On Tue, Nov 21, 2006 at 11:52:38PM +0100, Kurt Roeckx wrote: > > > gpg --recv-keys A70DAF536070D3A1 && (gpg --export -a A70DAF536070D3A1 | > > > apt-key add -) > > > > Uh, don't forget the part about verifying that the key is actually > > signed by the ftpmasters. Skipping that step pretty much defeats the > > entire point. > > > > gpg --list-sigs A70DAF536070D3A1 > > Try gpg --check-sigs A70DAF536070D3A1 instead.
Very useful: ([EMAIL PROTECTED])~$gpg --check-sigs A70DAF536070D3A1 pub 1024D/6070D3A1 2006-11-20 [expires: 2009-07-01] uid Debian Archive Automatic Signing Key (4.0/etch) <[EMAIL PROTECTED]> sig!3 6070D3A1 2006-11-20 Debian Archive Automatic Signing Key (4.0/etch) <[EMAIL PROTECTED]> 2 signatures not checked due to missing keys ([EMAIL PROTECTED])~$ Looks that it's signed by itself. regards fEnIo -- ,''`. Bartosz Fenski | mailto:[EMAIL PROTECTED] | pgp:0x13fefc40 | irc:fEnIo : :' : 32-050 Skawina - Glowackiego 3/15 - malopolskie v. - Poland `. `' phone:+48602383548 | proud Debian maintainer and user `- http://skawina.eu.org | jid:[EMAIL PROTECTED] | rlu:172001
signature.asc
Description: Digital signature