Address false positives with google-cloud-sdk #388
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jul 30, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 526556456551069679634967870639978179952010417581 (0x5c3b9bae297628f4ef6ea8fb104b6840b35955ad)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Jul 30 13:56:55 2024 UTC
Not After : Jul 30 14:06:55 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
4e:38:5a:00:62:cf:a3:5c:5b:9f:52:85:fa:e8:28:
c4:b9:48:b4:31:5b:15:c7:87:dd:c9:af:8e:e0:55:
6f:47
Y:
51:2d:1c:e4:c7:21:7d:5b:70:65:ca:4d:c9:30:bd:
0a:53:4d:0a:4b:74:89:68:22:f4:12:a4:32:2d:6b:
ec:d9
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
BC:5C:C2:73:F0:40:B9:BC:5F:FA:E6:92:4B:18:88:E2:06:38:90:A6
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:evan.gibler@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABkQPuAJEAAAQDAEgwRgIhANvzCqgqpDcucgM7gUpF3rsY+ghGykyH1pme/hhz2mEzAiEA/nlhVhBXvUt7cEXUglUZqaJnmkOrwGXOotmpVShR/mY=
Signature Algorithm: ECDSA-SHA384
30:64:02:30:44:6b:40:f8:9a:88:dd:1c:fc:1e:9e:32:45:4b:
72:99:df:6a:74:86:95:fb:53:65:de:98:90:d6:b2:b7:6e:e4:
43:d4:99:41:62:9b:dd:f7:15:e1:1f:de:10:43:67:60:02:30:
1b:11:5d:ee:43:2b:e2:5f:12:85:ae:07:69:93:ca:4a:b9:a5:
6b:0b:94:6b:f9:a3:60:5c:52:03:0f:25:59:9f:1d:9f:9d:b0:
9d:5a:ee:99:64:e4:86:c8:95:f5:b3:c3
Rekor Entry
{
"body": "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",
"integratedTime": 1722347815,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 116738677,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n112576511\nx03+GP7iY2L6VEhZ+QiICaYixO0luqGEMgWMys/gNUQ=\n\n— rekor.sigstore.dev wNI9ajBFAiEA1C64MEKQ1/Sx2UvwYxXaa0AIm6wiUSsZgOQkxOeChvECIHjsqKRRubAQtTD/w/EKOaaEiATzf6OJgQLDSkvA7QAp\n",
"hashes": [
"75794028f517003802654f6aaed923fa255fb4103dcb83f3b40bf0fa3e5cd626",
"53d3f1a7e88714b7d684d2826f6464e0554fc20a6e12c9d6ea0002429a0ddbf6",
"95390504f1ae045b9c69bed12083875e7bcd2dd88ae13e6f9445caac1f387ee0",
"fcbcc7eddc9afb7cbdaf2d3b471574817a25b38574046a98d9ab2393fbbe9efb",
"d02e9fab231238a4bd0a5b019a369ecd3ad28e4f97298f291eb9ad66be04d77e",
"a449ad190f52923a0c2163d270c8e3d0363f9e72d5c7e8c4212d4ddf6303d5fb",
"07398fdaa5920ac75467f35cbca8f82518722f122728536f77fb4881e11e260e",
"bd5dba21ca3617f64aa9d3c67bd24ea35666ac57c97ee4f058fd9f78551f093f",
"c5f0defb4a84c2cb0342ddcb2faecc930ec77d5177d579a563c00ce17ef024b7",
"68e5cbc220cfa0db717513d8a176a69194d680b1d5b8ab031c073654483c8d21",
"0f7d20a0fe5f4f285db5d014984104598a8906ea44f454d50642dd7cd54e9d4a",
"c7fcf9436fcad3fa0ed8aeb74de860b87fbc85856a955126fc0ab0e3b66323b3",
"ffae7e8d0b7a019343d92b0824be844c72e0ae5d324c5fbbb6789fdc459abef4",
"232a02acb917985afd34ba8807eec47023ba54b1bfd9ff79553004ae3d9ed637",
"3cd56d0e40b8ac333e31fdfd9aefd9b72c66140655f19280330c6c27483fd649",
"2c679edb8f5f1c16311ef2613c48af905ef94c97ee9a3cb563f44c57c61f590d",
"d817d973b473b6465f7e92b240aeb256d1b69b951e0e26d506cc3fcf2a062646",
"9dd9a31717bcf68269e33f9f5dc2d03350660beed2a7c9bc54c90d21a7cd8589",
"6ba90b9f03789cf95da96ab83a83ba333db9650c754da2cc17421b31231576e4",
"f7c7a7ccc682fb1e6808cbc8650039cfcbeed9aa4330216f13ff77e4d7ee3f0f"
],
"logIndex": 112575246,
"rootHash": "c74dfe18fee26362fa544859f9088809a622c4ed25baa18432058ccacfe03544",
"treeSize": 112576511
},
"signedEntryTimestamp": "MEUCIAm/1u+dAhSVLhveowB5G+TxNU0aYHCW/Ijdq1Z307FxAiEA4g3rkHWN6krbLg/7Q6ksW6angzFmoctcBOOGzAxQDss="
}
}
Loading