Hacker News new | ask | show | jobs
by xur17 717 days ago
It is more flexible than a hash, but it's also more complicated.
1 comments

I don't really see it being that much more complicated. Signing the image is just one extra step when you publish, but it also means that you never need to update client machines unless the key is compromised.