signed message part
