remove support for docker-typed manifests #1371
Draft
Chainguard Enforce / Enforce - Commit Signing
succeeded
Oct 25, 2024 in 1s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 192210704516841974530375791780852163635645094131 (0x21ab06ad515b49e98415265022248f9d553198f3)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Oct 25 14:14:40 2024 UTC
Not After : Oct 25 14:24:40 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
c9:54:ea:c3:d4:1d:cc:17:2d:25:56:17:e0:2a:c7:
17:20:de:6a:3b:26:86:32:d3:cf:46:14:da:44:60:
f1:10
Y:
0c:21:27:68:9c:1c:91:f5:e3:be:48:bd:c9:b3:0d:
c7:f5:59:44:35:aa:ce:66:9c:25:de:3c:16:d2:9b:
c9:39
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
5B:71:0B:CF:D0:2D:BB:9A:06:6C:3F:63:99:B1:DF:19:2B:51:C1:9F
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:jason@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABksQHhkMAAAQDAEcwRQIhAP9vdtns41tw8o6FAr3lVBWOnqhO0LAQ0UAUB5IF//ldAiBXhOUZrfs1BPAR/ngptYBbTw8+h/MCxvcW2e3A1Ireug==
Signature Algorithm: ECDSA-SHA384
30:65:02:30:51:3c:75:c0:92:5c:f4:a2:97:a8:5c:b8:04:c1:
e1:79:a2:fd:bd:0c:6c:05:6e:7e:e2:89:80:56:a9:86:a1:9e:
7d:d0:b0:be:72:4a:98:61:0e:5b:8c:c3:70:e8:d5:df:02:31:
00:c5:21:31:89:05:4c:fb:ce:b2:27:d3:42:b1:1a:8c:45:ea:
6a:6b:aa:d6:bc:51:3d:2a:88:e7:78:81:cd:f2:28:a0:22:50:
b1:57:66:73:c2:d9:05:dc:e0:1a:7a:12:7d
Rekor Entry
{
"body": "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",
"integratedTime": 1729865681,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 143604481,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n21700298\n5SfhUPra63yd7gJyP6HzntxaFSAwdvj6a26P6iq67VU=\n\n— rekor.sigstore.dev wNI9ajBFAiA/lmXuG1r9O4hpup6umx5ikft8HBwpI3lm3leWTJHBWQIhAI8Pk/sroDwIVLXu0YSptMLtDO7ATvensuYwGYbY1aGW\n",
"hashes": [
"fcea053d42cc696b0e439a5d4399b51cc6be9d1464589f61e58a117415a4bc84",
"1ec1bfb17851313ae50635209885f713c9cc8b6e0e2bfc2d6ae4f5ed8e7ef99d",
"6cf5a01f56b1500566a017329cc5413ad89c860ae5a901061ecef32ec8df62e0",
"e04e76d1a24f18a4ccd2864f26b4cbfea1df578ba5d15d0f8371781dd623e793",
"d00d827d5d9aaa81929be80d30f0a2ba5de5bb7added0d25a69e63062a159196",
"c720b023d3eb309361a18551a4463b7b78834a154fe4ee5335ede2fa7ac750d8",
"ffa6340b1eb56e91d9b7efbd379a189f7bedab897f1b658e4878c65e3a00a8d6",
"14578db1d71a41c9f9635a19bdbf691177ae6739a46e9668fd1d1772517f4751",
"67f31b116d400899dccb4423b0f900b19eb3099f4d551bbf9ccd7892da34da0d",
"e1fc641198928afae7f640a733ac4026997c5e148b28fbbca9919a72f6714523",
"3d32bf44739ca6b3e559d8470d063e80105ec6f7ce9066ee78585d9118ac68c0",
"106efb2351952999749596722aaa449466cfa7d10a64cec08827bb1ad59c1c35",
"60779694755d8741a960e029742df047506ef657aa9db5bff14146d4dbb323b4",
"4f7f82ed7c8c8f9621ab5c6eec11590e2311b88a7467ea9f7b9abd77841e99d0",
"3dc3faa41d39c8247607530b830432d9a0919afac653b22d0bc3f59140893809",
"0dd0c71064ca3fb16358cefb70d7dfebf2dc4c8853b1707e8b790a0b0fce2392",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 21700219,
"rootHash": "e527e150fadaeb7c9dee02723fa1f39edc5a15203076f8fa6b6e8fea2abaed55",
"treeSize": 21700298
},
"signedEntryTimestamp": "MEUCIQC72px6ieRuNcOGQzTxL+WWhWMMxkLQqg12v0yaDcNp6AIgDUnR0Xlb2IEpVahE9GmN3L8O3/qGAmIB8uMxByhmVQk="
}
}
Loading