Switch to GPG keys from GSM #112
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Feb 19, 2024 in 1s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 191010593681793241436887455075866726053967177149 (0x217536148ce6e56a00add41b0539d2b5f3f625bd)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Feb 19 22:14:21 2024 UTC
Not After : Feb 19 22:24:21 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
5d:1f:40:a6:e6:7f:21:2e:94:94:cc:9e:34:42:d0:
c1:0f:ce:b7:98:2e:a2:7f:4e:8c:bb:5b:9e:04:15:
2d:0a
Y:
4b:f3:a9:ec:31:5e:21:52:76:d5:dc:aa:c8:8c:0f:
1c:8f:36:65:7e:5a:c9:fd:ac:25:fd:69:ba:13:5e:
73:3c
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
FF:B3:45:A6:48:02:0F:28:4B:56:C6:88:AE:14:87:CF:C9:E2:BC:DC
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:mattmoor@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABjcNvNaQAAAQDAEYwRAIgWy11Hv+i9p//hG9O7U57qxnhYolZMBjmxrM3MNfbWwcCIGUjM4wqGbMX5yRozwMaPx9ZG9QOVCptDb3UlCfXhXoe
Signature Algorithm: ECDSA-SHA384
30:65:02:30:1b:68:8d:fb:71:6d:09:60:ec:15:ed:c7:71:df:
66:f1:49:17:98:f5:02:cb:a5:d5:6d:ce:78:40:73:80:ec:eb:
1f:29:4d:e0:ed:60:e9:21:e6:97:4f:b9:93:08:98:66:02:31:
00:d1:97:25:ca:00:c3:18:9f:3d:5e:2c:4f:37:38:66:09:3c:
79:36:5a:c4:be:ce:31:3a:c5:00:7e:c3:4f:1f:95:32:78:fd:
79:d5:68:4b:96:26:0e:01:8e:8d:fa:d6:ba
Rekor Entry
{
"body": "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",
"integratedTime": 1708380862,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 72510401,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n68352183\nRqYI84IUdCHVSJEkeo9p7J87C7nxFjCWtCRyY15V/4E=\nTimestamp: 1708383351135033193\n\n— rekor.sigstore.dev wNI9ajBFAiEAj34zlgtAxsB0C3WN9zNT9Fw09LdWw2Nem4ngiUSB7soCIBhmlgnhl2SSaZz8sZq7k+mn9oDCPL7kwPy3MS1OwCG3\n",
"hashes": [
"1cc43686001b7f3a44ff95601383d75a8f988d4fe9d7716e2931e4ad73cda15c",
"093a664816e665b0f03aa70ba2be5dd782d973750b8c7a0bd4d7397ae7ecae23",
"098805a70901897e48d68167c4e91e4152f28d0fae09fd825704012e12500b8d",
"765462625714878e1a98afca8af538d6fba64a4bf0a497f18684aeb529b9e893",
"d1863a8e33dcb5eab2e2c87a12dd8e5eabea90fc888a05b0c74033f7d757e70f",
"5cc0d32366e3d185cda448578ea809f634744c065a47af4aabf2281c41abbf8d",
"baec9d66154a9493117fb8a7c785e89fd56220b0587cdb1f8224e4f3474ef49d",
"46365ff4a420724e42a4aa5585ddbd78fad011f688cdd95b61e1bb70963ca726",
"a3e9f6f2c4695e0fd7b1637f6f8a8c8d5ad7ff5552bda850761c147a281fa348",
"40769af8d0c6099a21fcb412fb716a8a1c789e09068846adbcec8129b799790b",
"3d474d98d989207ca9bb44778eeb647e2d8f0a752b43edfb22262c7bac60eec0",
"fc3e103fbeba21b0f4ddbd0b8d090a1249fa3907a8b28452fcebbd0ec390aaf4",
"3f1ceb97c8a0b5cfbcedea429f25a5ac49bffdebe88014c78162f2083017c463",
"192f7bc373ca0e78e2d4f8bdb104acac81c350e0000037a42114329a07334964",
"8dc32466c8b96a6136be3fd72655c15d8eec7286d960e7c0c91440e125c800b9",
"3e3952a4cb8b9a83b65ee5d832a11921b71a49e0af9438d7c401397559e2a8ed",
"7ee75e415759a056bc0937f45520f41ed0df134ce66add0ec901253cbcfe39e5",
"40c94343ef515fa7384a2d8c2ff1198b8716a235b2244d943684c8d5710d8111",
"f7c7a7ccc682fb1e6808cbc8650039cfcbeed9aa4330216f13ff77e4d7ee3f0f"
],
"logIndex": 68346970,
"rootHash": "46a608f382147421d54891247a8f69ec9f3b0bb9f1163096b42472635e55ff81",
"treeSize": 68352183
},
"signedEntryTimestamp": "MEQCIHJkFgjZQVRQzrS63Ebc5oVs9h/IGCCdKEx3UqUvF/qMAiBo4vJuWwqj2l5C5b8msRqlX7mVm/SaaHyD7O5yeW+6hg=="
}
}
Loading