Short key IDs are not secure, and may be rejected by OpenPGP
implementations. See https://evil32.com/
Signed-off-by: Justus Winter <justus@sequoia-pgp.org>
/* Lookup abbreviated key ID. */
signature_index = 999999;
signature_found
- = ostree_gpg_verify_result_lookup (fixture->result, fingerprint + 32, &signature_index);
+ = ostree_gpg_verify_result_lookup (fixture->result, fingerprint + 24, &signature_index);
g_assert_true (signature_found);
g_assert_cmpint (signature_index, ==, expected_signature_index);