Validating GPG key signature authenticity
- by Dor
I'm trying to validate the integrity of my httpd-2.2.17.tar.gz image.
I followed the steps written in the following pages:
http://httpd.apache.org/download.cgi#verify
http://httpd.apache.org/dev/verification.html#Validating
But I got:
WARNING: This key is not certified
with a trusted signature!
gpg: There
is no indication that the signature
belongs to the owner.
What I need to do in order to verify the authenticity of the key?