>My only concern is that it would introduce red tape in the release >process, and discourage us from releasing Frequently.
It could be done linux-kernel style. The "Kernel Archives" key automatically signs each release, and that key is signed by various key developers. Less secure, though, but more secure than no signing. TomG -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 232 bytes Desc: not available URL: <https://emu.freenetproject.org/pipermail/devl/attachments/20000525/467e3054/attachment.pgp>
