Releases: input-output-hk/mithril
Mithril v2313.0-prerelease
What's Changed
- Update Era Switch documentation by @jpraynaud in #790
- Fix Docker Client crash by @jpraynaud in #792
- Fix clippy warnings from Rust
1.68.0
by @jpraynaud in #795 - Update dependencies by @jpraynaud in #796
- Update dev blog post Era Switch by @jpraynaud in #797
- add stake_pool provider by @ghubertpalo in #789
- Upgrade VM
testing-preview
&pre-release-preview
networks by @jpraynaud in #802 - Update
Mithril Client multi-platform test
workflow by @jpraynaud in #793 - Avoid compute stake distribution multiple times per epoch by @jpraynaud in #805
- Add aggregator 'genesis' command doc by @jpraynaud in #806
- Update KES by @iquerejeta in #783
- Greg/799/pruning by @ghubertpalo in #808
- Greg/799/refactor sqlite connection by @ghubertpalo in #809
- Fix devnet Genesis Alonzo URL by @jpraynaud in #819
- Handle API version with Era Switch by @jpraynaud in #812
- Clean Genesis Verification Key by @jpraynaud in #821
- #799 stake pool service by @ghubertpalo in #800
- Enhance Key Registration errors by @jpraynaud in #822
- Update dependencies by @jpraynaud in #830
- Update Rust dependencies by @jpraynaud in #832
- Cleanup multi-signer by @jpraynaud in #825
- Fix mislabeled critical error by @jpraynaud in #833
Full Changelog: 2310.0...2313.0-prerelease
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.38 |
mithril-client | 0.2.14 |
mithril-common | 0.2.33 |
mithril-signer | 0.2.28 |
mithril-stm | 0.2.9 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2310.0
What's Changed
- Fix CI flakiness with
ImmutableFileObserver(Missing)
error by @jpraynaud in #733 - display better errors by @ghubertpalo in #746
- Update current documentation by @jpraynaud in #735
- Update dependencies by @jpraynaud in #736
- Enhance errors catching in end to end test by @jpraynaud in #747
- Fix 'UnregisteredInitializer' error on signer by @jpraynaud in #749
- Add always restart Cardano nodes in infra by @jpraynaud in #748
- Load era reader adapters from config by @jpraynaud in #751
- #738 create a producer/consumer event channel to monitor signers version by @ghubertpalo in #750
- helper for unsafe code by @curiecrypt in #722
- doc and naming corrected for dense mapping and weighting function by @curiecrypt in #754
- #742 send event message on signer registration by @ghubertpalo in #753
- #757 replace unixepoch with strftime by @ghubertpalo in #758
- Add era command in aggregator cli by @jpraynaud in #756
- #743 monitor stake distribution Vs Signer version by @ghubertpalo in #759
- Add dynamic matrix in CI for end to end tests by @jpraynaud in #761
- fix sqlite sprintf bug by @ghubertpalo in #763
- add warning when event can not send epoch by @ghubertpalo in #764
- Upgrade SQLite to
3.40
in aggregator infra by @jpraynaud in #766 - make signer warn when coming era is unsupported by @ghubertpalo in #768
- Fix client Docker image crash by @jpraynaud in #770
- Update dependencies by @jpraynaud in #771
- Test batch opening mtree by @curiecrypt in #773
- test for batch verify by @curiecrypt in #774
- Prepare run
mainnet
Mithril test network by @jpraynaud in #778 - Fix test Docker image workflow by @jpraynaud in #781
- Deploy era reader on chain by @jpraynaud in #775
- Fix Era Switch documentation by @jpraynaud in #785
- Fix test Docker image workflow by @jpraynaud in #784
- #665 handling errors better by @ghubertpalo in #776
- Fix Datum generation for era markers by @jpraynaud in #788
Full Changelog: 2306.0...2310.0
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.27 |
mithril-client | 0.2.9 |
mithril-common | 0.2.22 |
mithril-signer | 0.2.19 |
mithril-stm | 0.2.4 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2310.0-prerelease
What's Changed
- Fix CI flakiness with
ImmutableFileObserver(Missing)
error by @jpraynaud in #733 - display better errors by @ghubertpalo in #746
