gha: update release process #64
Closed
Chainguard Enforce / Enforce - Commit Signing
succeeded
Jan 3, 2024 in 1s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 625558506976949714429353785113313036098651537637 (0x6d93037ba68be7ce1c267cbf967f24dd2ac3c0e5)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Oct 26 09:00:30 2023 UTC
Not After : Oct 26 09:10:30 2023 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
6d:18:fd:9f:ef:60:2e:0f:20:dc:28:66:53:e1:3a:
5f:94:68:e2:cf:87:95:a4:bb:70:86:1e:0b:29:76:
1f:57
Y:
61:04:8c:18:a6:e2:13:7b:f1:2e:85:3b:bd:3f:1b:
2a:d7:6c:b1:1f:a3:d3:f1:cd:c0:38:37:b4:fc:75:
b4:08
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
74:AE:FB:86:1D:43:36:AA:5F:4C:04:DE:0D:0C:B4:6F:CA:26:0E:8A
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://github.com/login/oauth
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABi2s2uDcAAAQDAEgwRgIhAJuT9EITTzk7IU4cblNLTHhjxDN1vS3heWS+4RFVKq4fAiEA9CcjrcxaWn5GV8JIAOlqFLeHtMD0eLPvKpFwZZruMzE=
Signature Algorithm: ECDSA-SHA384
30:65:02:30:1c:cd:b0:ba:1f:c2:69:24:7f:f3:6c:0c:5d:99:
af:27:ce:5a:2d:a3:2c:23:dc:ec:03:98:40:00:9e:6c:ac:a0:
99:0f:98:88:24:9c:93:76:59:b1:76:35:00:6b:a0:ec:02:31:
00:87:72:f3:40:1b:bd:10:f7:1f:60:f8:3e:d3:4c:7c:34:4d:
93:42:20:da:78:ed:e1:2c:7c:b0:3a:d3:46:5e:9f:47:8d:ab:
af:fc:cf:b7:99:8f:c8:b5:94:f3:81:19:89
Rekor Entry
{
"body": "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",
"integratedTime": 1698310831,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 45487595,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n56833234\ng0HpCqP7y3+ARUf89t706EB/Ik0X4r9pPH/2sMgibH4=\nTimestamp: 1704245980112315791\n\n— rekor.sigstore.dev wNI9ajBEAiBvwoEWOnFL52XeTwh1gN6aCcCd6gG1s099VNmw+S/MHQIgV1pGnrfeCeK+0U6O6Lt93vDYrOnXfK2mVIRwUXClcPA=\n",
"hashes": [
"3231ef298abd6ae79eacf6901888f156939a45085b7050126eeb76a28d9b150b",
"0a7b025e951a85001bd7d1fa97ea7ca9f1ac133c8aa0a8be797aa2d16b1eef8e",
"e1d63de9eb90081cdc45d2fb5c21dd39cae16cdb6885fb144a69c275f004461a",
"a815b02a99579c7c50b5d544998e051b5923cf5b89ae3f220792dfe2e0738290",
"ce85f7103b615fb857ce18ac46a9750f6ac42b501d7f3479520b01f5c554b701",
"09dbea257364b1f68328c477c81606232ec06daa0b1bf019d661713fa21650fb",
"798a2a05f44b659141b22a4b886a1d70edd168e9ec19c63cab88e950ff26d170",
"508695afea5070e9441b8b7db8263339bb9b065375f43b33316d9f94d0a2e704",
"de71ca4bf2c1b4725cedf8d9fec51e5b598d965929e548955c81bd422c584507",
"e4a11e0b2423782f27a73c129a4529052f303128e4afbcab0695167d69eeb833",
"f71a42416d592ef356535809d2ad99bc0526ffc65bc447cb0c49767ed4b5284a",
"c6bb7713944eb5692c4e8406b28460736be3b1a31ad76aa7c084da4a4b2c6fef",
"c62a43a74f5808e1b6b0026abb98ca1c1b641685e59f20ebc70c03c1932fc07d",
"6776b15d517602541d80bcf5b92d483be94a4f9b71c7f5512e5c705624085e72",
"61415d530b2b660e14bc1f4948f2975445cd8566d4919b3d34def5688f7eb384",
"91f45da327035f26b37d17795ea2ccb4525d74372ca8125326cd9b8ec98c01c9",
"6d80d11e4916fb66f30c2407399545bceb1eacebfc510a2a4b97dc28a500cb46",
"096527f3a3d54018d84ca3df075e4ad48e38f030a2173b8243f56ad1c4ca2e6b",
"728a562329a60e6d167781ceea79e72bc5ec2f3d1f82f25bd7f781251d69ec4b",
"2832a053b7ba571f1ab0f08db13c6c13deb1e140b2bbe054425d2248a529d552",
"728ab53960e5f37edba8f3ce0af3a7cd731661e31140838abe7654aefc4c443a",
"b6b5bf40ebe9f57076f9d880690a4e69e5b56a457e7524dc7d38037c293e121c",
"12a5c36838e5ac885e63fd8243f774fa9a781017aa2e56aadbfd28722ca8e406",
"bdd027c847e484aedfd6894fb9be9217d7a5553df09b02d288ad28941e058896",
"7fe9731d66d808f32077a046c56d055ba8dd9345b6148c2eaa4ce8ba7d04a602",
"6969c49bd73f19bf28a5eaeabd331ddd60502defb2cd3d96e17b741c80adec6c"
],
"logIndex": 41324164,
"rootHash": "8341e90aa3fbcb7f804547fcf6def4e8407f224d17e2bf693c7ff6b0c8226c7e",
"treeSize": 56833234
},
"signedEntryTimestamp": "MEYCIQCUeY9M86Qk3uS2gxprQTJpTxLHdUh3zQ3Mij9T5q6FDAIhAOSoc1cxYEBkuC+o870ERQjRnfder9hkBxqKflVTFmg0"
}
}
Loading