Hi Janne,

[CraigRussell:~/openjpa/openjpa/board] clr% gpg --recv-keys 13BE2497
gpg: requesting key 13BE2497 from hkp server subkeys.pgp.net
gpg: key 13BE2497: "Janne Jalkanen <[EMAIL PROTECTED]>" not changed
gpg: Total number processed: 1
gpg:              unchanged: 1
[CraigRussell:~/Downloads/jspwiki-2.6.2] clr% gpg --verify JSPWiki-2.6.2-rc-4-bin.zip.asc gpg: Signature made Mon Mar 24 09:28:59 2008 PDT using DSA key ID 13BE2497
gpg: Good signature from "Janne Jalkanen <[EMAIL PROTECTED]>"
gpg:                 aka "Janne Jalkanen <[EMAIL PROTECTED]>"
gpg:                 aka "Janne Jalkanen <[EMAIL PROTECTED]>"
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner. Primary key fingerprint: 85D0 2F40 B99F EF5B A9F8 3153 0698 1B9C 13BE 2497

Try using gpg --recv-keys 13BE2497 before verifying.

This is fine for now.

Your signature is valid but not signed. At some point, you should consider getting your key signed by some Apache folks...

Craig

On Mar 25, 2008, at 8:58 AM, Janne Jalkanen wrote:

I wasn't able to verify the build file:
  rocker:Desktop dave$ gpg --verify
JSPWiki-2.6.2-rc-4-bin.zip.asc.txt JSPWiki-2.6.2-rc-4-bin.zip
gpg: Signature made Mon Mar 24 12:28:59 2008 EDT using DSA key ID 13BE2497
  gpg: Can't check signature: public key not found

This worries me, because I *have* submitted the key to the keyservers.

Can anyone else get the signature checked?

/Janne

Craig Russell
Architect, Sun Java Enterprise System http://java.sun.com/products/jdo
408 276-5638 mailto:[EMAIL PROTECTED]
P.S. A good JDO? O, Gasp!

Attachment: smime.p7s
Description: S/MIME cryptographic signature

Reply via email to