- updated with all current changes
- gpg-pubkey-3fa1d6ce-63c9481c.asc: Upcoming SLE RSA 4096 bit signing key.
- gpg-pubkey-25db7ae0-645bae34.asc: New SLE RSA 4096 bit backup signing key.
- gpg-pubkey-09d9ea69-645b99ce.asc: New ALP RSA 4096 bit signing key.
- gpg-pubkey-73f03759-626bd414.asc: New ALP RSA 4096 bit backup signing key.
- suse_ptf_key.asc: switch to use current RSA 2048 bit key
- suse_ptf_4096_key.asc: upcoming RSA 4096 bit key for SUSE PTFs.
- build-container-8fd6c337-63c94b45.asc: New SLE RSA 4096 bit container signing key (GPG format).
- build-container-8fd6c337-63c94b45.pem: New SLE RSA 4096 bit container signing key (PEM format).
OBS-URL: https://build.opensuse.org/request/show/1088284
OBS-URL: https://build.opensuse.org/package/show/Base:System/suse-build-key?expand=0&rev=36
This syncs from SUSE:SLE-15:Update. the slightly non-incremental
changelog can't be avoided.
- suse build key extended (bsc#1176759)
gpg-pubkey-39db7c82-5847eb1f.asc -> gpg-pubkey-39db7c82-5f68629b.asc
- actually the container key is different from the build signing
key. (PM-1845 bsc#1170347)
- add a /usr/share/container-keys/ directory for GPG based Container
verification.
- Add the SUSE build key as "suse-container-key.asc". (PM-1845 bsc#1170347)
- created a new security@suse.de communication key (bsc#1166334)
- include ptf key in the key directory to avoid it being
stripped via %doc stripping. (bsc#1044232)
OBS-URL: https://build.opensuse.org/request/show/899537
OBS-URL: https://build.opensuse.org/package/show/Base:System/suse-build-key?expand=0&rev=33
- extend the build@suse.de product key. (bsc#1014151)
pub 2048R/39DB7C82 2013-01-31 [expires: 2020-12-06]
uid SuSE Package Signing Key <build@suse.de>
- use dumpsigs script from openSUSE to merge code
- renamed security_at_suse_de.asc to security_at_suse_de_old.asc
- security_at_suse_de.asc: new 4096 bit RSA key.
pub 4096R/317CD502 2014-10-02 SUSE Security Team <security@suse.de>
bnc#899509
- create suse-build-key.gpg during build.
- Remove old keys from keyring. (fate#314767)
Keys currently inside the RPM trusted keyring:
- pub 2048R/39DB7C82 SuSE Package Signing Key <build@suse.de>
- pub 2048R/50A3DD1C SuSE Package Signing Key (reserve key) <build@suse.de>
- Various keys are moved to the documentation area
(/usr/share/doc/packages/suse-build-key)
- build-at-suse-sle11.asc: the old SUSE Linux Enterprise 11 key.
if SUSE Linux Enterprise 11 packages need to be verified on
a SUSE Linux Enterprise 12 system.
- suse_ptf_key.asc: The suse ptf key. For verification of provided PTFs.
- security_at_suse_de.asc: Use only for email encryption and
verification purposes when contacting our security contact address
security@suse.de
OBS-URL: https://build.opensuse.org/request/show/518537
OBS-URL: https://build.opensuse.org/package/show/Base:System/suse-build-key?expand=0&rev=26
- Merged over logic from openSUSE-build-key.
- Got rid of default importing into roots keyring.
- Removed some old keys.
- Clarify that security@suse.de is a email only key
- PTF key is supplied also as %doc, to not be default
imported.
- Keys currently inside:
- pub 2048R/39DB7C82 SuSE Package Signing Key <build@suse.de>
- pub 2048R/50A3DD1C SuSE Package Signing Key (reserve key) <build@suse.de>
- pub 1024D/B37B98A9 SUSE PTF Signing Key <support@suse.com>
- pub 2048R/3D25D3D9 SuSE Security Team <security@suse.de>
OBS-URL: https://build.opensuse.org/request/show/213302
OBS-URL: https://build.opensuse.org/package/show/Base:System/suse-build-key?expand=0&rev=9