commit e85ce2e33e0a635878efe65b83299b45c5208495 Author: Roger Dingledine arma@torproject.org Date: Wed Dec 26 02:05:21 2018 -0500
use long key id's and rerun script
which fixes some of the fake keys on the signing key page :/ --- include/keys.txt | 6 ++-- include/keys.wmi | 106 +++++++++++++++++++++---------------------------------- 2 files changed, 44 insertions(+), 68 deletions(-)
diff --git a/include/keys.txt b/include/keys.txt index 826467a5..aa05b0b6 100644 --- a/include/keys.txt +++ b/include/keys.txt @@ -6,17 +6,17 @@ Nicolas Vigier: 0x3E39CEABFC69F6F7 Arthur Edelstein: 0xD752F538C0D38C3A
[Tor source tarballs] -Roger Dingledine: 0x28988BF5, 0x19F78451 +Roger Dingledine: 0xEB5A896A28988BF5, 0xC218525819F78451 Nick Mathewson: 0xFE43009C4607B1FB, 0x6AFEE6D49E92B601(signing key)
[older Tor tarballs] -Nick Mathewson: 0x165733EA, 0x8D29319A(signing key) +Nick Mathewson: 0x21194EBB165733EA, 0x21194EBB165733EA(signing key)
[deb.torproject.org repositories and archives] Tor Project Archive: 0xEE8CBC9E886DDD89
[Arm releases] -Damian Johnson: 0x9ABBEEC6 +Damian Johnson: 0x0445B7AB9ABBEEC6
[Tails live system releases] The Tails team: 0xDBB802B258ACD84F diff --git a/include/keys.wmi b/include/keys.wmi index c163717a..6e6b58c7 100644 --- a/include/keys.wmi +++ b/include/keys.wmi @@ -6,15 +6,15 @@ To learn how to verify signatures, see <a href="<page docs/signing-keys>"> our manual</a>. </p> <p> -As of 8/118 the signing keys we use are: +As of 11/118 the signing keys we use are: </p>
<ul> <li>The Tor Browser Developers (<a href='https://pgp.mit.edu/pks/lookup?search=0x4E2C6E8793298290&op=vindex&exact=on'>0x4E2C6E8793298290</a>), Mike Perry (<a href='https://pgp.mit.edu/pks/lookup?search=0x29846B3C683686CC&op=vindex&exact=on'>0x29846B3C683686CC</a>), Georg Koppen (<a href='https://pgp.mit.edu/pks/lookup?search=0xD1483FA6C3C07136&op=vindex&exact=on'>0xD1483FA6C3C07136</a>), Nicolas Vigier (<a href='https://pgp.mit.edu/pks/lookup?search=0x3E39CEABFC69F6F7&op=vindex&exact=on'>0x3E39CEABFC69F6F7</a>), Arthur Edelstein (<a href='https://pgp.mit.edu/pks/lookup?search=0xD752F538C0D38C3A&op=vindex&exact=on'>0xD752F538C0D38C3A</a>) sign <strong>Tor Browser releases</strong></li> -<li>Roger Dingledine (<a href='https://pgp.mit.edu/pks/lookup?search=0x28988BF5&op=vindex&exact=on'>0x28988BF5</a> and <a href='https://pgp.mit.edu/pks/lookup?search=0x19F78451&op=vindex&exact=on'>0x19F78451</a>), Nick Mathewson (<a href='https://pgp.mit.edu/pks/lookup?search=0x165733EA&op=vindex&exact=on'>0x165733EA</a>) sign <strong>Tor source tarballs</strong></li> -<li>Nick Mathewson (<a href='https://pgp.mit.edu/pks/lookup?search=0x165733EA&op=vindex&exact=on'>0x165733EA</a>) signed <strong>older Tor tarballs</strong></li> +<li>Roger Dingledine (<a href='https://pgp.mit.edu/pks/lookup?search=0xEB5A896A28988BF5&op=vindex&exact=on'>0xEB5A896A28988BF5</a> and <a href='https://pgp.mit.edu/pks/lookup?search=0xC218525819F78451&op=vindex&exact=on'>0xC218525819F78451</a>), Nick Mathewson (<a