public inbox for gentoo-dev@lists.gentoo.org
 help / color / mirror / Atom feed
From: Tom Martin <slarti@gentoo.org>
To: gentoo-dev@lists.gentoo.org
Subject: [gentoo-dev] Manifest signing advice: use gpg-agent!
Date: Sat, 4 Sep 2004 23:34:48 +0100	[thread overview]
Message-ID: <20040904222506.GA7667@pohl.lj.net> (raw)

[-- Attachment #1: Type: text/plain, Size: 861 bytes --]

Hiya guys,

As many devs are starting to GPG sign Manifests with repoman, there have been
inevitable problems with people putting their passphrase into the commit message. I've
*nearly* hit the return key on it a few times, and a certain other developer did
actually post their passphrase as a commit message. This, more than anything else, is a
real PITA and at least -fairly- embarassing...

In my opinion, it is a Very Good Thing to use a program such as quintuple-agent or
gpg-agent to keep your passphrase in protected memory to avoid such problems, if you
aren't doing so already.

app-crypt/newpg for gpg-agent
app-crypt/quintuple-agent for... err... quintuple-agent

Happy signing,
Tom

-- 
Tom Martin
Gentoo Linux AMD64 and net-mail developer

GPG Public key available on pgp.mit.edu, 0xB5C4FF89
IRC: slarti` ~ irc.freenode.net

[-- Attachment #2: Type: application/pgp-signature, Size: 189 bytes --]

             reply	other threads:[~2004-09-04 22:35 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2004-09-04 22:34 Tom Martin [this message]
2004-09-05  7:20 ` [gentoo-dev] Manifest signing advice: use gpg-agent! Nicholas Jones
2004-09-05  9:22 ` Robin H. Johnson
2004-09-07  0:32 ` Mike Frysinger

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20040904222506.GA7667@pohl.lj.net \
    --to=slarti@gentoo.org \
    --cc=gentoo-dev@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox