-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 On 08.10.2012 23:08, Felix Schwarz wrote: ... > Ideally the md5 hash file would be signed with GPG. > > Use case: I'm a Fedora packager and when updating Trac I have to be > extra-careful about adding new source packages. I'd like to verify that the > downloaded source was not altered in any way.
+1, even if few people care, I do as well. Steffen Hoffmann -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iEYEARECAAYFAlBzRWMACgkQ31DJeiZFuHf41gCffrMmf3N4CgiF0764+7G3uqgV XK0AoOS1xAuoP+AQt0akiCHEIIgpGtLe =Cx5A -----END PGP SIGNATURE----- -- You received this message because you are subscribed to the Google Groups "Trac Development" group. To post to this group, send email to [email protected]. To unsubscribe from this group, send email to [email protected]. For more options, visit this group at http://groups.google.com/group/trac-dev?hl=en.