href='https://pgp.mit.edu/pks/lookup?search=0x21194EBB165733EA&op=vindex&exact=on'>0x21194EBB165733EA</a>) sign <strong>Tor source tarballs</strong></li> +<li>Nick Mathewson (<a href='https://pgp.mit.edu/pks/lookup?search=0x21194EBB165733EA&op=vindex&exact=on'>0x21194EBB165733EA</a>) signed <strong>older Tor tarballs</strong></li> <li>Tor Project Archive (<a href='https://pgp.mit.edu/pks/lookup?search=0xEE8CBC9E886DDD89&op=vindex&exact=on'>0xEE8CBC9E886DDD89</a>) signs <strong>deb.torproject.org repositories and archives</strong></li> -<li>Damian Johnson (<a href='https://pgp.mit.edu/pks/lookup?search=0x9ABBEEC6&op=vindex&exact=on'>0x9ABBEEC6</a>) signs <strong>Arm releases</strong></li> +<li>Damian Johnson (<a href='https://pgp.mit.edu/pks/lookup?search=0x0445B7AB9ABBEEC6&op=vindex&exact=on'>0x0445B7AB9ABBEEC6</a>) signs <strong>Arm releases</strong></li> <li>The Tails team (<a href='https://pgp.mit.edu/pks/lookup?search=0xDBB802B258ACD84F&op=vindex&exact=on'>0xDBB802B258ACD84F</a>) signs <strong>Tails live system releases</strong></li> <li>David Goulet (<a href='https://pgp.mit.edu/pks/lookup?search=0x42E86A2A11F48D36&op=vindex&exact=on'>0x42E86A2A11F48D36</a>) signs <strong>Torsocks releases</strong></li> <li>Sukhbir Singh (<a href='https://pgp.mit.edu/pks/lookup?search=0xB01C8B006DA77FAA&op=vindex&exact=on'>0xB01C8B006DA77FAA</a>) signs <strong>TorBirdy releases</strong></li> @@ -27,31 +27,27 @@ As of 8/118 the signing keys we use are: <pre> pub rsa4096/0x4E2C6E8793298290 2014-12-15 [C] [expires: 2020-08-24] Key fingerprint = EF6E 286D DA85 EA2A 4BA7 DE68 4E2C 6E87 9329 8290 -uid [ unknown] Tor Browser Developers (signing key) <torbrowser#torproject.org> +uid [ full ] Tor Browser Developers (signing key) <torbrowser#torproject.org> sub rsa4096/0xEB774491D9FF06E2 2018-05-26 [S] [expires: 2020-09-12] Key fingerprint = 1107 75B5 D101 FB36 BC6C 911B EB77 4491 D9FF 06E2
pub rsa8192/0x29846B3C683686CC 2013-09-11 [SC] Key fingerprint = C963 C21D 6356 4E2B 10BB 335B 2984 6B3C 6836 86CC uid [ unknown] Mike Perry <mikeperry#endarken.info> +uid [ unknown] Mike Perry (Regular use key) <mikeperry#torproject.org> uid [ unknown] Mike Perry <mikeperry#unencrypted.info> uid [ unknown] Mike Perry (Regular use key) <mikeperry#fscked.org> -uid [ unknown] Mike Perry (Regular use key) <mikeperry#torproject.org> -sub rsa4096/0x004AD1045BA0FE28 2017-10-31 [S] [expires: 2018-10-31] - Key fingerprint = 7AB6 A050 C544 CB16 60A9 F1E9 004A D104 5BA0 FE28 -sub rsa4096/0xEEC50E9938F9F4E9 2017-10-31 [E] [expires: 2018-10-31] - Key fingerprint = B403 E911 BA38 63DB ED82 C57C EEC5 0E99 38F9 F4E9
pub rsa4096/0x4E2C6E8793298290 2014-12-15 [C] [expires: 2020-08-24] Key fingerprint = EF6E 286D DA85 EA2A 4BA7 DE68 4E2C 6E87 9329 8290 -uid [ unknown] Tor Browser Developers (signing key) <torbrowser#torproject.org> +uid [ full ] Tor Browser Developers (signing key) <torbrowser#torproject.org> sub rsa4096/0xEB774491D9FF06E2 2018-05-26 [S] [expires: 2020-09-12] Key fingerprint = 1107 75B5 D101 FB36 BC6C 911B EB77 4491 D9FF 06E2
