From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by finch.gentoo.org (Postfix) with ESMTPS id 47A0C1382C5 for ; Thu, 24 Dec 2020 00:34:44 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 57B3D2BC06A; Thu, 24 Dec 2020 00:34:38 +0000 (UTC) Received: from mail-gw.thundermail.uk (mail-gw.thundermail.uk [149.255.60.71]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id BA2412BC053 for ; Thu, 24 Dec 2020 00:34:37 +0000 (UTC) Received: from mailgw01.thundermail.uk (mail-gw.thundermail.uk [149.255.60.66]) by mail-gw.thundermail.uk (Postfix) with ESMTPS id 77D226005FC4 for ; Thu, 24 Dec 2020 00:34:35 +0000 (GMT) X-ASG-Debug-ID: 1608770073-0554130f633118a80001-LfjuLa Received: from cloud307.thundercloud.uk (cloud307.thundercloud.uk [149.255.58.40]) by mailgw01.thundermail.uk with ESMTP id TQIPQI8YZcj01IeL (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO) for ; Thu, 24 Dec 2020 00:34:33 +0000 (GMT) X-Barracuda-Envelope-From: confabulate@kintzios.com X-Barracuda-Effective-Source-IP: cloud307.thundercloud.uk[149.255.58.40] X-Barracuda-Apparent-Source-IP: 149.255.58.40 Received: from lenovo.localdomain (230.3.169.217.in-addr.arpa [217.169.3.230]) by cloud307.thundercloud.uk (Postfix) with ESMTPSA id 5EE91C46623 for ; Thu, 24 Dec 2020 00:34:33 +0000 (GMT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=kintzios.com; s=default; t=1608770073; bh=t8nYTHKsAVTk9yxQTsOJM/yBOfnY02AXVbUcOY2ZCo4=; h=From:To:Subject; b=TJBfV2EQ61LoWvcMp+yUBOVDf4vRV81tQkVpOoR0UukgZz+VirnBYRtCCvVUK86sR fX6VWULjH0/9k6Gz0PtlhLzzVjePv63o9l5XGbFb2oTkZS9+DMrf1+TsEOtxtlegUO Y4kzF5R5C5erFu6ZTBOBKgP7COspNxiJx4M/Cu5w= Authentication-Results: cloud307.thundercloud.uk; spf=pass (sender IP is 217.169.3.230) smtp.mailfrom=confabulate@kintzios.com smtp.helo=lenovo.localdomain Received-SPF: pass (cloud307.thundercloud.uk: connection is authenticated) From: Michael To: gentoo-user@lists.gentoo.org Subject: Re: [gentoo-user] ISO verification question. Date: Thu, 24 Dec 2020 00:34:09 +0000 X-ASG-Orig-Subj: Re: [gentoo-user] ISO verification question. Message-ID: <1682737.VLH7GnMWUR@lenovo.localdomain> In-Reply-To: References: Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org X-Auto-Response-Suppress: DR, RN, NRN, OOF, AutoReply MIME-Version: 1.0 Content-Type: multipart/signed; boundary="nextPart7891315.NyiUUSuA9g"; micalg="pgp-sha256"; protocol="application/pgp-signature" X-PPP-Message-ID: <20201224003433.2452201.16057@cloud307.thundercloud.uk> X-PPP-Vhost: kintzios.com X-Barracuda-Connect: cloud307.thundercloud.uk[149.255.58.40] X-Barracuda-Start-Time: 1608770073 X-Barracuda-Encrypted: ECDHE-RSA-AES128-GCM-SHA256 X-Barracuda-URL: https://149.255.60.66:443/cgi-mod/mark.cgi X-ASG-Orig-Subj: Re: [gentoo-user] ISO verification question. X-Virus-Scanned: by bsmtpd at thundermail.uk X-Barracuda-Scan-Msg-Size: 2986 X-Barracuda-BRTS-Status: 1 X-Barracuda-Spam-Score: 0.00 X-Barracuda-Spam-Status: No, SCORE=0.00 using global scores of TAG_LEVEL=1000.0 QUARANTINE_LEVEL=1000.0 KILL_LEVEL=1.9 tests= X-Barracuda-Spam-Report: Code version 3.2, rules version 3.2.3.86743 Rule breakdown below pts rule name description ---- ---------------------- -------------------------------------------------- X-Archives-Salt: 61bd2057-8e72-47c6-abd5-4961d2ec5a72 X-Archives-Hash: 7457ae4fcb3c7c6830c759c06e63fbdb --nextPart7891315.NyiUUSuA9g Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="UTF-8"; protected-headers="v1" From: Michael To: gentoo-user@lists.gentoo.org Reply-To: confabulate@kintzios.com Subject: Re: [gentoo-user] ISO verification question. Date: Thu, 24 Dec 2020 00:34:09 +0000 Message-ID: <1682737.VLH7GnMWUR@lenovo.localdomain> In-Reply-To: References: Hi =CE=93=CE=B9=CF=8E=CF=81=CE=B3=CE=BF=CF=82, On Wednesday, 23 December 2020 20:00:28 GMT =CE=93=CE=B9=CF=8E=CF=81=CE=B3= =CE=BF=CF=82 =CE=9A=CF=89=CF=83=CF=84=CF=8C=CF=80=CE=BF=CF=85=CE=BB=CE=BF= =CF=82 