Re: Git-commits mailing list feed.
- From
- Paul Jakma <paul@clubi.ie>
- Date
- Apr 25, 2005, 03:08 UTC
- Message-ID
- <Pine.LNX.4.62.0504250405010.14200@sheen.jakma.org>
- In-Reply-To
- <Pine.LNX.4.62.0504250323040.14200@sheen.jakma.org>
Ah, to add to below..
If one wished, one could optionally store the actual signature data as a seperate blob object and refer to it in the signing object. Not needed really for a GPG ASCII clear-signed detached signature (tiny and they're ASCII obviously :) ), but who knows.
On Mon, 25 Apr 2005, Paul Jakma wrote:
Show 9 quoted lines
> - add the 'signature object' to the respository after the signed > object > > So a 'signed commit' turns into the > > - tool preparing the commit object, > - get the user to sign it > - save the detached signature for later > - adding the commit object to the repository
- adding the signature blob, if it is to stored as a blob
> - prepare the signing object and add to repository
Show 6 quoted lines
> The repository head then refers then to signature object, which could > (handwaving) look something like: > > Object Signature > Signing <object ID, in this case of the commit object> > Sign-type GPG
With either a 'Signature <ID of signature data blob>' or else:
> <signature data>
regards,
-- Paul Jakma paul@clubi.ie paul@jakma.org Key ID: 64A2FF6A Fortune: May you have many beautiful and obedient daughters.