Revisions of suse-build-key

Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1156876 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 43)
- switch the container key to the new 4096RSA key by default
- obsolete the 1024bit RSA key from SLES 11, so it gets deinstalled
  from migrated systems. (forwarded request 1156875 from msmeissn)
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1117951 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 42)
- build-container-d4ade9c3-5a2e9669.pem: added missing current
  PEM container key.
- install the PEM files to the container dir, not the .asc files
  (bsc#1216203)
Ana Guerrero's avatar Ana Guerrero (anag+factory) accepted request 1110632 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 41)
- remove gpg, fileutils, mktemp, sh-utils requires as they are not
  needed by the package main functionality, but only by dumpsigs. (forwarded request 1110631 from msmeissn)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 1088291 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 40)
- updated with all current changes
  - gpg-pubkey-3fa1d6ce-63c9481c.asc: Upcoming SLE RSA 4096 bit signing key.
  - gpg-pubkey-25db7ae0-645bae34.asc: New SLE RSA 4096 bit backup signing key. 
  - gpg-pubkey-09d9ea69-645b99ce.asc: New ALP RSA 4096 bit signing key.
  - gpg-pubkey-73f03759-626bd414.asc: New ALP RSA 4096 bit backup signing key.
  - suse_ptf_key.asc: switch to use current RSA 2048 bit key
  - suse_ptf_4096_key.asc: upcoming RSA 4096 bit key for SUSE PTFs.
  - build-container-8fd6c337-63c94b45.asc: New SLE RSA 4096 bit container signing key (GPG format).
  - build-container-8fd6c337-63c94b45.pem: New SLE RSA 4096 bit container signing key (PEM format). (forwarded request 1088284 from msmeissn)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 904142 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 39)
- remove dumpsigs for SLE12+ (rpm 4.x) (bsc#1186827) (forwarded request 903938 from dirkmueller)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 899890 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 38)
This syncs from SUSE:SLE-15:Update. the slightly non-incremental
changelog can't be avoided. 

- suse build key extended (bsc#1176759)
  gpg-pubkey-39db7c82-5847eb1f.asc -> gpg-pubkey-39db7c82-5f68629b.asc

- actually the container key is different from the build signing
  key. (PM-1845 bsc#1170347)

- add a /usr/share/container-keys/ directory for GPG based Container
  verification.
- Add the SUSE build key as "suse-container-key.asc". (PM-1845 bsc#1170347)

- created a new security@suse.de communication key (bsc#1166334)

- include ptf key in the key directory to avoid it being
  stripped via %doc stripping. (bsc#1044232) (forwarded request 899537 from dirkmueller)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 669010 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 37)
- add PTF key to the key directory, so it does not get stripped 
  out when using --exclude-docs (bsc#1044232)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 518538 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 35)
- extend the build@suse.de product key. (bsc#1014151)
  pub  2048R/39DB7C82 2013-01-31 [expires: 2020-12-06]
  uid                            SuSE Package Signing Key <build@suse.de>

- use dumpsigs script from openSUSE to merge code 

- renamed security_at_suse_de.asc to security_at_suse_de_old.asc
- security_at_suse_de.asc: new 4096 bit RSA key.
  pub  4096R/317CD502 2014-10-02 SUSE Security Team <security@suse.de>
  bnc#899509

- create suse-build-key.gpg during build.
- Remove old keys from keyring. (fate#314767)
  Keys currently inside the RPM trusted keyring:
  - pub  2048R/39DB7C82 SuSE Package Signing Key <build@suse.de>
  - pub  2048R/50A3DD1C SuSE Package Signing Key (reserve key) <build@suse.de>
- Various keys are moved to the documentation area
  (/usr/share/doc/packages/suse-build-key)
  - build-at-suse-sle11.asc: the old SUSE Linux Enterprise 11 key.
    if SUSE Linux Enterprise 11 packages need to be verified on
    a SUSE Linux Enterprise 12 system.
  - suse_ptf_key.asc: The suse ptf key. For verification of provided PTFs.
  - security_at_suse_de.asc: Use only for email encryption and
    verification purposes when contacting our security contact address
    security@suse.de (forwarded request 518537 from msmeissn)
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 247206 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 34)
- Went to new method again.
  - suse-build-key.gpg blob dropped
  - ship seperate files
Adrian Schröter's avatar Adrian Schröter (adrianSuSE) committed (revision 33)
Split 13.2 from Factory
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 213750 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 32)
- reverted to contain the fullkeyring build SLE12 Alpha.
- also list the old sle11 build@suse.de key temporary
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 213303 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 31)
- Merged over logic from openSUSE-build-key.
- Got rid of default importing into roots keyring.
- Removed some old keys.
- Clarify that security@suse.de is a email only key
- PTF key is supplied also as %doc, to not be default
  imported.
- Keys currently inside:
  - pub  2048R/39DB7C82 SuSE Package Signing Key <build@suse.de>
  - pub  2048R/50A3DD1C SuSE Package Signing Key (reserve key) <build@suse.de>
  - pub  1024D/B37B98A9 SUSE PTF Signing Key <support@suse.com>
  - pub  2048R/3D25D3D9 SuSE Security Team <security@suse.de> (forwarded request 213302 from msmeissn)
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 201136 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 30)
Automatic submission by obs-autosubmit
Adrian Schröter's avatar Adrian Schröter (adrianSuSE) committed (revision 29)
Split 13.1 from Factory
Adrian Schröter's avatar Adrian Schröter (adrianSuSE) committed (revision 28)
Split 12.3 from Factory
Stephan Kulow's avatar Stephan Kulow (coolo) accepted request 138962 from Marcus Meissner's avatar Marcus Meissner (msmeissn) (revision 27)
- export keys to single files in /usr/lib/rpm/gnupg/keys (forwarded request 138949 from oertel)
Adrian Schröter's avatar Adrian Schröter (adrianSuSE) committed (revision 26)
branched from openSUSE:Factory
Stephan Kulow's avatar Stephan Kulow (coolo) committed (revision 25)
replace license with spdx.org variant
Adrian Schröter's avatar Adrian Schröter (adrianSuSE) committed (revision 24)
Displaying revisions 1 - 20 of 43
openSUSE Build Service is sponsored by