Add Harden Runner audit configs #1062
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
Mar 19, 2024 in 0s
Successfully verified commit signature.
CLAIM | DESCRIPTION | |
---|---|---|
✅ | Found Git signature | |
✅ | Validated Git signature | |
✅ | Validated Rekor entry | |
✅ | Allowed by policy |
Details
Certificate
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 242295875801977201976851924512660313697120673928 (0x2a70ec3f14f7db14baef0db7fb6a3a1661b3e088)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Mar 12 17:36:43 2024 UTC
Not After : Mar 12 17:46:43 2024 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
0f:1c:bb:37:59:7d:0c:7b:08:b7:05:0d:25:f3:6a:
f5:90:bb:68:68:9e:ae:fd:92:b7:0d:17:a3:d1:58:
94:df
Y:
a0:dc:6e:8d:5d:43:bd:2d:3d:77:15:14:1d:9f:8f:
65:ef:36:9e:e7:f7:b5:a4:24:01:82:ec:fb:03:4e:
92:4c
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
02:E6:18:9C:E1:47:93:C9:93:49:7E:35:8F:D9:EB:98:36:DA:2F:02
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:[email protected]
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABjjO87zAAAAQDAEcwRQIgH3M4mJfKZbMLMWBjdYeyXwXEpa2H4Xp9689rbpXycJoCIQCm5U4IY30glanzn9z1ecZLCst7mHnmGbaJoGidoGJGtw==
Signature Algorithm: ECDSA-SHA384
30:64:02:30:77:6b:25:bc:2b:af:f7:1c:82:9d:36:fa:43:8c:
39:53:9e:09:9e:b5:5f:f4:b7:0a:8e:9b:4c:a0:15:08:20:ec:
2b:94:f7:88:d0:29:29:fa:81:a1:ba:06:4e:f0:c6:81:02:30:
7f:68:7f:49:0b:0d:d2:e1:cc:9f:77:55:9b:19:21:7e:5e:6b:
4c:c1:ee:3e:ff:86:11:d5:e2:c3:12:66:9b:5c:f8:25:7c:47:
9e:66:c4:52:1e:2e:65:10:0f:17:30:a6
Rekor Entry
{
"body": "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",
"integratedTime": 1710265004,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 77587822,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 2605736670972794746\n75403294\nPLINPIzkJN49GUk2ltDIFVVNFVnCxQjPW9QHHl6eE8g=\n\n— rekor.sigstore.dev wNI9ajBFAiBVRWHkUBeBTUcwWXg+AIxUUkcgTQEA9XbcyGN6W79NIgIhAJMuj0kYVVDVkUKIhe3d4kucG17hJ0chxCfiyflJ4utO\n",
"hashes": [
"ef4880485e189e8002be3f0dcee11fc3ca8aa7bf81173cee4981aa90cace84ba",
"e13620d7c0f08b94fa2c50776687f23d28458a580bba7560f22f7238412e31ff",
"b7e07b0999639be2ae5cba60e34ff48171689c744aebe314e2d593fa3f3555d1",
"eb4b3dc6dcd264123f10cfc865140be69b1258f0bb74d109d3380a1318900090",
"7af06b7fcef27956a5a94396eb62a04448a1af8252af392556a0261da03a7863",
"84b924c567081f05c9e8e64e2fd1ffceb4392319ab6188162a5ba414b3458d1b",
"41738028184bcf5fe42e88be67b6f7b3cc7182b2db2c13ede6be00a9e2bc268c",
"1d640c075cf914ff6503a1fde6d17d125be27408340d38d956821170e76d8cba",
"f79fb58fa18fca7297a7f9f8d927a4aaf10c604fc8e6f4eff539976680cbfa3c",
"bf2fc10b9ef4dcc544c97a44588152bbf10f52f4daed8f495fc6b72beec1c773",
"db52471ded071b6439b378d983a3b0e1577ca878f6e3f736801a2f4b8ebe44a8",
"e9e89f7229fc70496558a8f4c7ee418b51e41663d48a8b5ccbf24cb2f1aebf4d",
"42c28bde860f0f422ddfe45662e73ee1e8bdb8d9787912f072f8fdfcf3bdb83b",
"d026d9a4fbc451c5ff78615bff5ee4c171c592862f5ab76b9aeb8d2665837524",
"cbd0ea429d7cfa6d77a6eb9a497f1d278e86089d4558f9c738b34256fd1f3d26",
"b33c2df92a52903ed73015ee190d20f6c3b8a8bf2ba61ea53fea67ace057b8ad",
"15e9b3391f2bded361ba3b9a21567bc150b2187b3494d49f004c881a8842cc7d",
"8968238fa110b3cc75afb74e994f985ec2878954c6cc69a8743b911e18ac8762",
"5e66582a8d28c0e8429f01cdd6ee72674797cd1e2dfec2505c0ddc39d42b2495",
"1e23b64fd37d5ef421900c4f7cd6bcf450fc4bf915c92b92823880233afbc697",
"43b1b0313b5b967325b2524fc0d4465307f92e1791e20d0099529432276b83dd",
"614d63658fdfa79b4974617f8beffb7b3f35d3b3b8fe5394a7b69c30f14468e0",
"ed9d7c60b040bde8c45789c91c82a892cff19628e7851d34e6a4d6db0e10b478",
"f7c7a7ccc682fb1e6808cbc8650039cfcbeed9aa4330216f13ff77e4d7ee3f0f"
],
"logIndex": 73424391,
"rootHash": "3cb20d3c8ce424de3d19493696d0c815554d1559c2c508cf5bd4071e5e9e13c8",
"treeSize": 75403294
},
"signedEntryTimestamp": "MEQCICsmITqhea1Ljn37MmcAf/JScZBQVIM17V0qa2b/f5ieAiBlq5+u7jEbNX3f+itdW0oDyYZvEJb+xP/jYRI+Eq9Tgg=="
}
}
Loading