docker: add remote option #1725
Draft
Chainguard Enforce / Enforce - Commit Signing
succeeded
Dec 28, 2024 in 1s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 558618934967351919687934475610937695131951249017 (0x61d956e1ca8ce682c3e1c8391f6a6c77ccb93679)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Dec 28 16:16:54 2024 UTC
Not After : Dec 28 16:26:54 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
f3:0f:6f:43:23:2f:12:51:cf:fd:88:11:5a:1d:64:
05:4d:bb:b7:6c:47:2b:35:69:78:e0:f6:71:29:d0:
36:d5
Y:
38:ac:f6:4e:74:f0:3b:67:1a:9a:bd:da:48:b9:6b:
b1:6a:f8:91:0d:e2:6d:dc:c8:1b:df:2f:18:b5:8c:
1c:7f
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
85:D3:60:DD:35:4E:ED:61:A7:5F:09:6C:02:80:1A:36:82:1D:2F:76
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABlA4Ob0oAAAQDAEcwRQIgYFiNZflnPorf9ExfZlVxmpOqb774s9JnUXg5vO/KOYkCIQDjsHgglOtZgZ7wA1j6EX8VNYnFkDXoI1zdV/LWWhEG6g==
Signature Algorithm: ECDSA-SHA384
30:64:02:30:26:0a:ee:93:1e:f6:d7:f2:ec:c2:72:da:dc:65:
32:ff:15:bf:1d:08:97:ee:b4:e5:aa:8b:10:aa:50:99:25:c2:
f6:f0:69:bf:ea:ae:5a:b9:d8:22:8b:76:14:a7:27:b6:02:30:
32:7b:15:b7:d0:94:10:df:bb:92:57:2b:49:98:37:d7:00:68:
90:cd:e9:80:20:cf:11:13:ba:be:ed:ee:3c:35:be:b2:ce:4f:
70:fa:c4:0e:a4:01:56:c4:a7:ca:3d:3d
Rekor Entry
{
"body": "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",
"integratedTime": 1735402614,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 158018174,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n36114027\nh+dXyUnH2892HvODLdOky8a3NODViud0STo9uvFhIR4=\n\n— rekor.sigstore.dev wNI9ajBFAiAhnp+0i/Ib55u5fXjcKuvIQRt9/yt7HOceW/VBuDxzSwIhAP+vKXisdOpjAZ2f9GGc3uLiEc4220gTlsz1aq8KjxMF\n",
"hashes": [
"b06ff5177134164e964d3f86887b850e3199dd28a92816752164b91714491d50",
"556c66fcbe12d398f6234dd63bd05252af61dc32cba16dc017f880ee89d93660",
"82711805ef8ca378563ef41b737baad224a65539862552a098bf81733f30e0bf",
"556f452c48cec54e1c93207802e0d253f7e464d4bea85749a03a14a8a1562ad0",
"ca32f80d2b4370f3099cc67d209c12a3af5f670ed027b8dbe8bbf6ef0684bea3",
"29101ae8906388f54f458425ddab9336769a7600175955a7c2b369e46fc08f52",
"a583e9539bb58639a68681b46a9c24c0111f4e528dfd91031bb691fed5e74227",
"f311c376cf23418090d77f9844d4c4b9648a52b315d3f29fdb616fb479d099a6",
"44eeab0044067ab746957f44f93e418eb177c08a4d4682af93fd0fdd32bb88ab",
"255d547fb61259d22c06a9edd23f72f335e650f815d4b2a2824c7db382075dd7",
"b1d4df745d73947b0410f7d86394a7ffa2c01bfdfb1433fcffa8856a83de8435",
"5438660c2057d9a0f3fe441bf569be8fe3185dd5146d50dabc909e7b3ab4c308",
"e0684708a644ff6e1ba40daab278164eb395ac6c0d8af8b5cc029aa0c88f1afb",
"59e0ef8ed4994275de3fbfe7c4ad7703c9b8573a590e122d0f78c5dc36367ac1",
"7be5db6f336d86f4607c638122e031c49f14031b2feba4e969d6f222cf2f78dd",
"b600b0c24a703d9e8d741f89861c6d37727f31d04a96e3edcd9b8a826e1e4568",
"bde9b268c8f435ad4b3236c1ffd0e692af13fa301bde8fb20844a001ac940015"
],
"logIndex": 36113912,
"rootHash": "87e757c949c7dbcf761ef3832dd3a4cbc6b734e0d58ae774493a3dbaf161211e",
"treeSize": 36114027
},
"signedEntryTimestamp": "MEUCIQDNIstY1wMQzI/kUtrSRKgHqRhTEd2sEdlt3t2wgiFQSgIgNqnDS5mBzxDl49BbGBjSeDdzu1IRXvKtjFI+Pai6HHU="
}
}
Loading