git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: send PGP signed commits/patches with git-send-email(1)

From
Konstantin Ryabitsev <konstantin@linuxfoundation.org>
Date
Jun 17, 2022, 12:12 UTC
Message-ID
<20220617121212.g7w7v3v4ynw6wlq7@meerkat.local>
In-Reply-To
<20220617120016.txjksectzdugqiod@fs>
On Fri, Jun 17, 2022 at 02:00:16PM +0200, Fabian Stelzer wrote:
> Konstantin Ryabitsev has done some work in this area especially for kernel
> development by using email headers:
> https://people.kernel.org/monsieuricon/end-to-end-patch-attestation-with-patatt-and-b4
> https://github.com/mricon/patatt

Greg refers specifically to patatt signatures. They aren't really specific to kernel development at all -- they can be used for any patches sent via mail.

b4 (the tool used by many maintainers to retrieve patches from lists) will check patatt-style signatures (in addition to DKIM signatures) to help verify that the patches come from trusted sources and aren't someone pretending to be someone else.

-K
Previous: Fabian StelzerNext: Greg KH
Message 3 of 7 in “send PGP signed commits/patches with git-send-email(1)”
  1. Alejandro ColomarJun 17, 2022
  2. Fabian StelzerJun 17, 2022
  3. Konstantin RyabitsevJun 17, 2022
  4. Greg KHJun 21, 2022
  5. Alejandro ColomarJun 21, 2022
  6. Greg KHJun 21, 2022
  7. Alejandro ColomarJun 21, 2022

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.