* [PATCH] SECURITY.md: add my email address and GPG key fingerprint
@ 2025-06-26 15:57 Stephen Smalley
2025-06-26 20:34 ` Paul Moore
2025-07-11 14:33 ` Stephen Smalley
0 siblings, 2 replies; 5+ messages in thread
From: Stephen Smalley @ 2025-06-26 15:57 UTC (permalink / raw)
To: selinux; +Cc: jwcart2, lautrbach, Stephen Smalley
Signed-off-by: Stephen Smalley <stephen.smalley.work@gmail.com>
---
No hurry on this so feel free to wait until after final release if you like.
SECURITY.md | 2 ++
1 file changed, 2 insertions(+)
diff --git a/SECURITY.md b/SECURITY.md
index 4f624f5d..2fee4927 100644
--- a/SECURITY.md
+++ b/SECURITY.md
@@ -33,6 +33,8 @@ the issue as quickly as possible and shorten the disclosure window.
* (GPG fingerprint) 4568 1128 449B 65F8 80C6 1797 3A84 A946 B4BA 62AE
* Paul Moore, paul@paul-moore.com
* (GPG fingerprint) 7100 AADF AE6E 6E94 0D2E 0AD6 55E4 5A5A E8CA 7C8A
+* Stephen Smalley, stephen.smalley.work@gmail.com
+ * (GPG fingerprint) 5073 3D29 EB3D 5CF7 17AB 32FE 100E 57E3 3B8B 54F2
* Jason Zaman, perfinion@gentoo.org
* (GPG fingerprint) 6319 1CE9 4183 0986 89CA B8DB 7EF1 37EC 935B 0EAF
* Steve Lawrence, slawrence@tresys.com
--
2.49.0
^ permalink raw reply related [flat|nested] 5+ messages in thread
* Re: [PATCH] SECURITY.md: add my email address and GPG key fingerprint
2025-06-26 15:57 [PATCH] SECURITY.md: add my email address and GPG key fingerprint Stephen Smalley
@ 2025-06-26 20:34 ` Paul Moore
2025-06-27 12:12 ` Stephen Smalley
2025-07-11 14:33 ` Stephen Smalley
1 sibling, 1 reply; 5+ messages in thread
From: Paul Moore @ 2025-06-26 20:34 UTC (permalink / raw)
To: Stephen Smalley; +Cc: selinux, jwcart2, lautrbach
On Thu, Jun 26, 2025 at 11:58 AM Stephen Smalley
<stephen.smalley.work@gmail.com> wrote:
>
> Signed-off-by: Stephen Smalley <stephen.smalley.work@gmail.com>
> ---
> No hurry on this so feel free to wait until after final release if you like.
>
> SECURITY.md | 2 ++
> 1 file changed, 2 insertions(+)
>
> diff --git a/SECURITY.md b/SECURITY.md
> index 4f624f5d..2fee4927 100644
> --- a/SECURITY.md
> +++ b/SECURITY.md
> @@ -33,6 +33,8 @@ the issue as quickly as possible and shorten the disclosure window.
