Checksum openSUSE Tumbleweed

Hi everyone
I have a question about check checksum of openSUSE Tumbleweed. I downloaded ISO via Metalink using aria2 on Debian 12.
checksum2
Metalink along with the checksum SHA256 I downloaded from https://get.opensuse.org/tumbleweed/ . File *.iso.sha256.asc i downloaded from https://download.opensuse.org/tumbleweed/iso/. In my folder are
checksum3.
Checksum SHA256 is correct.
checksum4
After that I imported two the Project’s signing keys, because first showed me error.
This is first imported Project’s signing key with error:
checksum5
checksum6.1
checksum7
This is second imported Project’s signing key:
checksum8
checksum9
PGP signature:
checksum11
And finally I checked the signature of this ISO:
checksum10.

Did I make any mistakes while checking the checksum?

That all looks okay.

Is your concern about “This key is not certified with a trusted signature!”? You can remove that warning by signing that project signing key yourself. You can use “kgpg” or “kleopatra” to do that. Checking here, I see that “kleopatra” is already installed, but “kgpg” was not installed (until I just installed it).

I used kgpg and the message “This key is not certified with a trusted signature!” disappeared.
Thank you for help.

1 Like