Send patches - preferably formatted by git format-patch - to patches at archlinux32 dot org.
summaryrefslogtreecommitdiff
path: root/update-keys
diff options
context:
space:
mode:
authorErich Eckner <git@eckner.net>2017-05-15 23:18:56 +0200
committerErich Eckner <git@eckner.net>2017-05-15 23:18:56 +0200
commitc0b9f9e0b63edd4b6416511f114dfc1e725b9483 (patch)
tree6335b67f0cf5308adab9953c0115bb0ae68e7373 /update-keys
parent8f18922c54268aa9a1a0ffba3ed0f3482571b632 (diff)
archlinux32-revoked touchedv20170515
Diffstat (limited to 'update-keys')
-rwxr-xr-xupdate-keys37
1 files changed, 15 insertions, 22 deletions
diff --git a/update-keys b/update-keys
index 89051f7..fd2a716 100755
--- a/update-keys
+++ b/update-keys
@@ -48,35 +48,28 @@ while read -ra data; do
${GPG} --command-fd 0 --edit-key ${keyid}
if ! ${GPG} --list-keys --with-colons ${keyid} 2>/dev/null | grep -q '^pub:f:'; then
echo "key is not fully trusted: ${keyid} ${username}"
- ${GPG} --list-keys --with-colons ${keyid}
- echo
- ${GPG} --list-sigs ${keyid}
- while read -r a b; do
- echo
- ${GPG} --list-keys --with-colons ${a}
- done < master-keyids
else
${GPG} --armor --no-emit-version --export ${keyid} >> packager/${username}.asc
fi
done < packager-keyids
-# uncomment when we have keys to revoke
+touch archlinux32-revoked
-#while read -ra data; do
-# keyid="${data[0]}"
-# username="${data[1]}"
-# ${GPG} --recv-keys ${keyid} &>/dev/null
-# printf 'clean\nquit\ny\n' | \
-# ${GPG} --command-fd 0 --edit-key ${keyid}
-# if ! ${GPG} --list-keys --with-colons ${keyid} 2>/dev/null | grep -q '^pub:f:'; then
-# ${GPG} --armor --no-emit-version --export ${keyid} >> packager-revoked/${username}.asc
-# echo "${keyid}" >> archlinux32-revoked
-# else
-# echo "key is still fully trusted: ${keyid} ${username}"
-# fi
-#done < packager-revoked-keyids
+while read -ra data; do
+ keyid="${data[0]}"
+ username="${data[1]}"
+ ${GPG} --recv-keys ${keyid} &>/dev/null
+ printf 'clean\nquit\ny\n' | \
+ ${GPG} --command-fd 0 --edit-key ${keyid}
+ if ! ${GPG} --list-keys --with-colons ${keyid} 2>/dev/null | grep -q '^pub:f:'; then
+ ${GPG} --armor --no-emit-version --export ${keyid} >> packager-revoked/${username}.asc
+ echo "${keyid}" >> archlinux32-revoked
+ else
+ echo "key is still fully trusted: ${keyid} ${username}"
+ fi
+done < packager-revoked-keyids
-#cat master/*.asc packager/*.asc packager-revoked/*.asc > archlinux32.gpg
+# cat master/*.asc packager/*.asc packager-revoked/*.asc > archlinux32.gpg
cat master/*.asc packager/*.asc > archlinux32.gpg