What's new

verify ROM validity

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

eleVator

Regular Contributor
Hi, which ways do we have to verify the Merlin ROM's authenticity? I only see the sha256 file inside the file i want to actually verify. Please advice how to proceed
 
I should have mentioned the developer site, i was rather worried about the validity that the ROM an that it is actually from the Developer and was looking for gpg signatures.
 
I don`t use GPG signatures. However I publish the SHA256 on a completely different server, so anyone wanting to hack a firmware and forge the SHA256 would have to hack multiple different servers.
 
Yes i have been using your website Eric, and trusting the sha256sum so far, i thought i create an account here and maybe stop wondering what the reason would be not to use GPG so that we can have additional trust layer that it is actually you.
 
what the reason would be not to use GPG so that we can have additional trust layer that it is actually you.

Too much extra work for something that 0.005% of users would use.
 

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top