Project

General

Profile

Feature #6193

Feature #5653: publish autobuilt ISO images

Sign published artifacts checksums

Added by bertagaz almost 6 years ago. Updated over 5 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
Infrastructure
Target version:
Start date:
09/09/2013
Due date:
% Done:

100%

Feature Branch:
Type of work:
Code
Blueprint:
Starter:
No
Affected tool:

Description

We might want to provide a way to verify the jenkins autobuild isos published on nightly.t.b.o. That way we can have people safely downloading an trying them.

Point is that we can't use our main pgp signing key for this task, as it will be used on a remote server.

We might end on using a signing subkey or more likely to manage a new secret key, signed by our main one.


Subtasks

Feature #6266: Add an OpenPGP key on builder.lizard to sign Jenkins artifactsResolved

Feature #6267: Add checksum signing ability to the Tails build scriptResolved

Feature #6268: Adapt the Jenkins artifacts rotation scriptResolved

Feature #6132: Automated tests using cucumberResolved

History

#1 Updated by intrigeri over 5 years ago

  • Status changed from Confirmed to Fix committed
  • Assignee deleted (bertagaz)

#2 Updated by intrigeri over 5 years ago

  • Status changed from Fix committed to Resolved

#3 Updated by intrigeri over 5 years ago

  • Category changed from 171 to Infrastructure

Also available in: Atom PDF