pub rsa4096/0x3E39CEABFC69F6F7 2015-09-24 [SC] Key fingerprint = 6AB6 AEE9 776E 7827 23C8 ACE8 3E39 CEAB FC69 F6F7 -uid [ unknown] Nicolas Vigier (boklm) <boklm#torproject.org> -uid [ unknown] Nicolas Vigier (boklm) <boklm#mars-attacks.org> +uid [ full ] Nicolas Vigier (boklm) <boklm#torproject.org> +uid [ full ] Nicolas Vigier (boklm) <boklm#mars-attacks.org> sub rsa4096/0xA0312B06D9535729 2016-04-23 [A] Key fingerprint = 1315 2F30 FFFE 0EC8 DF58 94FB A031 2B06 D953 5729 sub rsa4096/0x07B7CFD7A0FBA062 2017-01-25 [S] [expires: 2019-01-22] @@ -70,36 +66,24 @@ sub rsa2048/0x3306E88D27211E0B 2014-12-10 [E] <pre> pub dsa1024/0xEB5A896A28988BF5 2000-02-27 [SCA] Key fingerprint = B117 2656 DFF9 83C3 042B C699 EB5A 896A 2898 8BF5 -uid [ unknown] Roger Dingledine <arma#mit.edu> +uid [ full ] Roger Dingledine <arma#mit.edu> sub elg2048/0x147FF421788AFDCE 2000-02-27 [E] Key fingerprint = 08E6 A5BD CF81 D0A3 1BDE 9474 147F F421 788A FDCE
-pub rsa1024/0x9C01813428988BF5 2014-06-16 [SCEA] [revoked: 2016-08-16] - Key fingerprint = 2629 5471 A26A B9F9 6C0C 45BB 9C01 8134 2898 8BF5 -uid [ revoked] Roger Dingledine <arma#mit.edu> - pub rsa4096/0xC218525819F78451 2010-05-07 [SC] Key fingerprint = F65C E37F 04BA 5B36 0AE6 EE17 C218 5258 19F7 8451 -uid [ unknown] Roger Dingledine <arma#mit.edu> -uid [ unknown] Roger Dingledine <arma#freehaven.net> -uid [ unknown] Roger Dingledine <arma#torproject.org> +uid [ultimate] Roger Dingledine <arma#mit.edu> +uid [ultimate] Roger Dingledine <arma#freehaven.net> +uid [ultimate] Roger Dingledine <arma#torproject.org> sub rsa4096/0x1A61312B4600E8BE 2018-06-03 [E] [expires: 2019-06-03] Key fingerprint = 6C8F F7D9 F789 52A1 8986 52B7 1A61 312B 4600 E8BE
-pub rsa4096/0x468FAE2919F78451 2014-06-16 [SCEA] [revoked: 2016-08-16] - Key fingerprint = 9C95 0D05 FC80 2DFA 79C3 7629 468F AE29 19F7 8451 -uid [ revoked] Roger Dingledine <arma#mit.edu> - -pub rsa1024/0xD50624EC165733EA 2014-06-16 [SCEA] [revoked: 2016-08-16] - Key fingerprint = 33DC 81DC C099 4E0A 10D8 048B D506 24EC 1657 33EA -uid [ revoked] Nick Mathewson <nickm#alum.mit.edu> - pub rsa3072/0x21194EBB165733EA 2004-07-03 [SC] Key fingerprint = B35B F85B F194 89D0 4E28 C33C 2119 4EBB 1657 33EA -uid [ unknown] Nick Mathewson <nickm#alum.mit.edu> -uid [ unknown] Nick Mathewson <nickm#wangafu.net> -uid [ unknown] Nick Mathewson <nickm#freehaven.net> -uid [ unknown] [jpeg image of size 3369] +uid [ full ] Nick Mathewson <nickm#alum.mit.edu> +uid [ full ] Nick Mathewson <nickm#wangafu.net> +uid [ full ] Nick Mathewson <nickm#freehaven.net> +uid [ full ] [jpeg image of size 3369] sub rsa3072/0x910397D88D29319A 2004-07-03 [S] Key fingerprint = EF00 F369 1387 FCC5 8CD6 8E13 9103 97D8 8D29 319A sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E] @@ -107,10 +91,10 @@ sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E]
