On Wed, 11 May 2016, Kristen R wrote:

Also noticed after downloading clamav-0.99.2.tar.gz and checking against
the provided signature file the following:

# gpg --verify clamav-0.99.2.tar.gz.sig clamav-0.99.2.tar
gpg: Signature made Fri 22 Apr 2016 08:25:32 AM AKDT using DSA key ID
260429A0
gpg: BAD signature from "Talos (Talos GPG Key) <resea...@sourcefire.com>"

How about a SHA of the file we download to verify the file.

Kristen

Try it again without gunzip'ing it.

gpg --verify clamav-0.99.2.tar.gz.sig clamav-0.99.2.tar.gz
or
gpg --verify clamav-0.99.2.tar.gz.sig

  Jason


_______________________________________________
Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml

Reply via email to