pkg/apk: switch to SHA2-256 based signatures by default #1440
Chainguard Enforce / Enforce - Commit Signing
succeeded
Dec 13, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 351016663251558862645822127302541888340477713412 (0x3d7c21adbde2c9185baceebf57e02ae301719c04)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Dec 13 22:33:26 2024 UTC
Not After : Dec 13 22:43:26 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
f4:7a:ba:dc:b5:55:3b:24:94:24:fc:45:cb:e0:49:
aa:b2:d3:fd:4d:6d:54:ad:6a:9d:0f:93:0b:d3:40:
1b:8e
Y:
74:15:e6:4a:74:a0:52:98:a8:d2:b5:ff:d9:b4:ed:
b8:bd:40:1b:cd:8d:32:2a:c4:f7:60:c8:7d:0c:c0:
49:a8
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
61:77:BB:93:90:91:43:82:AD:73:85:C4:E6:AE:88:1E:15:97:8A:05
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABk8InxuoAAAQDAEgwRgIhALJNJ7p0k3x/qtha/xle/kAs1DtBd/JUh+GUg1kQL7EZAiEAisMUsFsS+VH+IUbijuFqJfjvFMXoaCGqZK6uozrUFRU=
Signature Algorithm: ECDSA-SHA384
30:65:02:30:4f:bb:fa:c6:81:d4:ef:c0:23:1c:3a:4e:df:b7:
dc:a9:b0:35:35:72:36:d4:99:56:ab:e1:53:31:c2:11:84:3f:
b8:2d:a0:5c:1b:2b:b2:34:58:0d:45:6c:29:18:21:02:02:31:
00:b9:76:c7:4e:15:ad:86:dc:83:b6:bb:18:14:28:51:bf:07:
b8:52:dd:10:c7:d2:6b:45:d3:75:37:4f:2a:12:6b:1e:f2:c5:
f2:2d:17:ec:7d:fb:d2:a1:6a:de:b3:be:61
Rekor Entry
{
"body": "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",
"integratedTime": 1734129236,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 155250429,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n33349298\nqUoWGHxsfnwGXAXyuUy+QR/gseQzdMc03BQLdcitOGE=\n\n— rekor.sigstore.dev wNI9ajBFAiEAozj/kXKd7M/t+cgDEvRIp4IZe19yt9pZEBZMBBVglRECIFEiOkBkdDN6d2k73gTVa3B/L7j884aK/BsZRh5cb+Bo\n",
"hashes": [
"5a7493330a54ada1ba0ce0e9565ca9d6759a1fbfae6b0613995e88cd3ac1d957",
"5f05b7f28b0d892e055f079fdf808a10cde799c68e7419718ac3d8f7fc4463f7",
"cc2936ce598b7a2981b9f79d09ad10f489341a454c8d930ec5dccaaac2ae1ef0",
"abb500a13ea73be7b6108ea25a1e4046085fa26510eed020f08c7a4862f24689",
"ca50fbd34ce8a3a8d1379e9e3bb2185d74d5c3ce624bb04de48ea7f58dd37a70",
"4d5c050820ac4108d0f3155ac0a0f3edc4c06d0e82d9fdf0ae6a448f7508b8d2",
"535dd2bcd9c09db1f7fe5c84a46204af799d727a8cb2db9aaf1b3536dcb482b0",
"1e78ba62c43f87a58e9c11358f53758b1554c7039cc50b2172e2e4d1dcc58cd3",
"03614680a03c24559fa500f37c3003c4b50f9a63fc3cfacf6ba65db66d9c26f0",
"b7c87aca7016b42db136bff1ea9189cf4ed83c8587cb90b7974758c6aa2e701d",
"ee357cba1f3531fdee29c7f2c67081856522b1bb011d3793c09edabac7d3d7ba",
"b595de769e1e7f83c64433eae76ca2289744a0be242b71a187d2da80bc452ab3",
"21816c6f6a417bab0cf38c748f1547e497547ee9001919d128a6a0c20eba412b",
"8d2e25e1729d8a5bf3c3ab1477560913aa57cb68da76cfeedde3a9973053eb51",
"824415b6047dc0f4aea8eed4b0296cd31f7d714c3de5d0725772fa38d8469c69",
"95a4b5e0d8638b968f199142c555b7cf602938b5702a5926b10b898655f2bd2a",
"55b3a6e036dd65b43c15cbfd7b1adab9ff28687cb5aafa70da83f2a6c9e653b4",
"81258a2f6935646666e390bc85274dc166a7f2a3abb339795fb5ace7a87e1553",
"47b84ed57f8a812c3c3a88ddf22dbe1b7073058ced911044e8ba584973e0df75",
"a0e79c15f37762a0ce91b8a34bf7a3d561790dafc6b7f0193616f013dba8384f",
"e25505d183aef579080d7297034c0c4b377a55e0d8dd3640826a0e796992dbe6",
"81ffbd9b9e760773e79169ced28e0a755be3713dd65472eb09b7f50e8558285c"
],
"logIndex": 33346167,
"rootHash": "a94a16187c6c7e7c065c05f2b94cbe411fe0b1e43374c734dc140b75c8ad3861",
"treeSize": 33349298
},
"signedEntryTimestamp": "MEUCIQDT6q6WO3y3E3vJIln4RP/izrONB4kvinZni5xUDWHPnwIgHaMOui3mHGT/Pvb9/LIpKmvhHn7DbObL9Fc/zkPFpVo="
}
}
Loading