[kleopatra] [Bug 322664] Result of file signature verification is misleading/confusing

2016-09-04 Thread kolAflash via KDE Bugzilla
https://bugs.kde.org/show_bug.cgi?id=322664

kolAflash  changed:

   What|Removed |Added

 CC||kolafl...@kolahilft.de

-- 
You are receiving this mail because:
You are the assignee for the bug.


[kleopatra] [Bug 322664] Result of file signature verification is misleading/confusing

2014-09-21 Thread Tails
https://bugs.kde.org/show_bug.cgi?id=322664

Tails  changed:

   What|Removed |Added

 CC||ta...@boum.org

--- Comment #1 from Tails  ---
I'm part of the people developing Tails, a live system for privacy and online
anonymity:

https://tails.boum.org/

We recommend Kleopatra for our users to verify our ISO images:

https://tails.boum.org/doc/get/verify_the_iso_image_using_other_operating_systems/

But this message has proven to be very confusion to our users. To the point
that we added it to our documentation explaining that things are actually
all-right when you get that message.

I agree with maddins...@gmail.com in the sense that this message shouldn't
question the signature validity: when it happens the signature is indeed valid.
But mention that this is a valid signature by a key which hasn't been verified.

I think that the way to fix this is to get closer to the original GnuPG
message, which is more accurate in this case. This could be something link
this:

Good signature from "John Doe "
Signature made Mon 02 May 2014 00:12:54 CEST
WARNING: This key is not certified with a trusted signature!
   There is no indication that the signature belongs to the
owner.

-- 
You are receiving this mail because:
You are the assignee for the bug.
___
Kdepim-bugs mailing list
Kdepim-bugs@kde.org
https://mail.kde.org/mailman/listinfo/kdepim-bugs