On Wed, 11 May 2016, Kristen R wrote:
Also noticed after downloading clamav-0.99.2.tar.gz and checking against
the provided signature file the following:
# gpg --verify clamav-0.99.2.tar.gz.sig clamav-0.99.2.tar
gpg: Signature made Fri 22 Apr 2016 08:25:32 AM AKDT using DSA key ID
260429A0
gpg: BAD signature from "Talos (Talos GPG Key) <resea...@sourcefire.com>"
How about a SHA of the file we download to verify the file.
Kristen
Try it again without gunzip'ing it.
gpg --verify clamav-0.99.2.tar.gz.sig clamav-0.99.2.tar.gz
or
gpg --verify clamav-0.99.2.tar.gz.sig
Jason
_______________________________________________
Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq
http://www.clamav.net/contact.html#ml