> * (GPG fingerprint) 4568 1128 449B 65F8 80C6 1797 3A84 A946 B4BA 62AE
> * Paul Moore, paul@paul-moore.com
> * (GPG fingerprint) 7100 AADF AE6E 6E94 0D2E 0AD6 55E4 5A5A E8CA 7C8A
> +* Stephen Smalley, stephen.smalley.work@gmail.com
> + * (GPG fingerprint) 5073 3D29 EB3D 5CF7 17AB 32FE 100E 57E3 3B8B 54F2
I'm not in front of my system with my full GPG setup so I can't verify
this, but we should verify this key to ensure that it has been signed
by others that are trusted by the SELinux project. We want to make
sure that Stephen's shenanigans are actually his and not some other
Stephen ;)
> * Jason Zaman, perfinion@gentoo.org
> * (GPG fingerprint) 6319 1CE9 4183 0986 89CA B8DB 7EF1 37EC 935B 0EAF
> * Steve Lawrence, slawrence@tresys.com
> --
> 2.49.0
--
paul-moore.com
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [PATCH] SECURITY.md: add my email address and GPG key fingerprint
2025-06-26 20:34 ` Paul Moore
@ 2025-06-27 12:12 ` Stephen Smalley
2025-06-27 16:30 ` Paul Moore
0 siblings, 1 reply; 5+ messages in thread
From: Stephen Smalley @ 2025-06-27 12:12 UTC (permalink / raw)
To: Paul Moore; +Cc: selinux, jwcart2, lautrbach
On Thu, Jun 26, 2025 at 4:34 PM Paul Moore <paul@paul-moore.com> wrote:
>
> On Thu, Jun 26, 2025 at 11:58 AM Stephen Smalley
> <stephen.smalley.work@gmail.com> wrote:
> >
> > Signed-off-by: Stephen Smalley <stephen.smalley.work@gmail.com>
> > ---
> > No hurry on this so feel free to wait until after final release if you like.
> >
> > SECURITY.md | 2 ++
> > 1 file changed, 2 insertions(+)
> >
> > diff --git a/SECURITY.md b/SECURITY.md
> > index 4f624f5d..2fee4927 100644
> > --- a/SECURITY.md
> > +++ b/SECURITY.md
> > @@ -33,6 +33,8 @@ the issue as quickly as possible and shorten the disclosure window.
> > * (GPG fingerprint) 4568 1128 449B 65F8 80C6 1797 3A84 A946 B4BA 62AE
> > * Paul Moore, paul@paul-moore.com
> > * (GPG fingerprint) 7100 AADF AE6E 6E94 0D2E 0AD6 55E4 5A5A E8CA 7C8A
> > +* Stephen Smalley, stephen.smalley.work@gmail.com
> > + * (GPG fingerprint) 5073 3D29 EB3D 5CF7 17AB 32FE 100E 57E3 3B8B 54F2
>
> I'm not in front of my system with my full GPG setup so I can't verify
> this, but we should verify this key to ensure that it has been signed
> by others that are trusted by the SELinux project. We want to make
> sure that Stephen's shenanigans are actually his and not some other
> Stephen ;)
Happy to confirm this in some out-of-band way, maybe at our next
project meeting. Unfortunately couldn't do it in person at LSS-NA this
year ;(
>
> > * Jason Zaman, perfinion@gentoo.org
> > * (GPG fingerprint) 6319 1CE9 4183 0986 89CA B8DB 7EF1 37EC 935B 0EAF
> > * Steve Lawrence, slawrence@tresys.com
> > --
> > 2.49.0
>
> --
> paul-moore.com
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [PATCH] SECURITY.md: add my email address and GPG key fingerprint
2025-06-27 12:12 ` Stephen Smalley
@ 2025-06-27 16:30 ` Paul Moore
0 siblings, 0 replies; 5+ messages in thread
From: Paul Moore @ 2025-06-27 16:30 UTC (permalink / raw)
To: Stephen Smalley; +Cc: selinux, jwcart2, lautrbach
On Fri, Jun 27, 2025 at 8:13 AM Stephen Smalley
<stephen.smalley.work@gmail.com> wrote:
> On Thu, Jun 26, 2025 at 4:34 PM Paul Moore <paul@paul-moore.com> wrote:
> > On Thu, Jun 26, 2025 at 11:58 AM Stephen Smalley
> > <stephen.smalley.work@gmail.com> wrote:
> > >
> > > Signed-off-by: Stephen Smalley <stephen.smalley.work@gmail.com>
> > > ---
> > > No hurry on this so feel free to wait until after final release if you like.
> > >
> > > SECURITY.md | 2 ++
> > > 1 file changed, 2 insertions(+)
> > >
> > > diff --git a/SECURITY.md b/SECURITY.md
> > > index 4f624f5d..2fee4927 100644
> > > --- a/SECURITY.md
> > > +++ b/SECURITY.md
> > > @@ -33,6 +33,8 @@ the issue as quickly as possible and shorten the disclosure window.
