[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#968051: Please include direct links to PGP public keys where possible



Package: www.debian.org
Severity: normal

Hi,

Now that keyservers are not so useful any more, it's probably a good
plan to directly publish public keys in the various places where we
list key IDs / fingerprints etc.:

 * DAM in /intro/organization
 * CD signing keys in /CD/verify
 * Security team in /security/faq (currently links to a keyserver)
 * (maybe others?)

Maybe we could/should link to direct lookups on keyring.d.o if that's
possible, or use WKD somehow (hand-wave)?

-- System Information:
Debian Release: 10.5
  APT prefers stable-debug
  APT policy: (500, 'stable-debug'), (500, 'stable'), (500, 'oldstable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 4.19.0-10-amd64 (SMP w/4 CPU cores)
Kernel taint flags: TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8), LANGUAGE=en_GB:en (charmap=UTF-8)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled


Reply to: