FAQ Search Today's Posts Mark Forums Read
» Video Reviews

» Linux Archive

Linux-archive is a website aiming to archive linux email lists and to make them easily accessible for linux users/developers.

» Sponsor

» Partners

» Sponsor

Go Back   Linux Archive > Debian > Debian User

LinkBack Thread Tools
Old 12-04-2008, 11:26 AM
"Magnus Therning"
Default Remote signing of large files

At work I want to add signing to our automatic build system. In
theory it's a simple application of `gpg` at the end of building to
get a detached signature would do, but I'm weary of sticking the
secret key on the build servers. I'd feel a bit more safe if the
signing could be done on a separate server. However, the built files
are large and I don't want to introduce a bottle neck by transfering
all files back and forth over the network.

So, my idea was to somehow separate the two steps that GnuPG performs
under the hood when signing, creating the message digest (hash) and
the signing of this message digest. I've found `--print-md` which
looks promising, but there doesn't seem to be any `--sign-md`.

Any help and suggestions are welcome!


Magnus Therning (OpenPGP: 0xAB4DFBA4)
magnus´╝*therning´╝Äorg Jabber: magnus´╝*therning´╝Äorg
http://therning.org/magnus identi.ca|twitter: magthe

Thread Tools

All times are GMT. The time now is 08:44 AM.

VBulletin, Copyright ©2000 - 2014, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO ©2007, Crawlability, Inc.
Copyright ę2007 - 2008, www.linux-archive.org