Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update securedrop-keyring package for TemplateVMs #249

Closed
conorsch opened this issue May 13, 2021 · 3 comments
Closed

Update securedrop-keyring package for TemplateVMs #249

conorsch opened this issue May 13, 2021 · 3 comments

Comments

@conorsch
Copy link
Contributor

Towards freedomofpress/securedrop#5923. In order to rotate the SecureDrop Release Signing Key on the workstation, we must bump the public keyring in the securedrop-keyring package, used in the Debian-based VMs. The package config is here: https://github.com/freedomofpress/securedrop-debian-packaging/tree/963db4100e0dfb5d5ccc019e8b70afe4441f6cab/securedrop-keyring

Note that there's a separate securedrop-keyring package for the servers, changes for which are visible in freedomofpress/securedrop#5930. The same changes should be replicated in the workstation package: version bump, and import new pubkey into the existing keyring, so two pubkeys are present.

@eloquence eloquence transferred this issue from freedomofpress/securedrop-workstation May 18, 2021
@eloquence
Copy link
Member

(Transferred into this repo since the package config lives here.)

@eloquence
Copy link
Member

eloquence commented May 29, 2021

The package was updated via #250; keeping issue open until release (which can of course also be split into a follow-up issue).

@conorsch
Copy link
Contributor Author

conorsch commented Jun 2, 2021

As mentioned in freedomofpress/qubes-template-securedrop-workstation#20 (comment), the 0.1.5 keyring packaged has been released to prod, so closing.

@conorsch conorsch closed this as completed Jun 2, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants