brief: highlight evidence #566
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Nov 3, 2024 in 1s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 551720823564601099675962103306681442748497536351 (0x60a4047253f9374c0ee163f420f65c4be0de255f)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Nov 3 10:18:59 2024 UTC
Not After : Nov 3 10:28:59 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
5c:c1:e9:1b:75:b0:5b:6a:c8:99:f6:ee:8b:b7:56:
cb:94:e2:7f:8a:a9:4b:a0:44:18:46:ec:9a:2a:8f:
00:f9
Y:
a9:3a:7f:9b:7b:0b:0a:71:2f:cb:62:25:23:3b:3e:
06:34:87:c3:8f:af:f9:3a:5b:87:9a:3a:dc:77:a9:
b8:9d
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
36:DF:7F:93:2C:EC:9F:5E:7E:C0:A1:3D:33:FD:40:6E:C9:8B:DF:6C
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:t@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABkvGI+zMAAAQDAEcwRQIgQLRZTnsnjejIb3Ri+q/sgDFhYyFkGu1kUhf853gIqvoCIQCaYaREypxbZxPpMg0mBMcFTSWXVyPVBtOaWBdFV6DCZw==
Signature Algorithm: ECDSA-SHA384
30:65:02:30:14:88:bc:10:dc:3e:1a:d7:8a:c1:76:b7:8b:be:
7c:88:91:29:8c:c3:b9:08:0a:9a:0f:52:b0:a9:58:02:58:ee:
d9:5b:fa:d3:85:81:24:f8:06:53:43:98:0c:b6:cf:fe:02:31:
00:c7:30:a6:de:99:33:55:62:79:73:d8:5d:c5:a6:44:03:2e:
4d:4b:41:6a:1d:fb:1f:c1:c1:bf:26:05:dc:00:50:5c:12:33:
9e:8e:d1:b7:1e:24:d2:4c:52:57:e8:d4:92
Rekor Entry
{
"body": "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",
"integratedTime": 1730629139,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 146236626,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n24345844\n5mSntu4DBIBmWcWBOztfpg4MZU8sweQUSCdJqwpFXkU=\n\n— rekor.sigstore.dev wNI9ajBGAiEAl5ioJfpw05jcNZw1Ijd0K3g+IBnCRk7xQvDra0dYq58CIQDVQGTy3Fv/p8+zRxX8NnrJLiOabpxVa1uOKsvl/UrhPg==\n",
"hashes": [
"80ce601cc36696b79f8caaf353ed6f7ccebef63d2286d51b1eda6e557be3305c",
"6995b3e542614c85f8c57f07b2f03b82c70b1a2d5cd27fbaa3ed20ad74c13565",
"1dfc970e61b3a9c5393020c0f4e178b70c42b7b02d2634138f5cdca96d149c6e",
"2691ba4822363a76e4e90d09785edfd73e6033d7d5e24029cfc6add451a765bb",
"362542fd71d99125560307bd5041fb4f8dd2dc8e5e662d2e464a27051d3f4654",
"4725aec916c2d89561bfc92eca95762c43c23357de3ab81934b991ffd6a1fccf",
"97158d87233c95f775e5413ea1e06e6cb13660d7715d9fc7928ee590539adfba",
"af93edb5626c9386f777685b32ee2a5e91c831b767f6997160573dd752ea15a9",
"9850b5fca06993209ea8d34b7c2338edd66e4b5dceebef628686d71b2d78228b",
"36664b86576c4598120cb8bb38894efca2ab960f0dabde78b91bf2fb0b600a31",
"d739d5554cf5e740b44e98d850b4bc8287193be813cf5d1d1bcbbc3d6727da20",
"c9938f83994e6666c75aa0aeb890bfbd20c2bb7652e35c507b79c74a3f5773fb",
"3171a70a35744bfe3c6393afe3d55985f67d467db14de6579bc2597cb0f37e3f",
"4faf95f4b3268102235fb097bba6b2d29d33f131e61676f8b4bf8b15213fbba9",
"749eb58cb0c90e6a2a2f514b0b57061371fffb7b758248669ae0afda4a8b77aa",
"ce964d7bd238fc837cd1d0bf5cdec266c3cc2b62bb70e75184ceb0f4b345ae84",
"57261df81ee92de54d46b1bd6c032a4685aebdfe2372e89adeb298bb0c29dc3d",
"20646056b07e369398fa6947210bb7bb464f12e509f0061a6717d971b0745f22",
"65947fae1c4bab6d9d63806fd5b7bee713f92cf4ae970b666c2e9c5fc051bf2a",
"0dd0c71064ca3fb16358cefb70d7dfebf2dc4c8853b1707e8b790a0b0fce2392",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 24332364,
"rootHash": "e664a7b6ee0304806659c5813b3b5fa60e0c654f2cc1e414482749ab0a455e45",
"treeSize": 24345844
},
"signedEntryTimestamp": "MEQCIDpUdMoMeHJdm1Ig6zofakY37Yvx7lUhbGxpqNUJZ5ZnAiAOtZUWeqma43iiZQuPfVrO/hVDrEZFzXGG29YnR3aK/w=="
}
}
Loading