From: Junio C Hamano Date: Wed, 28 Sep 2011 16:35:09 GMT Subject: Re: Signed push progress? Message-ID: <7v62kc1v7m.fsf@alter.siamese.dyndns.org> In-Reply-To: <20110928075054.GA13727@orbis-terrarum.net> "Robin H. Johnson" writes: > from CVS to Git (we're very close now), we've decided that the signed > pushes will provide better security than our plan of previous plan of > using signed notes, so we'd like to see signed pushes succeed. Could you elaborate on your "previous plan" a bit? What is a signed note, how would it help validate the authenticity, how do developers interact using it and what do you perceive as weaknesses compared to the signed push that we discussed a few weeks ago?