diff --git a/doc/gitian-building/gitian-building-create-vm-debian.md b/doc/gitian-building/gitian-building-create-vm-debian.md --- a/doc/gitian-building/gitian-building-create-vm-debian.md +++ b/doc/gitian-building/gitian-building-create-vm-debian.md @@ -65,8 +65,17 @@ Unixy OSes by entering the following in a terminal: ```bash -echo "e43fef979352df15056ac512ad96a07b515cb8789bf0bfd86f99ed0404f885f5 debian-10.2.0-amd64-netinst.iso" | sha256sum -c - # (must return OK) +DEBIAN_VERSION="10.2.0" +gpg --keyserver keyring.debian.org --recv-keys "DF9B 9C49 EAA9 2984 3258 9D76 DA87 E80D 6294 BE9B" +mkdir -p ~/Downloads/debian-iso-"${DEBIAN_VERSION}" +cd ~/Downloads/debian-iso-"${DEBIAN_VERSION}" +wget "https://cdimage.debian.org/debian-cd/${DEBIAN_VERSION}/amd64/iso-cd/debian-${DEBIAN_VERSION}-amd64-netinst.iso" +wget "https://cdimage.debian.org/debian-cd/${DEBIAN_VERSION}/amd64/iso-cd/SHA256SUMS" +wget "https://cdimage.debian.org/debian-cd/${DEBIAN_VERSION}/amd64/iso-cd/SHA256SUMS.sign" +gpg --verify SHA256SUMS.sign SHA256SUMS || echo "Error: SHA256SUMS did not verify against the given signature!" + # must not error +cat SHA256SUMS | grep debian-10.2.0-amd64-netinst.iso | sha256sum -c + # must return OK ``` Replace `sha256sum` with `shasum` on macOS.