image-copy-ecr: support immutable tags #91
Merged
This check has been archived and is scheduled for deletion.
Learn more about checks retention
Chainguard Enforce / Enforce - Commit Signing
succeeded
Aug 25, 2023 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 216546065347207093553553050782117280027852641369 (0x25ee42eb4566213e677f550dcb8e48405f1f9459)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Aug 24 20:38:38 2023 UTC
Not After : Aug 24 20:48:38 2023 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
fe:40:b2:fb:0e:9d:41:7f:5e:9c:ba:43:f2:0a:14:
8a:64:74:9f:e1:92:1a:c8:6e:7c:99:bb:a7:27:2f:
c3:e4
Y:
15:95:6a:af:4f:71:15:c7:05:84:2c:f8:99:75:b4:
4f:42:ef:bc:7b:ff:2c:7a:5f:8b:2e:9a:7a:8b:d4:
91:1d
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
A5:AB:D9:9B:24:61:58:EC:36:A2:8F:58:E9:9A:0F:01:EA:9B:68:9F
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:jason@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABiilFPTkAAAQDAEYwRAIgYGkkiifdIOP77Y99QN9FcC9blRaW1NXykG11plPRn4ECIB9nHgk5FFBMjES9iiVA2CxbFUN5z9YvLA9DchzQNoMh
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:a7:c7:cb:3b:bf:a2:67:80:50:87:14:e1:92:
c3:35:08:90:d5:08:bd:a7:c0:90:9e:94:b1:c2:85:ee:eb:8d:
18:16:71:9b:e4:8c:bf:a9:3d:56:49:69:e3:33:b7:06:c7:02:
31:00:97:fa:1f:36:38:3b:79:b3:5c:28:a3:0f:52:be:eb:de:
40:0a:a3:b8:5b:9c:a5:cb:1f:28:85:d0:9f:e2:3d:42:5f:1e:
7c:bd:82:4d:f8:33:8c:21:e5:3e:57:14:20:2a
Rekor Entry
{
"body": "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",
"integratedTime": 1692909518,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 32688639,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n28623251\nSRaCxaELrpJbY4bP/r5ZkHjOBj/6EYnTSx5GHSN0csY=\nTimestamp: 1692971971608572445\n\n— rekor.sigstore.dev wNI9ajBEAiA9cm3dU/cleUbwXtAAh1ukubMFqLd6MvPd3GnbEfauEAIgNPA/hf0w1sNfgJC/k5Owvz7vlDlXfDbo5LG2TunW8cA=\n",
"hashes": [
"f1bd190743153841b457a67cd80ed90c3798fe0669c68300af4c09bc92800e03",
"1d7e1d7c03cfd686ac64f141df9405dcc3948d1357a3d44da22e7e75c11a495b",
"241b728572eeeffb06e8bfbaa20eccb3d364d39475dd16966fb9169c0d9c6fac",
"5eb1558d02e35e8d161b075f361a5166ac9761806575a26f5ed7b3580f784348",
"8c93788ea5bd2cec67a3ed3f03aecf7e124f7b12bbea97a86fe33bd0ebff4491",
"b98a3bd327255a4bff3520f8c3bfb2e45d314c58b125a8ebe480a1ee79615ee2",
"9a42392ecb282b3d5c5c404267368de5c1aaa12a8c57f4e5c9e529ea86f1ba33",
"37c00a5d56bb72c985c8b8286e92cbcecf6405235b85af425406cef79b6683a1",
"2838f9bede0aa505aad56658b012fcd5a615caea595f2823ea60a45e3d349bde",
"9fd8ed624773f903cd61eeacd1459d99cfd7bbfbe87db64bff29506472d880d9",
"6baacfc5595753e64ed331ec21df59948cd9755c093c81aa8f51b3c4b18f16ce",
"3a013e06e57af53f5f61e897a81958304c9809064bdd2c524972660cf75999c2",
"978e51fbdc0b84e25dd5e782f1f253e98545fe5f6a9d9d1435c2365368479294",
"284f344713480a4864516e53da5bc5b131babec717af9232aa6f8ab4783dd955",
"758350955b6e7efdeba6d4e7395acb35ca96a37ae38da8042f8e5f1d3096d12f",
"cac91185eacf52080238b88320c950aaea40bb3fd02fba64623e13c213d0a4e1",
"a67d480a8fbedb560ddf85d69e6ab22fa083ef46f476080a83e9951b5b4d9506",
"0d1b1b8a363e0c5dffe7feb50efeac524ff2434c65980b4539bd67722e3faa5a",
"d10a6d1f0327a7a98c887ef595af991424170f943d92e46475199dce20613841",
"795b2f58a9c4675f97a3705ad790df12222186696b11a21e6fe55f626c7c2a16",
"b8bb814629ece6792aab6aea775ed1dbba504d417ec5eb6db42e8cb26954cddd",
"8d152ae03f0ef85238ed66f0f7ab3bc870aee2acd6531a4855fc5011ea6b0e67",
"ad712c98424de0f1284d4f144b8a95b5d22c181d4c0a246518e7a9a220bdf643"
],
"logIndex": 28525208,
"rootHash": "491682c5a10bae925b6386cffebe599078ce063ffa1189d34b1e461d237472c6",
"treeSize": 28623251
},
"signedEntryTimestamp": "MEUCIA4nX1sxrUHDfqONHKhzf9TTKERZ4NRazV8Af8ENAGceAiEAoB5i1ksKaiKtkFQkR4squKebfUpbNI/gpO3SPivs6QA="
}
}
Loading