Tails 开发者维护着几份 OpenPGP 密钥对。

请确保要验证你下载的密钥,因为在密钥服务器上有很多假的或是恶意篡改的 Tails 密钥。

For example, if you first authenticate the Tails signing key through the OpenPGP Web of Trust, then you can verify our others keys as they are all certified by the Tails signing key.

Private mailing list key

Purpose

加密

这个密钥有个用于加密的子钥。给核心开发者加密邮件列表发送加密邮件时请用它给你的邮件加密。 邮箱地址:tails@boum.org

Policy

密钥本身和它的密码存储在运行了我们的加密邮件列表软件的服务器上,以及由我们核心开发者管理的系统上。

这表示除 Tails 开发者的人们在某种情况下也能使用这个密钥。Tails 开发者给予这些人足够的信任来运行我们的加密邮件列表,但是:这对密钥在管理上仍没有我们的签名专用密钥来得安全。

Key details

pub   4096R/0x1D2975EDF93E735F 2009-08-14 [expires: 2019-08-01]
      Key fingerprint = 09F6 BC8F EEC9 D8EE 005D  BAA4 1D29 75ED F93E 735F
uid                  Tails developers (Schleuder mailing-list) <tails@boum.org>
uid                  Tails list (schleuder list) <tails-request@boum.org>
uid                  Tails list (schleuder list) <tails-owner@boum.org>
sub   4096R/0xD843C2F5E89382EB 2009-08-14 [expires: 2019-08-01]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

Signing key

Purpose

这个密钥只能用来签名和认证:它没有加密子密钥。

它的唯一目的就是:

  • 用以给 Tails 发布镜像签名;
  • 用来认证其他密码学公钥,用于 Tails 的开发。

Policy

密钥是永远不会放在某个在线的服务器上,或非 Tails核心开发者管理的系统上。

主密钥

  • Is not owned in a usable format by any single individual. It is split cryptographically using gfshare.
  • Is only used offline, in an air-gapped Tails only communicating with the outside world through:
    • Plugging the Tails flash media in another operating system to install Tails in the first place.
    • Plugging other removable media in the air-gapped Tails to send the public key, secret key stubs, parts of the secret master key, and so on to the outside world.
    • Plugging other removable media in the air-gapped Tails to receive Debian packages, public keys, and so on from the outside world.
  • Expires in less than one year. We will extend its validity as many times as we find reasonable.
  • Has a revocation certificate split amongst different people. See the details of the mechanism.

对子密钥签名

  • 把(子密钥)放在使用者的 OpenPGP 智能卡上。这种智能卡保证了所有加解密操作都在卡内进行,加密材料不会出现在插入了这个卡的操作系统上。
  • 有效日期:跟主密钥一致。

Key details

pub   rsa4096/0xDBB802B258ACD84F 2015-01-18 [C] [expires: 2022-01-19]
      Key fingerprint = A490 D0F4 D311 A415 3E2B  B7CA DBB8 02B2 58AC D84F
uid                   [  full  ] Tails developers (offline long-term identity key) <tails@boum.org>
uid                   [  full  ] Tails developers <tails@boum.org>
sub   rsa4096/0xD21DAD38AF281C0B 2017-08-28 [S] [expires: 2022-01-19]
sub   ed25519/0x90B2B4BD7AED235F 2017-08-28 [S] [expires: 2022-01-19]
sub   rsa4096/0xA8B0F4E45B1B50E2 2018-08-30 [S] [expires: 2022-01-19]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

  • 从这个网站下载它: tails-signing.key
  • 从你最爱的密钥公共服务器上下载。

如果你已经有了 Tails 签名密钥但又下载了一次,它会更新现存的密钥签名的列表。

User support key

Purpose

加密

Policy

密钥本身和它的密码存储在运行了我们的加密邮件列表软件的服务器上,以及由我们核心开发者管理的系统上。

Key details

pub   rsa4096/0xEC57B56EF0C43132 2013-07-24 [SC] [expires: 2022-02-03]
      Key fingerprint = 1F56 EDD3 0741 0480 35DA  C1C5 EC57 B56E F0C4 3132
uid                   [  full  ] Tails bug squad <tails-bugs@boum.org>
uid                   [  undef ] Tails bug squad (schleuder list) <tails-bugs-owner@boum.org>
uid                   [  undef ] Tails bug squad (schleuder list) <tails-bugs-request@boum.org>
uid                   [  full  ] Tails private user support <tails-support-private@boum.org>
sub   rsa4096/0x9D6D6472AFC1AD77 2013-07-24 [E] [expires: 2022-02-03]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

  • 从这个网站下载 : tails-bugs.key
  • 从你最爱的密钥公共服务器上下载。

Press team key

Purpose

加密

Key details

pub   rsa4096/0x457080B5A072CBE3 2014-07-11 [SCEA]
      Key fingerprint = F3CD 9B7B 4BDF 9995 DA22  088E 4570 80B5 A072 CBE3
uid                   [  undef ] Tails press team (schleuder list) <tails-press@boum.org>
uid                   [  undef ] Tails press team (schleuder list) <tails-press-owner@boum.org>
uid                   [  undef ] Tails press team (schleuder list) <tails-press-request@boum.org>
sub   rsa4096/0x5748DE3BC338BFFC 2014-07-11 [SEA]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

  • 从这个网站下载 : tails-press.key
  • 从你最爱的密钥公共服务器上下载。

Accounting team key

Purpose

加密

Key details

pub   rsa4096/0xC436090F4BB47C6F 2014-07-11 [SCEA]
      Key fingerprint = 256D EB90 7788 0CD6 8167  8528 C436 090F 4BB4 7C6F
uid                   [  undef ] Tails accounting team (schleuder list) <tails-accounting@boum.org>
uid                   [  undef ] Tails accounting team (schleuder list) <tails-accounting-owner@boum.org>
uid                   [  undef ] Tails accounting team (schleuder list) <tails-accounting-request@boum.org>
sub   rsa4096/0x289A5B45A9E89475 2014-07-11 [SEA]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

Fundraising team key

Purpose

加密

Key details

pub   rsa4096/0xFEB0D5A18EACAF99 2014-08-09 [SCEA]
      Key fingerprint = 3910 BD9D 690B A8C5 692F  93F8 FEB0 D5A1 8EAC AF99
uid                   [ unknown] Tails fundraising team (schleuder list) <tails-fundraising@boum.org>
uid                   [ unknown] Tails fundraising team (schleuder list) <tails-fundraising-owner@boum.org>
uid                   [ unknown] Tails fundraising team (schleuder list) <tails-fundraising-request@boum.org>
sub   rsa4096/0xEDC585308B7A9217 2014-08-09 [SEA]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

Foundations team key

Purpose

加密

Key details

pub   rsa4096/0xA827FE0D677E522C 2019-02-24 [SC]
      Key fingerprint = EFC9 4A11 CBF6 F00F 509C  EB0C A827 FE0D 677E 522C
uid                   [ unknown] tails-foundations@boum.org <tails-foundations@boum.org>
uid                   [ unknown] tails-foundations@boum.org <tails-foundations-request@boum.org>
uid                   [ unknown] tails-foundations@boum.org <tails-foundations-owner@boum.org>
sub   rsa4096/0x244F9D7C6DF90D6D 2019-02-24 [E]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

镜像组用密钥

Purpose

加密

Key details

pub   rsa4096/0xD2EDA621B572DD73 2016-04-29 [SCEA]
      Key fingerprint = 0B08 8E31 D4F8 E59A 3D39  9137 D2ED A621 B572 DD73
uid                   [ unknown] Tails mirror pool managers (schleuder list) <tails-mirrors@boum.org>
uid                   [ unknown] Tails mirror pool managers (schleuder list) <tails-mirrors-request@boum.org>
uid                   [ unknown] Tails mirror pool managers (schleuder list) <tails-mirrors-owner@boum.org>
sub   rsa4096/0x3DCFC1EB1C62C73C 2016-04-29 [SEA]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

  • 从这个网站下载 : tails-mirrors.key
  • 从你最爱的密钥公共服务器上下载。

Sysadmins team key

Purpose

加密

Key details

pub   rsa4096/0x70F4F03116525F43 2012-08-23 [SC] [expires: 2021-11-16]
      Key fingerprint = D113 CB6D 5131 D34B A5F0  FE9E 70F4 F031 1652 5F43
uid                   [ unknown] Tails system administrators <tails-sysadmins@boum.org>
uid                   [ unknown] Tails system administrators (schleuder list) <tails-sysadmins-owner@boum.org>
uid                   [ unknown] Tails system administrators (schleuder list) <tails-sysadmins-request@boum.org>
sub   rsa4096/0x58BA940CCA0A30B4 2012-08-23 [E] [expires: 2021-11-16]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

  • 从这个网站下载 : tails-sysadmins.key
  • 从你最爱的密钥公共服务器上下载。

Translation platform admins team key

Purpose

加密

Key details

pub   rsa4096/0x0190E73C38F13068 2020-10-02 [SC]
      Key fingerprint = 6AA6 4D2B 7D77 AD46 6667  E7BD 0190 E73C 38F1 3068
uid                      tails-weblate@boum.org <tails-weblate@boum.org>
uid                      tails-weblate@boum.org <tails-weblate-request@boum.org>
uid                      tails-weblate@boum.org <tails-weblate-owner@boum.org>
sub   rsa4096/0x2F7EC378C628BE30 2020-10-02 [E]

How to get the public key?

有这样几种途径获取 OpenPGP 公钥:

  • download it from this website: tails-weblate.key
  • 从你最爱的密钥公共服务器上下载。