Yong, I cannot find your signature at https://dist.apache.org/repos/dist/release/pulsar/KEYS
can you please add yourself ? otherwise I cannot validate the digital signatures of the artifacts Thanks Enrico Il giorno lun 8 mar 2021 alle ore 05:41 Yong Zhang <y...@apache.org> ha scritto: > > Hi all. > > This is the first release candidate for Apache Pulsar, version 2.X.0. > > It fixes the following issues: > https://github.com/apache/pulsar/pulls?page=1&q=is%3Apr+label%3Arelease%2F2.7.1+is%3Aclosed+-label%3Acomponent%2Fdocumentation > > *** Please download, test and vote on this release. This vote will stay open > for at least 72 hours *** > > Note that we are voting upon the source (tag), binaries are provided for > convenience. > > Source and binary files: > https://dist.apache.org/repos/dist/dev/pulsar/pulsar-2.7.1-candidate-1/ > > SHA-1 checksums: > > 8534bcac8cdc4cd54b99d721fac6e7b3abe4b9a2 apache-pulsar-2.7.1-bin.tar.gz > a4c2f74481d066cb51822d9d54fc59e18033c773 apache-pulsar-2.7.1-src.tar.gz > > Maven staging repo: > https://repository.apache.org/content/repositories/orgapachepulsar-1079 > > The tag to be voted upon: > v2.7.1-candidate-1 (8ea4a39dc8bf6f2f23a160688bb70a80f6acfd4d) > https://github.com/apache/pulsar/releases/tag/v2.7.1-candidate-1 > > Pulsar's KEYS file containing PGP keys we use to sign the release: > https://dist.apache.org/repos/dist/release/pulsar/KEYS > > Please download the the source package, and follow the README to build > and run the Pulsar standalone service.