don't SCA-generate so:
or pc:
provides for libs not directly in lib dirs
#1372
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jul 15, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 536858507787508082595214665300473870451406087300 (0x5e09916dbcdcfc9c9a2bddcb7c5db6f5fa6d2484)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Jul 12 14:10:09 2024 UTC
Not After : Jul 12 14:20:09 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
11:82:b0:bc:ea:94:0d:31:ac:21:7e:80:44:6c:64:
0a:44:e3:16:f4:da:48:66:9b:9b:16:3c:96:cc:a1:
bc:e2
Y:
24:4a:be:f4:11:00:99:94:18:01:19:9e:ea:17:8a:
05:a8:32:af:03:f7:f9:73:7d:f3:cf:6e:2a:76:e0:
55:47
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
59:0B:EC:94:8A:B3:78:19:57:B0:26:8A:A8:6E:B2:99:6E:B0:7E:51
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:jason@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABkKdHp7sAAAQDAEgwRgIhAI/LcZC3hnOGuD56mNNDnKHG2IjEirtMbwX9q8Mc904nAiEAtAGVaZiRxu+dkUOOVie3mbM7hXoSSH2QuoH0CpF1Md4=
Signature Algorithm: ECDSA-SHA384
30:65:02:30:6b:2d:cb:08:70:e4:64:3c:38:6b:ce:9d:76:2b:
a7:11:7a:4e:96:f6:e1:6b:d1:18:14:a4:86:76:a6:ed:72:98:
43:96:59:a7:69:e7:7c:d6:fa:37:5f:5f:29:0d:55:a0:02:31:
00:dc:9e:17:e2:0d:4c:97:71:c5:8b:52:1d:e5:7d:8a:21:1a:
ea:46:30:a9:79:06:54:7b:0f:da:19:c3:ea:c4:93:d5:7e:cf:
9f:a0:88:0e:20:4a:a7:90:54:ea:d7:82:8d
Rekor Entry
{
"body": "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",
"integratedTime": 1720793409,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 111216565,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n107777566\nsVwDxVhXRhsHXC0Xc5trI+V+HbzOW1yhindj04cCCUw=\n\n— rekor.sigstore.dev wNI9ajBEAiAecQfdFKPnY1v2yArO5tmI9jQnxbneCMHXLxILnQKtggIgDq9yMvO/EdQUUhQhZ2sz7r0SLplCjsiFS/Wp78rBfYY=\n",
"hashes": [
"fdac5361ed16313b9a4ad5fba8864f1f663505b759cb20a7b080deff24c0baf8",
"efa4f773370ef94ca68bb0249120d4819b435da0d4599d3a3728b341db9b29ef",
"309011a9a652cfff046642238ffc76a7bf10a29068fd2348e4f060c06113fce1",
"6feb0d0e77f29320bde8df0269c8e84d4bc1d586ecfcdd379b1163b349fe9873",
"99b5d3deed0d39dcb5f3c38f1ffec9df7502d58863a2e9d0762d6c59ce50eed1",
"3fc21af0b87d4c57e6552ea0d14fa0659c778b54abf8cfa1153828b2c4ba36ae",
"66e98910de1b1d25a72b9899de9644bb5685c961ec8fe99df3fd02f5b3ce8b58",
"ac9eaa2cbedb40347242d7880fc5285024d805cdaef2971eab1b44363460b8c2",
"6215ea2d4b98dbcf53d7945f5980de3fdf4507581f60461e7a7f9751dc2320d3",
"832d38f9a6a11afc8204db4854de4ebd275670aa2487758bb6df7c4b065a15aa",
"4bc1cf4eeaddffa67227b7307bbca0d49b7e71b12d87080ed60ecb147522ca13",
"841808d1a68744ae1296279b4b49e87a0edd1068782d0aaab8d28de237f83ea9",
"0d6847ec4e5029f514396a04855dcea9e98cd0bde11e06660c3ee1dcd7e21e98",
"64f55dde53e23a15b79fbb2060a6f2db3498694796b80abb818224be7f4fc80f",
"c0b6282023f55b7ec162fa75bc2645486135aa3f4eb0f393d4c7f3f7ec70adb7",
"ecef7727168ea16bdbbfcfb6215cb9dff2c8a1cd8867bd34e7c173808e934a1c",
"dcb769f7b55102bb8b261a0ef1d5a59a36f8c2541e9c466dde0864bec17079fc",
"b1bcfb1f26815b3763b89a471c76ca899984dc320b7b5c572a1873ee2f2de214",
"cd11cc226b8458ddc8c83d8af7617263da0ff1e884358b9f25ab5e14d9a7124e",
"b9c97a27d63529c32dae2643b7523ff6c4e66546f0bc41800ab3106ac776b187",
"c3b0f49054f8b2c4729e0ba8d6d785b34d78919105f60cc9f9c746f395b8cd7b",
"fcdd91c0ceb0d0b697660b95f74251c01ab39c738335e12dadc6a031262428ed",
"6ba90b9f03789cf95da96ab83a83ba333db9650c754da2cc17421b31231576e4",
"f7c7a7ccc682fb1e6808cbc8650039cfcbeed9aa4330216f13ff77e4d7ee3f0f"
],
"logIndex": 107053134,
"rootHash": "b15c03c55857461b075c2d17739b6b23e57e1dbcce5b5ca18a7763d38702094c",
"treeSize": 107777566
},
"signedEntryTimestamp": "MEYCIQCPF54kg0u6aryqAACpv9UmG1yvVw2ZutfMUuXowTR+GwIhAJv0vQDZBk6CGgiPAQw5uVbyRfReV+K8TBJOM3SEhGW+"
}
}
Loading