Include locked melange config in control section #1622
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Nov 25, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 406813812134778663181745156788038464613725861617 (0x4742298900955e54c6f8895cd1b741f8ffdd76f1)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Nov 25 19:41:21 2024 UTC
Not After : Nov 25 19:51:21 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
cf:ad:b0:cc:c1:bd:9d:2c:b9:ab:71:60:da:11:b5:
75:52:bc:51:74:2d:5b:91:c8:a4:24:61:37:22:c5:
56:cf
Y:
ea:b7:ef:8b:be:64:90:88:49:c3:f4:43:69:8e:59:
50:f4:23:d2:98:ae:b2:af:13:a2:fa:a3:18:12:84:
0a:52
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
13:E1:66:2C:AB:EC:BF:D7:46:8D:72:3B:7F:0E:77:A1:33:2D:BA:41
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:jon.johnson@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABk2TXwhMAAAQDAEgwRgIhALl+BMEVGdQKsmfIpT/Znq1ZPimSiwYVlSzDLF+QarOfAiEAqByiZJN8spQkRB0AAshquCPJThQ3G2NTVEGwB6mZWKM=
Signature Algorithm: ECDSA-SHA384
30:65:02:30:2d:7c:73:59:d4:89:b6:b6:53:73:91:8e:ee:36:
35:58:4c:b7:05:5b:0a:53:fb:aa:ee:48:41:c5:f4:28:c7:05:
ae:c1:84:60:6c:6d:7b:90:c3:ff:fa:a1:0d:93:bb:c3:02:31:
00:84:17:a0:ad:7f:90:4f:45:de:58:2b:97:bc:2f:46:c7:90:
2b:d3:87:bb:27:84:4e:29:17:2f:d4:3f:b4:49:17:b4:f9:40:
4a:82:9e:d4:cf:26:d1:43:75:f9:ca:48:14
Rekor Entry
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiI1NjRiOGRkNWU5ODllYTFkMmJlMGFhMTU3MzA3NTdjZWY0NzI0NWQ2NmY0NzkwOWY4YjlkYTIzMWU0NGRhZWZkIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FVUNJUUROY3RaZE9Zc1ZrTU51UlFrWmZld3hoMVZ6Q0xReUpDYmVWWEhjRzkwVmR3SWdlWmRTWE5NNVZLOFV3RFZhbXlYQVlhaEJvRkFDSzBiSFlOcUsyc2k1T0ljPSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXhSRU5EUVd4eFowRjNTVUpCWjBsVlVqQkpjR2xSUTFaWWJGUkhLMGxzWXpCaVpFSXJVQzlrWkhaRmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFJlRTFVU1RGTlZHc3dUVlJKZUZkb1kwNU5hbEY0VFZSSk1VMVVhekZOVkVsNFYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVY2TmpKM2VrMUhPVzVUZVRWeE0wWm5NbWhITVdSV1N6aFZXRkYwVnpWSVNYQkRVbWdLVG5sTVJsWnpMM0YwS3l0TWRtMVRVV2xGYmtRNVJVNXdhbXhzVVRsRFVGTnRTelo1Y25oUGFTdHhUVmxGYjFGTFZYRlBRMEZZYTNkblowWXhUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZGSzBadENreExkbk4yT1dSSGFsaEpOMlozTlROdlZFMTBkV3RGZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDB0QldVUldVakJTUVZGSUwwSkNOSGRJU1VWaFlXMDVkVXh0Y0haaFJ6VjZZakkxUVZreWFHaGhWelZ1WkZkR2VWcEROV3RhV0ZsM1MxRlpTd3BMZDFsQ1FrRkhSSFo2UVVKQlVWRmlZVWhTTUdOSVRUWk1lVGxvV1RKT2RtUlhOVEJqZVRWdVlqSTVibUpIVlhWWk1qbDBUVU56UjBOcGMwZEJVVkZDQ21jM09IZEJVV2RGU0ZGM1ltRklVakJqU0UwMlRIazVhRmt5VG5aa1Z6VXdZM2sxYm1JeU9XNWlSMVYxV1RJNWRFMUpSMHhDWjI5eVFtZEZSVUZrV2pVS1FXZFJRMEpJTUVWbGQwSTFRVWhqUVROVU1IZGhjMkpJUlZSS2FrZFNOR050VjJNelFYRktTMWh5YW1WUVN6TXZhRFJ3ZVdkRE9IQTNielJCUVVGSFZBcGFUbVpEUlhkQlFVSkJUVUZUUkVKSFFXbEZRWFZZTkVWM1VsVmFNVUZ4ZVZvNGFXeFFPVzFsY2xackswdGFTMHhDYUZkV1RFMU5jMWcxUW5Gek5UaERDa2xSUTI5SVMwcHJhek41ZVd4RFVrVklVVUZEZVVkeE5FazRiRTlHUkdOaVdURk9WVkZpUVVoeFdteFpiM3BCUzBKblozRm9hMnBQVUZGUlJFRjNUbThLUVVSQ2JFRnFRWFJtU0U1YU1VbHRNblJzVG5wcldUZDFUbXBXV1ZSTVkwWlhkM0JVS3paeWRWTkZTRVk1UTJwSVFtRTNRbWhIUW5OaVdIVlJkeTh2TmdwdlVUSlVkVGhOUTAxUlEwVkdOa04wWmpWQ1VGSmtOVmxMTldVNFREQmlTR3REZGxSb04zTnVhRVUwY0VaNUwxVlFOMUpLUmpkVU5WRkZjVU51ZEZSUUNrcDBSa1JrWm01TFUwSlJQUW90TFMwdExVVk9SQ0JEUlZKVVNVWkpRMEZVUlMwdExTMHRDZz09In19fX0=",
"integratedTime": 1732563682,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 151461678,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n29568696\nWK8p3tk9IT2nzJeeNRHrZ84EqPHWl7v4/2v9GNgqcSU=\n\n— rekor.sigstore.dev wNI9ajBGAiEAz3Wfn4wVB5s4276Qnl6YiHo8PAJHDDcZIo14xOvTv0gCIQCRDknCx3/BvZoz1ezPzyJ7B6DYGO6nNrvHn7K2msm54A==\n",
"hashes": [
"6f55dea3e84db2882e454f1a5bc26607df9f84387fb834342e22896bd08fd360",
"d74abb25d36310ab8b0a4cc5d803ce5c62e43d0f9b4f643e4221163271094ff0",
"d54b4d58eac7a01780defbe624dad5499aee53c1e4c4d78eaf6d8017257a2a60",
"149b2f4d91a2145e458a7e2d0ab735196d56269b868ee808ed8171605a15252d",
"0badf68d796d6778be7aa4b081d040fe947c27856c1442fe7258ab980a3d7077",
"0831231b476040439bb129646e0fd4834ca013f7e9ab03b3ebb590b63c17ee21",
"e347ee594ac5b30c15bfd570b895937acf51d3c3e37f7b61fffeb62de3c04994",
"025b7defb7272ea6edbd7c767084fa7e489bc9f247d1d5c889858ef1466ce2b0",
"cc94ee8938b85a273d637fcb15cb36f503087924b86ce0852ff1b2d2411ee182",
"3879d1702ee13480ad638e1bf5d95179e07c757273f77e4e2bc398c92f81db2d",
"4b3c16906700f1d2c475ca3ef135913e47dbb42ff8128db4fbd0a8f15735e971",
"3950e770a5906430aaefb9e2e07d8a14042f1b2cfe0039579cf33779565aec08",
"57e3da85ff7df03188038e465572899107e983ee295b3a8f3571daed8e5f40c7",
"af4209e96c1cb1cd82b61344f860d40ebfbec2528b624acad4c8fe847c33eb0b",
"b62bd61a7424ec30a2b1631c8db241250a2808f3f48a1e1014d180e0c2bb6422",
"f09857e5655da8a3c8d947b7ae06fef0aa9e8186e0868f73d139a5998aa36964",
"a0e79c15f37762a0ce91b8a34bf7a3d561790dafc6b7f0193616f013dba8384f",
"e25505d183aef579080d7297034c0c4b377a55e0d8dd3640826a0e796992dbe6",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 29557416,
"rootHash": "58af29ded93d213da7cc979e3511eb67ce04a8f1d697bbf8ff6bfd18d82a7125",
"treeSize": 29568696
},
"signedEntryTimestamp": "MEUCIQCMR2pAesNWRJzLDdni5GddNkAik5NNZ+Ni5+q3Nad2owIgXhpNMS9UIh70BklbSdXdfn5gWxw8nJ02ty2CnqzXP5A="
}
}
Loading