On Tue, Nov 21, 2006 at 11:52:38PM +0100, Kurt Roeckx wrote:
> > > gpg --recv-keys A70DAF536070D3A1 && (gpg --export -a A70DAF536070D3A1 | 
> > > apt-key add -)
> > 
> > Uh, don't forget the part about verifying that the key is actually
> > signed by the ftpmasters.  Skipping that step pretty much defeats the
> > entire point.
> > 
> >   gpg --list-sigs A70DAF536070D3A1
> 
> Try gpg --check-sigs A70DAF536070D3A1 instead.

Very useful:

([EMAIL PROTECTED])~$gpg --check-sigs A70DAF536070D3A1
pub   1024D/6070D3A1 2006-11-20 [expires: 2009-07-01]
uid                  Debian Archive Automatic Signing Key (4.0/etch) <[EMAIL 
PROTECTED]>
sig!3        6070D3A1 2006-11-20  Debian Archive Automatic Signing Key 
(4.0/etch) <[EMAIL PROTECTED]>

2 signatures not checked due to missing keys
([EMAIL PROTECTED])~$

Looks that it's signed by itself. 

regards
fEnIo

-- 
  ,''`.  Bartosz Fenski | mailto:[EMAIL PROTECTED] | pgp:0x13fefc40 | irc:fEnIo
 : :' :       32-050 Skawina - Glowackiego 3/15 - malopolskie v. - Poland
 `. `'           phone:+48602383548 | proud Debian maintainer and user
   `-          http://skawina.eu.org | jid:[EMAIL PROTECTED] | rlu:172001

Attachment: signature.asc
Description: Digital signature

Reply via email to