- Update current documentation by @jpraynaud in #735
- Update dependencies by @jpraynaud in #736
- Enhance errors catching in end to end test by @jpraynaud in #747
- Fix 'UnregisteredInitializer' error on signer by @jpraynaud in #749
- Add always restart Cardano nodes in infra by @jpraynaud in #748
- Load era reader adapters from config by @jpraynaud in #751
- #738 create a producer/consumer event channel to monitor signers version by @ghubertpalo in #750
- helper for unsafe code by @curiecrypt in #722
- doc and naming corrected for dense mapping and weighting function by @curiecrypt in #754
- #742 send event message on signer registration by @ghubertpalo in #753
- #757 replace unixepoch with strftime by @ghubertpalo in #758
- Add era command in aggregator cli by @jpraynaud in #756
- #743 monitor stake distribution Vs Signer version by @ghubertpalo in #759
- Add dynamic matrix in CI for end to end tests by @jpraynaud in #761
- fix sqlite sprintf bug by @ghubertpalo in #763
- add warning when event can not send epoch by @ghubertpalo in #764
- Upgrade SQLite to
3.40
in aggregator infra by @jpraynaud in #766 - make signer warn when coming era is unsupported by @ghubertpalo in #768
- Fix client Docker image crash by @jpraynaud in #770
- Update dependencies by @jpraynaud in #771
- Test batch opening mtree by @curiecrypt in #773
- test for batch verify by @curiecrypt in #774
- Prepare run
mainnet
Mithril test network by @jpraynaud in #778 - Fix test Docker image workflow by @jpraynaud in #781
- Deploy era reader on chain by @jpraynaud in #775
- Fix Era Switch documentation by @jpraynaud in #785
- Fix test Docker image workflow by @jpraynaud in #784
- #665 handling errors better by @ghubertpalo in #776
- Fix Datum generation for era markers by @jpraynaud in #788
Full Changelog: 2306.0...2310.0-prerelease
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.27 |
mithril-client | 0.2.9 |
mithril-common | 0.2.22 |
mithril-signer | 0.2.19 |
mithril-stm | 0.2.4 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2306.0
What's Changed
- Fix API version sent in wrong header by @jpraynaud in #712
- Update dependencies by @jpraynaud in #715
- Create Era Checker by @jpraynaud in #711
- Reorganize mithril-stm multi_sig.rs by @curiecrypt in #719
- Add security policy by @jpraynaud in #728
- Update Cardano node to
1.35.5
by @jpraynaud in #726 - add era reader by @ghubertpalo in #720
- Add new signer in 'testing-preview' by @jpraynaud in #731
- Implement Era Reader on chain adapter by @jpraynaud in #721
Full Changelog: 2304.1...2306.0
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.12 |
mithril-client | 0.2.7 |
mithril-common | 0.2.12 |
mithril-signer | 0.2.9 |
mithril-stm | 0.2.2 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2306.0-prerelease
What's Changed
- Fix API version sent in wrong header by @jpraynaud in #712
- Update dependencies by @jpraynaud in #715
- Create Era Checker by @jpraynaud in #711
- Reorganize mithril-stm multi_sig.rs by @curiecrypt in #719
- Add security policy by @jpraynaud in #728
- Update Cardano node to
1.35.5
by @jpraynaud in #726 - add era reader by @ghubertpalo in #720
- Add new signer in 'testing-preview' by @jpraynaud in #731
- Implement Era Reader on chain adapter by @jpraynaud in #721
Full Changelog: 2304.1...2306.0-prerelease
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.12 |
mithril-client | 0.2.7 |
mithril-common | 0.2.12 |
mithril-signer | 0.2.9 |
mithril-stm | 0.2.2 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2304.1
What's Changed
- Mithril Network Update ADR by @ghubertpalo in #676
- Update PR template by @jpraynaud in #680
- Upgrade
devnet
to Cardano1.35.4
by @jpraynaud in #667 - Fix make build portable by @jpraynaud in #685
- Update build documentation by @jpraynaud in #682
- Update docs
current
version by @jpraynaud in #686 - Update dependencies by @jpraynaud in #683