pub rsa3072/0x21194EBB165733EA 2004-07-03 [SC] Key fingerprint = B35B F85B F194 89D0 4E28 C33C 2119 4EBB 1657 33EA -uid [ unknown] Nick Mathewson <nickm#alum.mit.edu> -uid [ unknown] Nick Mathewson <nickm#wangafu.net> -uid [ unknown] Nick Mathewson <nickm#freehaven.net> -uid [ unknown] [jpeg image of size 3369] +uid [ full ] Nick Mathewson <nickm#alum.mit.edu> +uid [ full ] Nick Mathewson <nickm#wangafu.net> +uid [ full ] Nick Mathewson <nickm#freehaven.net> +uid [ full ] [jpeg image of size 3369] sub rsa3072/0x910397D88D29319A 2004-07-03 [S] Key fingerprint = EF00 F369 1387 FCC5 8CD6 8E13 9103 97D8 8D29 319A sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E] @@ -119,16 +103,12 @@ sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E] </pre> <h3>older Tor tarballs</h3> <pre> -pub rsa1024/0xD50624EC165733EA 2014-06-16 [SCEA] [revoked: 2016-08-16] - Key fingerprint = 33DC 81DC C099 4E0A 10D8 048B D506 24EC 1657 33EA -uid [ revoked] Nick Mathewson <nickm#alum.mit.edu> - pub rsa3072/0x21194EBB165733EA 2004-07-03 [SC] Key fingerprint = B35B F85B F194 89D0 4E28 C33C 2119 4EBB 1657 33EA -uid [ unknown] Nick Mathewson <nickm#alum.mit.edu> -uid [ unknown] Nick Mathewson <nickm#wangafu.net> -uid [ unknown] Nick Mathewson <nickm#freehaven.net> -uid [ unknown] [jpeg image of size 3369] +uid [ full ] Nick Mathewson <nickm#alum.mit.edu> +uid [ full ] Nick Mathewson <nickm#wangafu.net> +uid [ full ] Nick Mathewson <nickm#freehaven.net> +uid [ full ] [jpeg image of size 3369] sub rsa3072/0x910397D88D29319A 2004-07-03 [S] Key fingerprint = EF00 F369 1387 FCC5 8CD6 8E13 9103 97D8 8D29 319A sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E] @@ -136,10 +116,10 @@ sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E]
pub rsa3072/0x21194EBB165733EA 2004-07-03 [SC] Key fingerprint = B35B F85B F194 89D0 4E28 C33C 2119 4EBB 1657 33EA -uid [ unknown] Nick Mathewson <nickm#alum.mit.edu> -uid [ unknown] Nick Mathewson <nickm#wangafu.net> -uid [ unknown] Nick Mathewson <nickm#freehaven.net> -uid [ unknown] [jpeg image of size 3369] +uid [ full ] Nick Mathewson <nickm#alum.mit.edu> +uid [ full ] Nick Mathewson <nickm#wangafu.net> +uid [ full ] Nick Mathewson <nickm#freehaven.net> +uid [ full ] [jpeg image of size 3369] sub rsa3072/0x910397D88D29319A 2004-07-03 [S] Key fingerprint = EF00 F369 1387 FCC5 8CD6 8E13 9103 97D8 8D29 319A sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E] @@ -150,20 +130,16 @@ sub rsa3072/0xD2CA27F3F25B8E5E 2004-07-03 [E] <pre> pub rsa2048/0xEE8CBC9E886DDD89 2009-09-04 [SC] [expires: 2022-08-05] Key fingerprint = A3C4 F0F9 79CA A22C DBA8 F512 EE8C BC9E 886D DD89 -uid [ unknown] deb.torproject.org archive signing key +uid [ full ] deb.torproject.org archive signing key sub rsa2048/0x74A941BA219EC810 2009-09-04 [S] [expires: 2020-11-23] Key fingerprint = 2265 EB4C B2BF 88D9 00AE 8D1B 74A9 41BA 219E C810
