Re: [dev] Signing releases

2016-06-25 Thread Colin Mills
On Sat, Jun 25, 2016 at 9:56 AM, Hugo Lefeuvre wrote: > > For security reasons, it would be a good idea to provide PGP/GPG signed > release tarballs. Signature checks are automatically done by our packaging > systems and help us to determine whether a new release is trustworthy or > not before pac

[dev] Signing releases

2016-06-25 Thread Hugo Lefeuvre
Dear dwm upstream, I'm the maintainer of the dwm Debian package. For security reasons, it would be a good idea to provide PGP/GPG signed release tarballs. Signature checks are automatically done by our packaging systems and help us to determine whether a new release is trustworthy or not before