Uploaded image for project: 'phpBB'
  1. phpBB
  2. PHPBB-17173

Generate signatures for release packages

XMLWordPrintable

    • Icon: New Feature New Feature
    • Resolution: Fixed
    • Icon: Major Major
    • 4.0.0-a1
    • None
    • None
    • None

      In addition to the sha256 hashes that are already created for release packages, we should also create a signature for each file that has been signed with a private key. Using the published verification key, it will then be possible to confirm not only that the package hasn't been modified after creating the hash but also that neither the package nor the hash have been altered.

            Marc Marc
            Marc Marc
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated:
              Resolved: