gpg_verify imposes too strict restrictions on the filename passed to -k. Upstreams can name their keyrings any way they like, and packagers shouldn't have to change the filename. Autodetecting keyrings with certain suffixes is fine, but when a keyring is explicitly specified it shouldn't be rejected because it has a different filename.
gpg_verify imposes too strict restrictions on the filename passed to -k. Upstreams can name their keyrings any way they like, and packagers shouldn't have to change the filename. Autodetecting keyrings with certain suffixes is fine, but when a keyring is explicitly specified it shouldn't be rejected because it has a different filename.