Steve Langasek wrote: > FWIW, an additional problem was brought up on IRC last night -- apparently > the new key is not yet being used to sign the security.d.o archive, only the > old key that will be expiring shortly.
So that turns out to not be true (at least now) for the etch suite on security.debian.org. It's signed by the etch key, as well as the old key. It is still true for stable, but that shouldn't matter. -- see shy jo
signature.asc
Description: Digital signature