fix(releases): more reliable releases #1653
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Nov 15, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 198954108104049603512711748653019762903625688341 (0x22d969275f7c6fb04a13b2038ac6f6a2eeeae515)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Nov 15 21:21:11 2024 UTC
Not After : Nov 15 21:31:11 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
1a:ac:1a:d4:ea:7b:50:33:e2:02:d3:21:80:a4:fb:
7d:30:11:48:2e:50:cc:6f:c1:2b:af:92:bf:cc:61:
60:a5
Y:
7e:53:67:e8:48:f6:6d:ce:42:21:8e:87:ef:48:41:
5d:89:71:82:a8:c2:c8:c7:a1:8d:35:bf:4c:43:59:
5b:4f
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
B8:E8:E6:47:C0:21:FF:BB:E8:16:8A:48:09:D4:A0:9F:A5:AD:86:06
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:dluhring@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABkzGzkTYAAAQDAEYwRAIgVGA8yDdCr1pd7xhhf8XG20pvP+GtsXWpw3ipe0Arst0CIHOKwpEZpxKutgQAUqgTtMLJthvGxsRoC1xS70I6W549
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:ec:f6:b5:4e:f3:10:b5:d3:30:4d:6f:f2:be:
e4:53:3f:5c:da:dc:80:31:03:f3:d9:08:70:f2:ad:a3:57:44:
c7:f2:e2:3f:46:6e:15:91:19:39:c0:57:07:3a:36:30:35:02:
31:00:f8:85:ea:28:98:09:99:32:bd:40:24:08:3c:f2:8e:df:
d9:9f:b8:31:f1:a5:0e:61:d5:c4:b7:e8:9a:7d:aa:6c:ad:3a:
df:5b:8b:b1:99:7a:33:17:8c:d0:42:85:ee:3a
Rekor Entry
{
"body": "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",
"integratedTime": 1731705672,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 149170523,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n27270930\nREUhA0gZPb+4Q+2/kJG3c9omSN0KODLHN9h5jXBlvsA=\n\n— rekor.sigstore.dev wNI9ajBFAiBpHxBawLgFwQv4iDJvg7ETBnGXiE1ysebEQ254/v3v4QIhAKwZdy7hhytqxxmHy89SR+JMNZyDxFKCzaLvb9T8akpj\n",
"hashes": [
"e1287a8d2c5421e57d4dcb74dc1c1fc9646be6121f9467165dd0306ee9215be0",
"92a7414775ce78433a5d41aebc404c661d98c1695a7fb2a475e49631a2c3ee7c",
"be949601f2cc898d1141219adf1c0ff54a98e24424d465726c8d890f429d7328",
"9f77d53b26ab211eeba0b3ee5ebaf612d0bbde61b5d9b1c854d6bb079211cdac",
"871e1b2ae68510b791b5ed00c181b42be1a45578fb639e303ead25f924b0516a",
"14b070e82925a8f8a724838fff0219066c3a0d8ce01273afc38498d0c5322e43",
"44e598a4809ef8d7fad9dc98440c53f719fd15b8aeaf8bd4cafc4cb3176a59f9",
"9fd33880b624019879da30b57ae7db95b89467c98fc37c7c93c5f56b7928c36d",
"bcebb9238c4ee83758cab909edf437b9e2c8833757d20dc5f860ecbbad53b40d",
"3abe6258b23d810c7f7442bd4533506e6bac197784b5d03a57438016a0c31204",
"10d3c98e6e08dc4cfb7df39dad6cfb74b65973e73ca31c7eaf6d296a601aca73",
"e35cc83908e90c017a67f5b2b2e0f7a1004f0c1920d48ac58f94badeb223aaa9",
"fb0afb7b08b8cc68f79fd28fff1d5dc748ec718b2787124c436c9218a70f868c",
"136acb3983c914a8a2cd88b2bb4ed02ea90c55354bee2d99817890cb0748f4a4",
"e25505d183aef579080d7297034c0c4b377a55e0d8dd3640826a0e796992dbe6",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 27266261,
"rootHash": "4445210348193dbfb843edbf9091b773da2648dd0a3832c737d8798d7065bec0",
"treeSize": 27270930
},
"signedEntryTimestamp": "MEQCIBHP5hlVF+hAer7zkemsElIIinwEiIvSUGiVb7OOmk8HAiAWBRraqJc3wVjKAHbhqt6d07UYi4So/FNf/2NZFkVS0Q=="
}
}
Loading