Skip to content

Commit

Permalink
Add openexr.keyring
Browse files Browse the repository at this point in the history
Signed-off-by: Cary Phillips <[email protected]>
  • Loading branch information
cary-ilm committed Feb 12, 2024
1 parent dfe63ed commit 49145b8
Show file tree
Hide file tree
Showing 3 changed files with 55 additions and 4 deletions.
8 changes: 4 additions & 4 deletions CONTRIBUTING.md
Original file line number Diff line number Diff line change
Expand Up @@ -599,7 +599,7 @@ The preferred workflow is:
[registered](https://docs.github.com/en/authentication/managing-commit-signature-verification/telling-git-about-your-signing-key)
with your GitHub account and git config.

b. Create a signed tag via `git tag -s`.
b. Create a signed tag with the release name via `git tag -s v3.1.9`.

c. Push the tag via `git push --tags`

Expand All @@ -610,16 +610,16 @@ The preferred workflow is:
b. Send an email to ``[email protected]`` officially
annoucing the release.

9. GPG Sign the release file
9. Detach-sign the release source artifact with the GPG key

a. On the releases page, download the .zip file of the release source.

b. Unzip it and verify that it is identical to the source at the
release tag in your repo clone.

c. Sign the zip file via `gpp --detach-sig <file.zip>
c. Sign the zip file via `gpg --detach-sig <file.zip>`

d. Uplodate the `.sig` file to the GitHub release page.
d. Upload the `.sig` file to the GitHub release page.

10. Update the ``release`` branch, which should always point to the
most recent patch of the most recent minor release, i.e. the most
Expand Down
5 changes: 5 additions & 0 deletions SECURITY.md
Original file line number Diff line number Diff line change
Expand Up @@ -72,6 +72,11 @@ security vulnerabilities.
| 2.5.x | :warning: Only the most critical fixes, only if they can be easily backported. |
| <= 1.x | :x: No longer receiving patches of any kind. |

## Signed Releases

Releases are signed by the GPG key listed in
[openexr.keyring](openexr.keyring).

## Security Expectations

### Software Features
Expand Down
46 changes: 46 additions & 0 deletions openexr.keyring
Original file line number Diff line number Diff line change
@@ -0,0 +1,46 @@
pub rsa3072 2024-02-11 [SC]
B34A8F2C14A48F38FEB395338AA6076A6174AF64
uid [ultimate] Cary Phillips (cary-ilm) <[email protected]>
sub rsa3072 2024-02-11 [E]

-----BEGIN PGP PUBLIC KEY BLOCK-----
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=aEYT
-----END PGP PUBLIC KEY BLOCK-----

0 comments on commit 49145b8

Please sign in to comment.