make lasers optional, off by default #528
Open
Chainguard Enforce / Enforce - Commit Signing
succeeded
Oct 3, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 470841999182796368297011365084286976164020484139 (0x527949136c51cbbd41bed88612f050f16561f82b)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Oct 3 20:19:12 2024 UTC
Not After : Oct 3 20:29:12 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
80:2b:bd:9a:e6:81:64:36:31:c7:d7:ff:f2:24:68:
73:13:dd:47:ec:f6:40:bd:4a:a6:58:7d:ca:9f:32:
2c:ff
Y:
51:ff:02:5b:01:91:dd:a4:3a:5c:8c:21:3a:f3:c4:
b9:e3:53:73:0f:2b:dc:b8:fb:15:ac:d6:c7:c8:63:
e8:8a
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
83:EC:84:74:CC:2A:B5:66:BC:D5:A0:31:85:3C:50:F3:7E:01:6F:86
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:kleung@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABklQJWvoAAAQDAEcwRQIhAPeQjsp5/zWLfjugiFKcXK+rLUh788n73MKAnrKbG2qJAiAxq9riN0u8Q5mWc7MipCS2edYdQ/icWwdPOGQJEvXFYw==
Signature Algorithm: ECDSA-SHA384
30:65:02:31:00:db:de:98:30:bc:b2:95:12:bf:fa:2f:e4:05:
22:d0:9a:14:da:0a:40:4f:6e:f2:63:c9:92:f4:f8:fe:55:c6:
a5:2c:b3:89:06:d9:b5:a4:8e:b3:92:7f:f2:57:7a:fc:ab:02:
30:17:dd:61:ab:d7:ea:a8:9e:f8:8a:1b:b9:2a:e7:11:b6:c8:
22:19:e2:70:4a:71:09:76:f8:a6:2f:25:56:ee:69:55:ed:19:
43:70:46:39:ab:2e:cb:67:a6:10:1a:73:08
Rekor Entry
{
"body": "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",
"integratedTime": 1727986752,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 136617434,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n14713190\nZ7CmD51tA3QfxMC8U1Szr9AFVxMEQyIbERFMdYyWons=\n\n— rekor.sigstore.dev wNI9ajBFAiEA3yLu/RXOpWOeC7L8Y8hCoVbaFVhli8G2j3KERkZU/bACIGwcUXlXSOr5JzPifTbONKKGCKhAjAUau0cLX54lMTwh\n",
"hashes": [
"9801a6e9f7ef6d6bad1cab22eecf179e117e8bf1a40afabb1e8ddc994411d295",
"6df7f90d57ad86186e038a3c76b881393ba8745b15892bb000c7a7c1d4d32727",
"ec693c12825ec5f41b8687e9095453f803ba634a1b5d8eeacffb8d2c60ab69c0",
"b01730bbd2de2c46d03c678ec39f1840fe566fd9f66d2df49e1f2c667fd65872",
"d55c23939f4415cd038772f20f5e2a53500117a313efe8ac02a66fa0bc525950",
"938e00f6ee5bcd9e317ec797641372711625a8fe872a62fb40b574c7c8064207",
"7e63af72295ad4dff15ef29d1188ecba5c39ddf91eede77e7ab6f0f40b2502a4",
"f5be16d9807c3f3cbbc74c84f0b3728a05f6d82395222d23ce86a86eed176a40",
"4330ce116c816ffde4e417a16c0360a499ea0afd7c8169913fa2a11285d4d358",
"572e2031e8a0af397687b135bf4fe131a3b315749d210374d64f6dc2d840b76e",
"50e20a44dacee1263cbd058f33d5eccd8077ed27ae3bc5b333c4ff2991be9f00",
"9bc8e601d7371c40caaafbc82a61a1aa88a502fa81c5986c92d5e65e1e7c5a20"
],
"logIndex": 14713172,
"rootHash": "67b0a60f9d6d03741fc4c0bc5354b3afd00557130443221b11114c758c96a27b",
"treeSize": 14713190
},
"signedEntryTimestamp": "MEQCIFXVGexAO7BVRfxocuiHLE0KZMRR0Lu4oIRr7k4f+ZZgAiBCP6xNAmp47urkWnTpNwUnEJGFhEMVU+8bZl8JjqH0gg=="
}
}
Loading