On Sunday 18 Sep 2016 10:10:02 Ian Zimmerman wrote: > I noticed a lot of gpg signed mail on mailing lists fails signature > verification lately, including this list. (Others: lkml, haskell-cafe, > mutt-users, even oss-security.) > > It's not just me: quite a few others seem to have made the same > observation. Please see the latest thread on mutt-users: > > http://marc.info/?l=mutt-users&m=147417981514310&w=2 > > Note that it is _not_ a mutt problem: one gets the same "BAD signature" > result from a bare gpg run on the extracted message part. > > So, what's going on? This would seem to be a Big Deal [TM]. The way some clients attach gpg signatures (in line, or multipart) makes a difference, depending on the receiving mail client. I have seen bad signatures in this M/L but it is not a regular occurrence. -- Regards, Mick