allow workflow to publish packages #282
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jan 27, 2025 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 376308138188508923703002057092606206080096219893 (0x41ea3d9285c9ecf2a43a64d950b1fc1fa46132f5)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Jan 27 20:46:32 2025 UTC
Not After : Jan 27 20:56:32 2025 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
28:5c:e3:ce:57:bd:fd:ae:b8:fd:27:e3:f1:4f:45:
c4:3b:ed:8e:a9:7c:39:71:c3:f2:e6:2c:28:73:fe:
71:5c
Y:
f6:8a:95:44:45:a3:d3:88:eb:52:0c:3f:f2:6f:4d:
4e:ed:9c:9e:b8:0d:73:11:16:2a:1c:97:92:5b:03:
9a:04
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
E8:6F:93:E5:47:06:8F:DC:C9:84:0A:A2:C5:B5:FB:69:D4:82:C6:C2
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:joshwolf@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABlKmEERUAAAQDAEYwRAIgMlQX+afZNF2o9F0WRE14IhIlVUx1hfoF8yLm99KRnagCIGopf6GxLLZuqjNA3sNCs5Iler4iOJXDBV+OxC52MoWf
Signature Algorithm: ECDSA-SHA384
30:65:02:30:7a:c8:28:8c:42:af:2d:cc:72:24:65:2e:da:76:
cf:2b:a7:8a:f3:80:73:25:1c:42:3f:07:87:f7:08:33:6b:e6:
9a:5f:8e:68:cc:ee:3b:51:9f:54:e7:6a:d4:76:cd:44:02:31:
00:bc:bb:d3:7a:a8:1e:21:7d:75:13:86:1d:0f:db:ab:99:58:
6b:29:85:76:63:46:ed:38:52:42:08:92:d6:0d:80:e8:46:e6:
d0:45:c2:f8:81:25:c9:b9:3c:2a:05:39:fd
Rekor Entry
{
"body": "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",
"integratedTime": 1738010792,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 165980640,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n44077204\nKAL8Vzlcb1gwbYDn1MNwsjVw0LNGBEpprjhUzfHigFs=\n\n— rekor.sigstore.dev wNI9ajBEAiBe3CAxdDIZody6axVPBokVQAuRSHkJLctGJ7b+LB2hEwIgVPqWygQVJAS8YfHvLeB32M/5SiGeVnbJbHY7i4DcAvA=\n",
"hashes": [
"0a817537feaeb65f94da1ebe3c844d3dbace83de2bbe1a9bb8986e8405cf2a6c",
"2050c53a31961f7d96e5c5fddf562eed98b8bd3bce2de2ca57ed928bcd0ec0f0",
"a6f4f9dc1063fbfc143ef67d11d5cb81a6e6f47f1c7d98e01e0267f149f321c1",
"e092ae2912b4d4ab395206338e5ee408598fcac86f03c2f3f7d80d38e49d8ad6",
"7bfcecd61b5909ce3a5f2972b4f88063ec231fa481d99c3d3f71891c7cb9fa87",
"5d278c0359ae8c59cb148b31b51a79e98e60dee34788f7cbf7052e96b6c1bf09",
"af19d78dd165da0475d37b5e8b3aca19a500b7c4b9ae78ec51a7df35c94ac20c",
"8c1c49473cfe5eac414b3cc9afcb3d81e1051952b89b68f003fd7ab1de55db03",
"fff366f6e55a75e6238d082cf2cac1c5acd6f5aefda4ad9b7384149795ab06c4",
"fb8fd77ec19670756b6997a824bf5fd1bd687d9543d7f27c63245c4de4a07a82",
"90dd9952fd518fc9845d9f97d12c168d4e465cd8c5a15cd4b45a63e50917134c",
"3ff91a917b7811f38450369a0bc1349cd1c1d6b0f1ada42a98ab9fd7d07b81f8",
"ea7aea9041aff6768677e61b20a29b7962d42b665db9e67b0eb6f50ab51fd148",
"852796430abe26470829ad26e76c4b184d2555c9d74c069469c8d67b10c59860",
"5980b2c649b79cbb8de8cb9b06218663d6794ebcbf33882588724aed5328ed5e",
"8d4f7eb608d320a51819e53b4fb463ab22fe17e80557db427705f6199d54b50b",
"bde9b268c8f435ad4b3236c1ffd0e692af13fa301bde8fb20844a001ac940015"
],
"logIndex": 44076378,
"rootHash": "2802fc57395c6f58306d80e7d4c370b23570d0b346044a69ae3854cdf1e2805b",
"treeSize": 44077204
},
"signedEntryTimestamp": "MEQCIAeTxHJ9A2OLaQbPRaJ1+Qg4rRTQ46ulcboqMINJYEy4AiAGfYDtFcQcFIn1z1hcqPYnDNy2bniO+h3A2Ldzrg0Dbg=="
}
}
Loading