u wrote:
> Nowadays we advise users to not just download the ISO and verify it
> using OpenPGP, but to instead use our Firefox extension, which verifies
> the ISO image automatically.


Why is this your recommendation?  Isn't verifying the PGP signature
sufficient?  Not everyone uses Firefox.  For those who do automatic
verification is another point of potential failure/attack.  I prefer to
see the GPG output myself.

FWIW my experience with the extension has been disappointing.  Much
longer download times and many aborted downloads.  I have not succeeded
in doing an automatic upgrade in Tails. The slowness of Tor added to
that of the Tails Tor Browser extension is just too much. I have had to
resort to downloading the new .iso, verifying its integrity using GnuPG,
and then writing the image to a USB thumb drive.  Once the new Tails
boots it is a simple matter to clone and upgrade my existing Tails thumb
drives.  So far it has worked perfectly and my persistent volumes have
been preserved.
_______________________________________________
tails-support mailing list
[email protected]
https://mailman.boum.org/listinfo/tails-support
To unsubscribe from this list, send an empty email to 
[email protected].

Reply via email to