From: Matt Domsch Date: Mon, 25 Apr 2005 02:34:20 GMT Subject: Re: Git-commits mailing list feed. Message-ID: <20050425023420.GA14696@lists.us.dell.com> In-Reply-To: <426C4168.6030008@dwheeler.com> On Sun, Apr 24, 2005 at 09:01:28PM -0400, David A. Wheeler wrote: > It may be better to have them as simple detached signatures, which are > completely separate files (see gpg --detached). > Yeah, gpg currently implements detached signatures > by repeating what gets signed, which is unfortunate, > but the _idea_ is the right one. I solve this with two simple scripts, "sign" calls "cutsig". -------------- sign #!/bin/sh DEFAULT_KEY="my-private-key-string" CUTSIG=~/bin/cutsig.pl usage() { echo "usage: $0 filename" echo " produces filename.sign" } if [ $# -lt 1 ]; then usage exit 1; fi gpg --armor --clearsign --detach-sign --default-key "${DEFAULT_KEY} -v -v -o - ${1} | \ ${CUTSIG} > ${1}.sign exit 0 ----------------- cutsig #!/usr/bin/perl -w do { $line = ; } until $line =~ "-----BEGIN PGP SIGNATURE-----"; print $line; while ( $line = ) { print $line; } exit 0;