Address critical false positives for systemd, redpanda, various Python packages, and yarn #757
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jan 14, 2025 in 1s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 697128010409118168486483104681647613212375254781 (0x7a1c4d1716f9bbad3ea6066e7c8bb6f1007e06fd)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Jan 14 18:54:16 2025 UTC
Not After : Jan 14 19:04:16 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
1e:4b:45:ee:2e:86:a3:65:64:cd:88:4e:d3:ac:9d:
db:fc:e9:1f:6e:85:d5:92:26:2a:be:86:0c:a8:d2:
19:e1
Y:
dc:74:8d:35:a7:23:12:6e:67:cd:e0:11:e9:5e:fb:
35:a2:00:e1:5f:2d:ad:1a:b1:0f:fd:5a:49:ec:3c:
7e:89
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
0B:39:8E:53:1D:EB:CC:3C:7C:91:A6:F8:1A:3E:7D:20:39:19:F7:6E
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:evan.gibler@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABlGYqnAwAAAQDAEcwRQIgZR0LZx3YRkaoH5K91UCFhiqhBaM5WTtMDZ+e69LC03ACIQCDFej6XxUElW5Fe4RS2hR+XMlie9HQCBI2BBbhzth9lw==
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:84:d0:21:8c:a6:d2:d6:f0:93:19:fc:6c:b3:
e7:7d:39:6c:a8:cd:ea:5d:f0:c7:dd:7a:c4:00:5a:23:41:8a:
35:e1:8d:55:bf:01:c4:75:ee:fd:92:4d:d7:9a:f7:9b:06:02:
31:00:bc:dd:13:77:06:c2:a0:9c:ee:8b:f4:bf:bd:9b:89:99:
ae:1b:5e:e5:6a:12:4e:88:14:ee:d4:e7:6e:ad:4b:33:2e:69:
7b:76:81:4f:4b:43:06:27:d2:4a:1d:09:4b:b4
Rekor Entry
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiIzYmJkMGZkYWYzNjQzNWMwN2Q1NjRhM2U4ZDA3NjY1MWFhODI5MWEzYTVhOTA1MDk4YTU1ZTMxMjI0YWQzNThiIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FVUNJUURyMmNWWWV4enQweCs3MklCc1IwazIwaXZkbW9HZStxYVlrM1grdTFwcVFnSWdWbEpaei83SHE3ejNQVHRMTUNOc1lnRzlrMEN3aGMyaDR2UFd6eDFlZjg4PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXhSRU5EUVd4dFowRjNTVUpCWjBsVlpXaDRUa1o0WWpWMU5qQXJjR2RhZFdaSmRUSTRVVUlyUW5Zd2QwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFZkMDFVUlRCTlZHY3hUa1JGTWxkb1kwNU5hbFYzVFZSRk1FMVVhM2RPUkVVeVYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVZJYTNSR04yazJSMjh5Vm10NldXaFBNRFo1WkRJdmVuQklNalpHTVZwSmJVdHlOa2NLUkV0cVUwZGxTR05rU1RBeGNIbE5VMkp0Wms0MFFraHdXSFp6TVc5blJHaFllVEowUjNKRlVDOVdjRW8zUkhncmFXRlBRMEZZWjNkblowWXdUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZEZW0xUENsVjRNM0o2UkhnNGEyRmlORWRxTlRsSlJHdGFPVEkwZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDB0QldVUldVakJTUVZGSUwwSkNOSGRJU1VWaFdsaGFhR0pwTlc1aFYwcHpXbGhLUVZreWFHaGhWelZ1WkZkR2VWcEROV3RhV0ZsM1MxRlpTd3BMZDFsQ1FrRkhSSFo2UVVKQlVWRmlZVWhTTUdOSVRUWk1lVGxvV1RKT2RtUlhOVEJqZVRWdVlqSTVibUpIVlhWWk1qbDBUVU56UjBOcGMwZEJVVkZDQ21jM09IZEJVV2RGU0ZGM1ltRklVakJqU0UwMlRIazVhRmt5VG5aa1Z6VXdZM2sxYm1JeU9XNWlSMVYxV1RJNWRFMUpSMHRDWjI5eVFtZEZSVUZrV2pVS1FXZFJRMEpJZDBWbFowSTBRVWhaUVROVU1IZGhjMkpJUlZSS2FrZFNOR050VjJNelFYRktTMWh5YW1WUVN6TXZhRFJ3ZVdkRE9IQTNielJCUVVGSFZRcGFhWEZqUkVGQlFVSkJUVUZTZWtKR1FXbENiRWhSZEc1SVpHaEhVbkZuWm10eU0xWlJTVmRIUzNGRlJtOTZiRnBQTUhkT2JqVTNjakJ6VEZSalFVbG9Da0ZKVFZZMlVIQm1SbEZUVm1KclZqZG9Sa3hoUmtnMVkzbFhTamN3WkVGSlJXcFpSVVoxU0U4eVNESllUVUZ2UjBORGNVZFRUVFE1UWtGTlJFRXlhMEVLVFVkWlEwMVJRMFV3UTBkTmNIUk1WemhLVFZvdlIzbDZOVE13TldKTGFrNDJiRE4zZURreE5uaEJRbUZKTUVkTFRtVkhUbFppT0VKNFNGaDFMMXBLVGdveE5YSXpiWGRaUTAxUlF6Z3pVazR6UW5OTFoyNVBOa3c1VENzNWJUUnRXbkpvZEdVMVYyOVRWRzluVlRkMFZHNWljVEZNVFhrMWNHVXpZVUpVTUhSRUNrSnBabE5UYURCS1V6ZFJQUW90TFMwdExVVk9SQ0JEUlZKVVNVWkpRMEZVUlMwdExTMHRDZz09In19fX0=",
"integratedTime": 1736880856,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 162349658,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n40450562\ngLTZSiQfViT1DbfLKpa+V7DcsldwkcP2qmhgUy7+zlw=\n\n— rekor.sigstore.dev wNI9ajBEAiBMXPBjPi3/OBvd3KZkzlVHN2gzl8jJLJNpFM24odhtGAIgI27MTpMjBqi4R88r6mQsTArfFPILapY1u8OoCejjg9s=\n",
"hashes": [
"40faa7fa28ed985ec99995c8ef32760a16d39f3073cd3886df81a6d725435608",
"f832fe9e7593a67a3cc8d03e3f38de0a4873cffd76abd0c55f345e69cc4f6155",
"e4e1259ba4fc249098d53426ae5338c9296a5690f1438051d78c4e8a2ccdaf21",
"208cd1bf9547f2bad4fb82ecfdca5f5a192ed938ec0e745dd77b2df997951fe7",
"eb72efb289df85ee4ae726317acc66070922467335906094aa442f78efc12601",
"3bbe3fbba07c2b3a3a38b1cde8954622d42bd833efe6ea5a4612c3e7a3dad647",
"50352fdc216edf387046d6ac59407ceacd387e0702f43ef44fd1e287f3e4fcf9",
"50e23f119b2bfe453dc6c307de880bf5e08a421e08fb9390aab942b94a095c61",
"2fe3868e33383bd0758c1f2e196a95888f5cee8b2f85522c9b6aa6fd4ab27918",
"84de058335f5b147bdfcb03298732a3423c3bd039475471ce4d7d6bc5b0ce1cc",
"ad571a72b9839ba7c97872f0e5c2c599b0b227d9d68906a83bb5143f259d8e5d",
"eee1c6cb98d59e3c2b77732a811ca96f3be3119d9dfed2d0aeffbe969d4114aa",
"6ccacc936489b6873aa5fe10a5994780126cfb65c9af2e9ea24ebc14b182c8f3",
"1ca6b9325afd52d2dea0be17fae70ad0d90f13dd94cae411b75ad41e32668120",
"58674d87d080e843578631179d263a2cf1eccdc5083bdc7ae59042a88a859f15",
"1954b24cd54e10aa6925352acfe9cce48334149df87ca04422fe5503227b0efe",
"b65686fdc915e60ca97c1c4fe0e1a5861a0b43f55c11eface0876834cfb90899",
"2f14d54853eeae243645423c0dbbb6873e30cc01b51b6ef5fc98afaab7757adc",
"bde9b268c8f435ad4b3236c1ffd0e692af13fa301bde8fb20844a001ac940015"
],
"logIndex": 40445396,
"rootHash": "80b4d94a241f5624f50db7cb2a96be57b0dcb2577091c3f6aa6860532efece5c",
"treeSize": 40450562
},
"signedEntryTimestamp": "MEYCIQCRhxHEIeacdjlTPEGp069eYu9/7ti5kLaQc57nCLBYjgIhAL8vLWewkwQ+5RgxnFxoJdhZ53cMl8yHK6CS4vulrUAA"
}
}
Loading