> > > * (GPG fingerprint) 4568 1128 449B 65F8 80C6 1797 3A84 A946 B4BA 62AE
> > > * Paul Moore, paul@paul-moore.com
> > > * (GPG fingerprint) 7100 AADF AE6E 6E94 0D2E 0AD6 55E4 5A5A E8CA 7C8A
> > > +* Stephen Smalley, stephen.smalley.work@gmail.com
> > > + * (GPG fingerprint) 5073 3D29 EB3D 5CF7 17AB 32FE 100E 57E3 3B8B 54F2
> >
> > I'm not in front of my system with my full GPG setup so I can't verify
> > this, but we should verify this key to ensure that it has been signed
> > by others that are trusted by the SELinux project. We want to make
> > sure that Stephen's shenanigans are actually his and not some other
> > Stephen ;)
>
> Happy to confirm this in some out-of-band way, maybe at our next
> project meeting. Unfortunately couldn't do it in person at LSS-NA this
> year ;(
In the past we've handled this for other SELinux devs through a key
signing "party", we can follow up off-list.
--
paul-moore.com
^ permalink raw reply [flat|nested] 5+ messages in thread
* Re: [PATCH] SECURITY.md: add my email address and GPG key fingerprint
2025-06-26 15:57 [PATCH] SECURITY.md: add my email address and GPG key fingerprint Stephen Smalley
2025-06-26 20:34 ` Paul Moore
@ 2025-07-11 14:33 ` Stephen Smalley
1 sibling, 0 replies; 5+ messages in thread
From: Stephen Smalley @ 2025-07-11 14:33 UTC (permalink / raw)
To: selinux; +Cc: jwcart2, lautrbach
On Thu, Jun 26, 2025 at 11:58 AM Stephen Smalley
<stephen.smalley.work@gmail.com> wrote:
>
> Signed-off-by: Stephen Smalley <stephen.smalley.work@gmail.com>
NAK'ing my own patch due to generating a new key for this purpose,
will follow up again once it is signed by others.
> ---
> No hurry on this so feel free to wait until after final release if you like.
>
> SECURITY.md | 2 ++
> 1 file changed, 2 insertions(+)
>
> diff --git a/SECURITY.md b/SECURITY.md
> index 4f624f5d..2fee4927 100644
> --- a/SECURITY.md
> +++ b/SECURITY.md
> @@ -33,6 +33,8 @@ the issue as quickly as possible and shorten the disclosure window.
> * (GPG fingerprint) 4568 1128 449B 65F8 80C6 1797 3A84 A946 B4BA 62AE
> * Paul Moore, paul@paul-moore.com
> * (GPG fingerprint) 7100 AADF AE6E 6E94 0D2E 0AD6 55E4 5A5A E8CA 7C8A
> +* Stephen Smalley, stephen.smalley.work@gmail.com
> + * (GPG fingerprint) 5073 3D29 EB3D 5CF7 17AB 32FE 100E 57E3 3B8B 54F2
> * Jason Zaman, perfinion@gentoo.org
> * (GPG fingerprint) 6319 1CE9 4183 0986 89CA B8DB 7EF1 37EC 935B 0EAF
> * Steve Lawrence, slawrence@tresys.com
> --
> 2.49.0
>
^ permalink raw reply [flat|nested] 5+ messages in thread
end of thread, other threads:[~2025-07-11 14:33 UTC | newest]
Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2025-06-26 15:57 [PATCH] SECURITY.md: add my email address and GPG key fingerprint Stephen Smalley
2025-06-26 20:34 ` Paul Moore
2025-06-27 12:12 ` Stephen Smalley
2025-06-27 16:30 ` Paul Moore
2025-07-11 14:33 ` Stephen Smalley
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).