- Fix
make
errors from root by @jpraynaud in #684 - Accelerate end to end test execution by @jpraynaud in #692
- 689 Signer Register Message by @ghubertpalo in #691
- Fix
make
errors from root v2 by @jpraynaud in #687 - [693] register signature message by @ghubertpalo in #694
- [695] add epoch settings message & adapter by @ghubertpalo in #700
- Add snapshot message and adapter by @jpraynaud in #702
- Add certificate message and adapter by @jpraynaud in #701
- [705] Api version enforcement update by @Alenar in #706
- Greg/696/certificate pending message by @ghubertpalo in #704
- Add snapshot list message and adapter by @jpraynaud in #703
- Add link to the Mithril explorer by @Proxiweb in #713
- Fix clippy warnings from Rust
1.67.0
by @jpraynaud in #714 - Fix signer unable to sign with
2304.0 prerelease
by @jpraynaud in #717
New Contributors
Full Changelog: 2302.0...2304.1
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.10 |
mithril-client | 0.2.6 |
mithril-common | 0.2.9 |
mithril-signer | 0.2.7 |
mithril-stm | 0.2.2 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2304.1-prerelease
What's Changed
- Mithril Network Update ADR by @ghubertpalo in #676
- Update PR template by @jpraynaud in #680
- Upgrade
devnet
to Cardano1.35.4
by @jpraynaud in #667 - Fix make build portable by @jpraynaud in #685
- Update build documentation by @jpraynaud in #682
- Update docs
current
version by @jpraynaud in #686 - Update dependencies by @jpraynaud in #683
- Fix
make
errors from root by @jpraynaud in #684 - Accelerate end to end test execution by @jpraynaud in #692
- 689 Signer Register Message by @ghubertpalo in #691
- Fix
make
errors from root v2 by @jpraynaud in #687 - [693] register signature message by @ghubertpalo in #694
- [695] add epoch settings message & adapter by @ghubertpalo in #700
- Add snapshot message and adapter by @jpraynaud in #702
- Add certificate message and adapter by @jpraynaud in #701
- [705] Api version enforcement update by @Alenar in #706
- Greg/696/certificate pending message by @ghubertpalo in #704
- Add snapshot list message and adapter by @jpraynaud in #703
- Add link to the Mithril explorer by @Proxiweb in #713
- Fix clippy warnings from Rust
1.67.0
by @jpraynaud in #714 - Fix signer unable to sign with
2304.0 prerelease
by @jpraynaud in #717
New Contributors
Full Changelog: 2302.0...2304.1-prerelease
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.10 |
mithril-client | 0.2.6 |
mithril-common | 0.2.9 |
mithril-signer | 0.2.7 |
mithril-stm | 0.2.2 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2304.0-prerelease
What's Changed
- Mithril Network Update ADR by @ghubertpalo in #676
- Update PR template by @jpraynaud in #680
- Upgrade
devnet
to Cardano1.35.4
by @jpraynaud in #667 - Fix make build portable by @jpraynaud in #685
- Update build documentation by @jpraynaud in #682
- Update docs
current
version by @jpraynaud in #686 - Update dependencies by @jpraynaud in #683
- Fix
make
errors from root by @jpraynaud in #684 - Accelerate end to end test execution by @jpraynaud in #692
- 689 Signer Register Message by @ghubertpalo in #691
- Fix
make
errors from root v2 by @jpraynaud in #687 - [693] register signature message by @ghubertpalo in #694
- [695] add epoch settings message & adapter by @ghubertpalo in #700
- Add snapshot message and adapter by @jpraynaud in #702
- Add certificate message and adapter by @jpraynaud in #701
- [705] Api version enforcement update by @Alenar in #706
- Greg/696/certificate pending message by @ghubertpalo in #704
- Add snapshot list message and adapter by @jpraynaud in #703
Full Changelog: 2302.0...2304.0-prerelease
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.8 |
mithril-client | 0.2.5 |
mithril-common | 0.2.8 |
mithril-signer | 0.2.6 |
mithril-stm | 0.2.1 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2302.0