wrote: > Hi! :-) >=20 > I just downloaded the minimal installation ISO and I was trying the > verification instructions. > I admit that I'm not any kind of gpg expert, so the results are > somewhat confusing to me. > Can someone shed some light on them? >=20 > Here's console's output: > >gpg --verify install-amd64-minimal-20201222T005811Z.iso.DIGESTS.asc >=20 > gpg: Signature made Tue Dec 22 17:01:06 2020 EET > gpg: using RSA key 534E4209AB49EEE1C19D96162C44695DB9F6043D > gpg: Good signature from "Gentoo Linux Release Engineering (Automated > Weekly Release Key) " [unknown] This is telling you the 'install-amd64- minimal-20201222T005811Z.iso.DIGESTS.asc' file which contains hashes of the= =20 various files listed in it, has a valid signature - i.e. the hashes of thes= e=20 files have not been tampered with and they have been signed by the owner of= =20 the Gentoo Release Engineering key. Have a look here for the published developer keys: https://wiki.gentoo.org/wiki/Project:RelEng > gpg: WARNING: This key is not certified with a trusted signature! This is telling you the above public key has not been marked as trusted in= =20 your own gpg keyring. > gpg: There is no indication that the signature belongs to the > owner. This is to be expected, unless you have checked the fingerprint of the=20 imported key yourself against the keys published in the URL I provided abov= e=20 and thereafter edited the key's level of trust to mark it as trusted in you= r=20 gpg keyring; e.g. you'd need to run: gpg --edit-key and follow the options available for this gpg subcommand to edit the key's= =20 trust level. This is not necessary for a key you'll only use once, as long= as=20 you satisfy yourself the key fingerprint below matches what is published on= =20 the RelEng project page. > Primary key fingerprint: 13EB BDBE DE7A 1277 5DFD B1BA BB57 2E0E > 2D18 2910 Subkey fingerprint: 534E 4209 AB49 EEE1 C19D 9616 2C44 695D B9= =466 > 043D gpg: WARNING: not a detached signature; file > 'install-amd64-minimal-20201222T005811Z.iso.DIGESTS' was NOT verified! >=20 > and: > >sha512sum -c install-amd64-minimal-20201222T005811Z.iso.DIGESTS.asc >=20 > install-amd64-minimal-20201222T005811Z.iso: OK > install-amd64-minimal-20201222T005811Z.iso: FAILED > install-amd64-minimal-20201222T005811Z.iso.CONTENTS.gz: OK > install-amd64-minimal-20201222T005811Z.iso.CONTENTS.gz: FAILED > sha512sum: WARNING: 14 lines are improperly formatted > sha512sum: WARNING: 2 computed checksums did NOT match >=20 >=20 > TIA! :-) > Giorgos. > . So the above output checked the sha512 hashes of all listed files and found= =20 some to be correct - you can use 'install-amd64-minimal-20201222T005811Z.is= o'=20 for your installation. The failed checks above refer to a different hash e= =2Eg.=20 sha256. HTH. --nextPart7891315.NyiUUSuA9g Content-Type: application/pgp-signature; name="signature.asc" Content-Description: This is a digitally signed message part. Content-Transfer-Encoding: 7Bit -----BEGIN PGP SIGNATURE----- iQIzBAABCAAdFiEEXqhvaVh2ERicA8Ceseqq9sKVZxkFAl/j4gEACgkQseqq9sKV Zxnz/xAAzBXhodSmc76LKogqzp7T96fT/f+KAlRzQcj/cyLuPWLZNnJt/vB2s6uc 8fHHsZbNO/IXB1vHu7OuDwyShIVZwrzv0tWin8Bf03zgL0cd8B7ZteQ140I1ziW2 2K66FIPCRwIQkjp1kqORFnkBOeUUK5zERMVmnCtufhrY03KajnsE944tII78EX3L OrXCM6LGvWVWBjYeq1yZEwYnTXSBgTwzghtyKnSX9kuJFQah8DwPv4Cg1Dw2/oGi LKR6dBKPm3htZivZGqVn6McEDLNsitcOy6fvmF2/k60T2TQBkmycVfB12uR3xWkT uy0Zlb6B9IpPIJ3BiPyXhyZP9uWrpbbVQGodUgQQrQpe6tVAnidReaVMbFCFS4CL 0x/kl+b0oBEXtxeJROrJLcQHgiQS7DNGgf2R7S13lA7w/IE1YnCwllaJqnRJdTZk EjOaw5WCOuf29nCktxdDSvHYYQEXrJ+ZlRSTk9CbYg1yV1I86HHhaoMmLas2vaGP FfuO+iRqHTyXUAUWgURWZi1/80sL54Su6SIfI8ss5NVocrKDiT9YQnrdCP+fgOLF NyQLh78Su4C6kQ7XD/zVQrQWvd9mj12PxIoEsgb2/gs/wTWCI2wp+0ccUnKFS+Bk Rwxj68k1A/RapM3ylAU+x+15Cu9yJYJ8nLW70gMSFl7W7p2UkbA= =wnfu -----END PGP SIGNATURE----- --nextPart7891315.NyiUUSuA9g--