GitLab Installation and Updates
GitLab extends package signing key expiration to 2022

GitLab extends package signing key expiration to 2022

6/25/2020 · Gerard Hickey

What this post added

Extended the expiration of the GPG key used to sign Omnibus packages from 2020-07-01 to 2021-07-01. This is a security practice to limit exposure if the key is compromised and to comply with GitLab security practices, while being less obtrusive than generating a new key annually. Users who validate package signatures need to update their copy of the signing key.

Read the original post ↗