Subject: | broken signature |
% cpansign -v
Executing gpg --verify --batch --no-tty
--keyserver=hkp://pgp.mit.edu:11371
--keyserver-options=auto-key-retrieve SIGNATURE
gpg: Signature made Thu Oct 19 05:37:03 2006 CEST using DSA key ID 108E4046
gpg: Good signature from "Jesse Vincent <jesse@cpan.org>"
gpg: aka "Jesse Vincent <jesse@fsck.com>"
gpg: aka "Jesse Vincent <jesse@bestpractical.com>"
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the
owner.
Primary key fingerprint: AB4A 62CF 1A1A 119A 0462 39D6 122F 5DF7 108E 4046
--- SIGNATURE Thu Oct 19 05:37:03 2006
+++ (current) Sun Oct 22 11:18:40 2006
@@ -1,6 +1,6 @@
SHA1 b0bc889e0574afe8dd174254060089e7689c02d9 Changes
SHA1 0ac508c50476dcc2bf8fe3094cb341425291e1ee MANIFEST
-SHA1 9aeff4bfa6bf2936d4c407b5db5d909931bc646f META.yml
+SHA1 2e145a734f4f555ae12940b98d55c1882751706c META.yml
SHA1 490f3fd115e09cb05b725580e5ed5cdd58241049 Makefile.PL
SHA1 ed0c107672daac3bc9e266876666e1059dbe44b7 README
SHA1 4ea1e9072ca87399184a46233df52a21e285604d ex/sample_server
==> MISMATCHED content between SIGNATURE and distribution files! <==