Gentoo Archives: gentoo-dev

From: Jim Ramsay <lack@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Re: rejecting unsigned commits
Date: Tue, 10 May 2011 18:23:25
Message-Id: 20110510182232.GB5109@altair
In Reply to: Re: [gentoo-dev] Re: rejecting unsigned commits by "Paweł Hajdan
1 On Tue, May 10, 2011 at 08:19:27AM +0200, "Paweł Hajdan, Jr." wrote:
2 > On 5/10/11 4:08 AM, Jim Ramsay wrote:
3 > > - Does this tree signing key have to be DSA? Or is RSA okay too?
4 >
5 > No idea, I'd probably just try and see if signing works.
6
7 /me plugs his ears and presses "GO"...
8
9 Looks like it works fine!
10
11 > > - If I have a key already, should I generate a new subkey just
12 > > for manifest signing, make a whole new primary key, or just use
13 > > the same key I use to sign my emails?
14 >
15 > See
16 > <http://archives.gentoo.org/gentoo-dev/msg_bdc24ba33036ef413e620dc94532e080.xml>,
17 > I think no separate key should be needed.
18
19 You know, I even remember reading this email, but focused more on
20 the SSL Cert recommendation part than immediate answer. Thanks :)
21
22 --
23 Jim Ramsay