What's Changed
- Extract signer registration from muti-signer in Aggregator by @jpraynaud in #655
- Fix clippy warnings from Rust
1.66.0
by @jpraynaud in #657 - Update dependencies by @jpraynaud in #659
- check API version by @ghubertpalo in #641
- Optimize snapshot digest computation by @Alenar in #652
- Simplify epoch offset computations by @Alenar in #661
- Remove test lab monitor & aggregator-server by @Alenar in #660
- Decommission signer registration with declarative PoolId by @jpraynaud in #653
- Fix badge workflow CI status in
README
by @jpraynaud in #664 - Deactivate uncertified signers in networks by @jpraynaud in #666
- Add MithrilFixture builder by @Alenar in #670
- Batch verify by @iquerejeta in #531
- Update kes by @iquerejeta in #674
- Update crates version 2302 by @jpraynaud in #679
Full Changelog: 2250.1...2302.0
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.1 |
mithril-client | 0.2.1 |
mithril-common | 0.2.1 |
mithril-signer | 0.2.1 |
mithril-stm | 0.2.1 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️
Mithril v2302.0-prerelease
What's Changed
- Extract signer registration from muti-signer in Aggregator by @jpraynaud in #655
- Fix clippy warnings from Rust
1.66.0
by @jpraynaud in #657 - Update dependencies by @jpraynaud in #659
- check API version by @ghubertpalo in #641
- Optimize snapshot digest computation by @Alenar in #652
- Simplify epoch offset computations by @Alenar in #661
- Remove test lab monitor & aggregator-server by @Alenar in #660
- Decommission signer registration with declarative PoolId by @jpraynaud in #653
- Fix badge workflow CI status in
README
by @jpraynaud in #664 - Deactivate uncertified signers in networks by @jpraynaud in #666
- Add MithrilFixture builder by @Alenar in #670
- Batch verify by @iquerejeta in #531
- Update kes by @iquerejeta in #674
- Update crates version 2302 by @jpraynaud in #679
Full Changelog: 2250.1...2302.0-prerelease
Crates Versions
Crate | Version |
---|---|
mithril-aggregator | 0.2.1 |
mithril-client | 0.2.1 |
mithril-common | 0.2.1 |
mithril-signer | 0.2.1 |
mithril-stm | 0.2.1 |
Verify the authenticity of a downloaded asset
Detailed procedure to verify an asset
- Step 1: Identify the downloaded asset on your computer YOUR_ASSET_FILE
- Step 2: Download the signed checksum file from this link CHECKSUM.asc and save it in the same folder as the asset
- Step 3: In your terminal, go to the asset folder by running:
cd ***YOUR_ASSET_FOLDER***
- Step 4: Then verify the checksum of the asset by running:
sha256sum -c ./CHECKSUM.asc 2>/dev/null | grep ***YOUR_ASSET_FILE***
You must see:
./***YOUR_ASSET_FILE***: OK
- Step 5: Download the public key file from this link gpg-public.key and save it in the same folder as the asset
- Step 6: Then import the GPG public key:
gpg --import ./gpg-public.key
You must see something like:
gpg: key : public key "Input Output / Mithril <[email protected]>" imported
gpg: Total number processed: 1
gpg: imported: 1
- Step 7: Then verify the GPG signature of the checksum file:
gpg --verify ./gpg-public.key ./CHECKSUM.asc
You must see something like:
gpg: Signature made Mon 05 Dec 2022 04:53:54 PM CET
gpg: using RSA key 35EDE9D47BBA62A2F388E655899ACD26B8BCA0D2
gpg: Good signature from "Input Output / Mithril <[email protected]>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 35ED E9D4 7BBA 62A2 F388 E655 899A CD26 B8BC A0D2
The signature is valid if and only if:
- there is a line with
gpg: Good signature from "Input Output / Mithril <[email protected]>"
- there is a line with
Primary key fingerprint: 2AC0 7B11 8B23 1443 F544 2D0C 6E2C 1160 3E79 0021
- Step 8:
If you successfully validated all the steps of this process, then you have successfully verified the authenticity of the asset ✔️
If not, contact us at [[email protected]] and let us know of the outcome of your run of this process⚠️