add another out-of-band source for the key

This commit is contained in:
Daniel Micay 2019-07-09 17:23:47 -04:00
parent 32452dbda6
commit fb4dec9bd6

View File

@ -121,10 +121,10 @@ RWQZW9NItOuQYJ86EooQBxScfclrWiieJtAO9GpnfEjKbCO/3FriLGX3</pre>
made with the previously used GPG key to verify that this is an authorized key made with the previously used GPG key to verify that this is an authorized key
rotation. The public key has also been published via the official rotation. The public key has also been published via the official
<a href="https://twitter.com/GrapheneOS/status/1145259815851253762">@GrapheneOS Twitter <a href="https://twitter.com/GrapheneOS/status/1145259815851253762">@GrapheneOS Twitter
account</a> and account</a>,
<a href="https://www.reddit.com/r/GrapheneOS/comments/c7gb3f/grapheneos_factory_images_are_now_signed_with/esewpm9">/u/GrapheneOS <a href="https://www.reddit.com/r/GrapheneOS/comments/c7gb3f/grapheneos_factory_images_are_now_signed_with/esewpm9">the /u/GrapheneOS
Reddit account</a>. When the current signing key is replaced, the new key will be Reddit account</a> and <a href="https://github.com/GrapheneOS/releases.grapheneos.org/blob/master/static/factory.pub">is available on GitHub</a>.
signed with it.</p> When the current signing key is replaced, the new key will be signed with it.</p>
<p>Download the factory images for the device from <a href="/releases">the releases <p>Download the factory images for the device from <a href="/releases">the releases
page</a>.</p> page</a>.</p>
<p>Verify the factory images using the signature:</p> <p>Verify the factory images using the signature:</p>