Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.security > #6232

Re: timestamp of the signature of Debian 12 netinst

From Jonathan Wiltshire <jmw@debian.org>
Newsgroups linux.debian.security
Subject Re: timestamp of the signature of Debian 12 netinst
Date 2023-06-24 20:30 +0200
Message-ID <GKgbf-CfQ-3@gated-at.bofh.it> (permalink)
References (4 earlier) <GJQqt-lPn-5@gated-at.bofh.it> <GJRFT-mYM-3@gated-at.bofh.it> <GJUaJ-okR-3@gated-at.bofh.it> <GJVqa-pfq-5@gated-at.bofh.it> <GKgbf-CfQ-5@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


[Multipart message — attachments visible in raw view] - view raw

On 24 June 2023 19:20:57 BST, Julian Schreck <js-priv@online.de> wrote:
>I meant: Where to find *the date and time that the signature for the SHA512SUMS file was produced* (on the website)?
>--
>> On 2023-06-23 20:59:07 +0200 (+0200), Julian Schreck wrote:
>> > Where to find the former? (Or do I not need it for checking the
>> > integrity of the download(s)?)
>> [...]
>> > > > [1] : https://www.debian.org/CD/verify, e. g. 2011-01-05 [SC]
>> [...]
>> 
>> Please restate your question more precisely if this doesn't answer
>> it (because it's not clear what you meant by "find the former" since
>> "the former" was material you quoted in your reply already), but if
>> you follow that URL you'll see instructions for checking the
>> integrity and provenance of downloads.
>

You won't find it there, and it doesn't matter. You only need to verify that the signature is by the trusted key, which your output indicates that it was (although you have to rely on a CA trust path).

-- 
Jonathan Wiltshire jmw@debian.org
Debian Developer http://people.debian.org/~jmw

4096R: 0xD3524C51 / 0A55 B7C5 1223 3942 86EC 74C3 5394 479D D352 4C51

Back to linux.debian.security | Previous | NextPrevious in thread | Next in thread | Find similar


Thread

timestamp of the signature of Debian 12 netinst Julian Schreck <js-priv@online.de> - 2023-06-23 17:00 +0200
  Re: timestamp of the signature of Debian 12 netinst "Adam D. Barratt" <adam@adam-barratt.org.uk> - 2023-06-23 18:20 +0200
    Re: timestamp of the signature of Debian 12 netinst Julian Schreck <js-priv@online.de> - 2023-06-23 21:00 +0200
      Re: timestamp of the signature of Debian 12 netinst Jeremy Stanley <fungi@yuggoth.org> - 2023-06-23 22:20 +0200
        Re: timestamp of the signature of Debian 12 netinst Jonathan Wiltshire <jmw@debian.org> - 2023-06-24 20:30 +0200
        Re: timestamp of the signature of Debian 12 netinst Julian Schreck <js-priv@online.de> - 2023-06-24 20:30 +0200
  Re: timestamp of the signature of Debian 12 netinst Jonathan Wiltshire <jmw@debian.org> - 2023-06-23 19:10 +0200

csiph-web