</pre> <h3>Arm releases</h3> <pre> -pub rsa1024/0xF94ABB509ABBEEC6 2014-06-16 [SCEA] [revoked: 2016-08-16] - Key fingerprint = D8AA CF11 9067 89E8 91DD 2C27 F94A BB50 9ABB EEC6 -uid [ revoked] Damian Johnson (www.atagar.com) <atagar1#gmail.com> - pub dsa1024/0x0445B7AB9ABBEEC6 2009-06-17 [SC] Key fingerprint = 6827 8CC5 DD2D 1E85 C4E4 5AD9 0445 B7AB 9ABB EEC6 -uid [ unknown] Damian Johnson (www.atagar.com) <atagar1#gmail.com> +uid [ undef ] Damian Johnson (www.atagar.com) <atagar1#gmail.com> uid [ unknown] Damian Johnson <atagar#torproject.org> sub rsa2048/0x888404C187F30690 2010-08-07 [S] Key fingerprint = 2AE2 24F5 C424 990A E520 6C85 8884 04C1 87F3 0690 @@ -175,8 +151,8 @@ sub elg2048/0x04F1B63D146276B2 2009-06-17 [E] <pre> pub rsa4096/0xDBB802B258ACD84F 2015-01-18 [C] [expires: 2020-01-11] Key fingerprint = A490 D0F4 D311 A415 3E2B B7CA DBB8 02B2 58AC D84F -uid [ unknown] Tails developers (offline long-term identity key) <tails#boum.org> -uid [ unknown] Tails developers <tails#boum.org> +uid [ full ] Tails developers (offline long-term identity key) <tails#boum.org> +uid [ full ] Tails developers <tails#boum.org> sub ed25519/0x90B2B4BD7AED235F 2017-08-28 [S] [expires: 2020-01-11] Key fingerprint = CD4D 4351 AFA6 933F 574A 9AFB 90B2 B4BD 7AED 235F sub rsa4096/0xD21DAD38AF281C0B 2017-08-28 [S] [expires: 2020-01-11] @@ -191,9 +167,9 @@ sub rsa4096/0xA8B0F4E45B1B50E2 2018-08-30 [S] [expires: 2020-01-11] <pre> pub rsa2048/0x42E86A2A11F48D36 2011-05-11 [SC] [expires: 2019-05-01] Key fingerprint = B744 17ED DF22 AC9F 9E90 F491 42E8 6A2A 11F4 8D36 -uid [ unknown] David Goulet <dgoulet#ev0ke.net> -uid [ unknown] David Goulet <dgoulet#riseup.net> -uid [ unknown] David Goulet <dgoulet#torproject.org> +uid [ full ] David Goulet <dgoulet#ev0ke.net> +uid [ full ] David Goulet <dgoulet#riseup.net> +uid [ full ] David Goulet <dgoulet#torproject.org> sub rsa4096/0x2AC6036C93CC198D 2013-09-10 [E] [expires: 2019-08-17] Key fingerprint = 0451 E51B 33B7 AC38 C57B 09F7 2AC6 036C 93CC 198D
@@ -202,8 +178,8 @@ sub rsa4096/0x2AC6036C93CC198D 2013-09-10 [E] [expires: 2019-08-17] <pre> pub rsa4096/0xB01C8B006DA77FAA 2016-02-25 [SC] [expires: 2020-02-24] Key fingerprint = E4AC D397 5427 A5BA 8450 A1BE B01C 8B00 6DA7 7FAA -uid [ unknown] Sukhbir Singh <azadi#riseup.net> -uid [ unknown] Sukhbir Singh <sukhbir#torproject.org> +uid [ undef ] Sukhbir Singh <azadi#riseup.net> +uid [ undef ] Sukhbir Singh <sukhbir#torproject.org> sub rsa4096/0x1AF20C043D9F9289 2016-02-25 [E] [expires: 2020-02-24] Key fingerprint = 4403 733D 7141 9BF1 8617 4988 1AF2 0C04 3D9F 9289
@@ -212,9 +188,9 @@ sub rsa4096/0x1AF20C043D9F9289 2016-02-25 [E] [expires: 2020-02-24] <pre> pub rsa4096/0x62AF4031C82E0039 2003-03-24 [SC] [expires: 2024-08-28] Key fingerprint = 25FC 1614 B8F8 7B52 FF2F 99B9 62AF 4031 C82E 0039 -uid [ unknown] Peter Palfrader -uid [ unknown] Peter Palfrader <weasel#debian.org> -uid [ unknown] Peter Palfrader <peter#palfrader.org> +uid [ full ] Peter Palfrader +uid [ full ] Peter Palfrader <weasel#debian.org> +uid [ full ] Peter Palfrader <peter#palfrader.org> sub rsa2048/0x8602C8203872331F 2014-05-04 [S] [expires: 2020-09-01] Key fingerprint = B383 D785 A8C9 2FDE BC06 0376 8602 C820 3872 331F sub rsa2048/0xE377AED938E4E080 2014-05-04 [E] [expires: 2020-09-01]
tor-commits@lists.torproject.org