[Mono-list] Not able to verify integrity of download

Ian Norton inorton at gmail.com
Tue Mar 11 06:29:28 UTC 2014


I think our friend is wondering if our stable archive is trusted. if
someone hasn't snuck in and inserted some nasty in the released tarball.

I for one think that xamarin really really need to sha2 and sign the
released stable sources!
On 11 Mar 2014 02:52, "Edward Ned Harvey (mono)" <
edward.harvey.mono at clevertrove.com> wrote:

> > From: mono-list-bounces at lists.ximian.com [mailto:mono-list-
> > bounces at lists.ximian.com] On Behalf Of monolithic1
> > Sent: Thursday, January 2, 2014 8:03 PM
> >
> > My search in the forums for "SHA", "verify" or "signing" did not provide
> me
> > any information on how to verify the integrity of the MONO software
> > download.
> >
> > Could someone please point me to the public key, and signature or the
> > SHA256
> > sum for the current stable version of MONO?
>
> Jan 2, eh?  That was a while ago...
>
> Looking at the download site
> http://www.go-mono.com/mono-downloads/download.html
> They don't seem to have published any md5/sha1 sums.
>
> If you're concerned about data integrity, network corruption or something,
> do you want to ask about a specific file?  And maybe one of us can do a md5
> or sha1 of that specific file, so you can be assured there wasn't data
> corruption in transit...
> _______________________________________________
> Mono-list maillist  -  Mono-list at lists.ximian.com
> http://lists.ximian.com/mailman/listinfo/mono-list
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.ximian.com/pipermail/mono-list/attachments/20140311/2cfdbdf2/attachment.html>


More information about the Mono-list mailing list