Verify Kicksecure Images Software Signatures
Download image verification instructions for Kicksecure with OpenPGP and Signify.
- Digital signatures are a tool enhancing download security. They are commonly used across the internet and nothing special to worry about.
- Optional, not required: Digital signatures are optional and not mandatory for using Kicksecure, but an extra security measure for advanced users. If you've never used them before, it might be overwhelming to look into them at this stage. Just ignore them for now.
- Learn more: Curious? If you are interested in becoming more familiar with advanced computer security concepts, you can learn more about digital signatures here digital software signatures.
OpenPGP / Signify
ISO
Steps to verify the ISO image depend on the operating system in use:
VirtualBox
Steps to verify the virtual machine images depend on the operating system in use:
Qubes
Kicksecure for Qubes templates (if available, not yet available at time of writing) are automatically verified when qubes-dom0-update
downloads and installs them; manual user verification is unnecessary.
Codecrypt Signatures
Codecrypt signatures are not yet available, but are planned long term.
Volunteer contributions are happily considered! If you were to contribute codecrypt
signature creation to the Kicksecure dm-prepare-release
script, then this feature could be provided much sooner.
If you would like to use codecrypt for software signature verification, please consider making a report in the codecrypt forum thread. This method might be supported sooner if there is sufficient interest.
See Also[edit]
- Download the Kicksecure Signing Key
- Verifying Software Signatures
- Placing Trust in Kicksecure
- OpenPGP key distribution strategies
- Software Signature Verification Usability Issues and Proposed Solutions
We believe security software like Kicksecure needs to remain Open Source and independent. Would you help sustain and grow the project? Learn more about our 12 year success story and maybe DONATE!