u wrote: > Nowadays we advise users to not just download the ISO and verify it > using OpenPGP, but to instead use our Firefox extension, which verifies > the ISO image automatically.
Why is this your recommendation? Isn't verifying the PGP signature sufficient? Not everyone uses Firefox. For those who do automatic verification is another point of potential failure/attack. I prefer to see the GPG output myself. FWIW my experience with the extension has been disappointing. Much longer download times and many aborted downloads. I have not succeeded in doing an automatic upgrade in Tails. The slowness of Tor added to that of the Tails Tor Browser extension is just too much. I have had to resort to downloading the new .iso, verifying its integrity using GnuPG, and then writing the image to a USB thumb drive. Once the new Tails boots it is a simple matter to clone and upgrade my existing Tails thumb drives. So far it has worked perfectly and my persistent volumes have been preserved. _______________________________________________ tails-support mailing list [email protected] https://mailman.boum.org/listinfo/tails-support To unsubscribe from this list, send an empty email to [email protected].
