bad signature for PERC6/i firmware update?

Alexander Dupuy alex.dupuy at mac.com
Wed Jul 22 05:05:19 CDT 2009


Am I the only one who checks the signatures for the Dell Update bundles?


$ gpg --verify RAID_FRMW_LX_R216024.BIN.sign RAID_FRMW_LX_R216024.BIN
gpg: Signature made Thu 18 Jun 2009 05:24:20 PM EDT using DSA key ID
23B66A9D
gpg: BAD signature from "Dell, Inc. (Product Group)
<linux-security at dell.com>"


The files are from ftp.dell.com:/sas-raid/ - I have downloaded them
several times to confirm it is not a download error:


 7/14/2009  2:13 PM      4329720 RAID_FRMW_LX_R216024.BIN
 7/14/2009  2:13 PM          194 RAID_FRMW_LX_R216024.BIN.sign

$ md5sum RAID_FRMW_LX_R216024.BIN*
d272afc803b92389d4ba80b05495ab61  RAID_FRMW_LX_R216024.BIN
f8f4858f54207988d95b553e67a13f49  RAID_FRMW_LX_R216024.BIN.sign

I suspect that the DUP will probably install just fine even though the
signature check fails, but it doesn't give me any warm fuzzies.

@alex

-- 
mailto:alex.dupuy at mac.com



More information about the Linux-PowerEdge mailing list