Verifying The Digital Signature For Linux Dups - Dell iDRAC6 User Manual

Remote access controller 6
Hide thumbs Also See for iDRAC6:
Table of Contents

Advertisement

Verifying the Digital Signature for Linux DUPs

A digital signature is used to authenticate the identity of the signer of a file
and to certify that the original content of the file has not been modified since
it was signed.
If you do not already have it installed on your system, you must install the
Gnu Privacy Guard (GPG) to verify a digital signature. To use the standard
verification procedure, perform the following steps:
1 Download the Dell Linux public GnuPG key by navigating to
lists.us.dell.com and clicking the Dell Public GPG key link. Save the file
to your local system. The default name is linux-security-publickey.txt.
2 Import the public key to your GPG trust database by running the following
command:
gpg --import <Public Key Filename>
NOTE:
3 To prevent a distrusted-key warning, change the trust level for the Dell
Public GPG key.
Enter the following command:
a
gpg --edit-key 23B66A9D
Within the GPG key editor, enter fpr. The following message
b
appears:
pub 1024D/23B66A9D 2001-04-16 Dell, Inc.
(Product Group) <linux-security@dell.com>
Primary key fingerprint: 4172 E2CE 955A 1776
A5E6 1BB7 CA77 951D 23B6 6A9D
If the fingerprint of your imported key is the same as above, you have a
correct copy of the key.
While still in the GPG key editor, enter trust. The following menu
c
appears:
Please decide how far you trust this user to
correctly verify other users' keys (by looking
You must have your private key to complete the process.
Configuring iDRAC6 Enterprise
57

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents