Add a guide for doing assumable identities on Azure #3328
+380
−0
Merged
Chainguard Enforce / Enforce - Commit Signing
succeeded
May 18, 2026 in 0s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 204963243077723931372952512919608050934231170515 (0x23e6dea3e902d5e3d19de0e14dfd896a242d7dd3)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: May 15 08:58:07 2026 UTC
Not After : May 15 09:08:07 2026 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
fc:55:94:2b:2f:8c:37:1b:7c:ba:f2:fc:77:0e:ce:
3a:65:18:bc:9b:de:e5:30:54:27:c6:c0:e1:df:fb:
b5:0c
Y:
7e:bd:65:1a:49:61:94:9e:6b:8b:f6:45:f0:06:30:
cd:8f:5d:bd:27:4d:a4:6d:b6:17:41:dc:35:ad:9a:
34:1b
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
EF:32:58:30:E0:68:C1:29:D8:F8:D1:38:ED:6B:09:29:FA:03:AE:EF
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:rob.best@chainguard.dev
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHsAeQB3AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnirbe6gAAAQDAEgwRgIhAOLb+Vhg+y7BvbTFo+hZLuzD4Zk9Vbf39AvUPvx7iV/tAiEA4oyKfDWsOCvQsds6Jn2VmG4tjNhVxzavREd4ERQNg28=
Signature Algorithm: ECDSA-SHA384
30:66:02:31:00:cd:4a:2e:56:41:09:f9:31:23:ab:d5:b4:9b:
04:84:92:b8:c9:27:d5:ef:e2:58:13:af:03:15:d9:6c:04:70:
85:72:04:eb:0c:0f:a5:7b:8b:55:74:20:5e:69:94:54:c8:02:
31:00:9b:db:80:87:1a:09:b8:28:0f:b4:31:44:5d:24:8f:71:
dc:d0:e5:d9:ce:22:3b:cf:7a:a0:95:5a:c7:2b:3a:0b:96:e1:
9a:08:9a:ce:ed:72:4f:ed:de:2f:6b:fe:3a:e3
Rekor Entry
Details
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiIyZDZlNWQ4YTA0NGQ4NDhlMGQ4ZTI1OGEyNjg5MGQ4MGY5NjBhMTE4OTc2ZmQwZDRmMzQ1MDU0MDk5YjQ2OTBhIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FUUNJQWN6bC9kMGtXcm9hbGkvb042ZDAwN3JrSmhBYk9RcEk5akNKYWNIb2xiR0FpQm50L2NSWjQzSlFhRzRxT0paNkVVYjFkSko0MEQ1QkVTaFViZHRlTTAwV1E9PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXdha05EUVd4bFowRjNTVUpCWjBsVlNTdGlaVzhyYTBNeFpWQlNibVZFYUZSbU1rcGhhVkYwWm1STmQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFpkMDVVUlRGTlJHY3hUMFJCTTFkb1kwNU5hbGwzVGxSRk1VMUVhM2RQUkVFelYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVV2UmxkVlMza3JUVTU0ZERoMWRrdzRaSGMzVDA5dFZWbDJTblpsTlZSQ1ZVbzRZa0VLTkdRdk4zUlJlQ3QyVjFWaFUxZEhWVzV0ZFV3NWExaDNRbXBFVG1veE1qbEtNREpyWW1KWldGRmtkekZ5V204d1J6WlBRMEZZV1hkblowWjVUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlUzZWtwWkNrMVBRbTkzVTI1WkswNUZORGRYYzBwTFptOUVjblU0ZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDBwUldVUldVakJTUVZGSUwwSkNjM2RIV1VWWVkyMDVhVXh0U214ak0xSkJXVEpvYUdGWE5XNWtWMFo1V2tNMWExcFlXWGRMVVZsTFMzZFpRZ3BDUVVkRWRucEJRa0ZSVVdKaFNGSXdZMGhOTmt4NU9XaFpNazUyWkZjMU1HTjVOVzVpTWpsdVlrZFZkVmt5T1hSTlEzTkhRMmx6UjBGUlVVSm5OemgzQ2tGUlowVklVWGRpWVVoU01HTklUVFpNZVRsb1dUSk9kbVJYTlRCamVUVnVZakk1Ym1KSFZYVlpNamwwVFVsSFRFSm5iM0pDWjBWRlFXUmFOVUZuVVVNS1FrZ3dSV1YzUWpWQlNHTkJNMVF3ZDJGellraEZWRXBxUjFJMFkyMVhZek5CY1VwTFdISnFaVkJMTXk5b05IQjVaME00Y0Rkdk5FRkJRVWRsUzNSME53cHhRVUZCUWtGTlFWTkVRa2RCYVVWQk5IUjJOVmRIUkRkTWMwYzVkRTFYYWpaR2EzVTNUVkJvYlZReFZuUXZaakJET1ZFckwwaDFTbGdyTUVOSlVVUnBDbXBKY0RoT1lYYzBTemxEZURKNmIyMW1XbGRaWW1reVRUSkdXRWhPY1RsRlVqTm5Va1pCTWtSaWVrRkxRbWRuY1docmFrOVFVVkZFUVhkT2NFRkVRbTBLUVdwRlFYcFZiM1ZXYTBWS0sxUkZhbkU1VnpCdGQxTkZhM0pxU2tvNVdIWTBiR2RVY25kTlZqSlhkMFZqU1ZaNVFrOXpUVVEyVmpkcE1WWXdTVVkxY0Fwc1JsUkpRV3BGUVcwNWRVRm9lRzlLZFVOblVIUkVSa1ZZVTFOUVkyUjZVVFZrYms5SmFuWlFaWEZEVmxkelkzSlBaM1ZYTkZwdlNXMXpOM1JqYXk5MENqTnBPWEl2YW5KcUNpMHRMUzB0UlU1RUlFTkZVbFJKUmtsRFFWUkZMUzB0TFMwSyJ9fX19",
"integratedTime": 1778835488,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 1546878782,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1444410491\ne3iHZ2LeoeDnzeHDGIiwUY6MzNLhSMtEUpDVmSsOrrU=\n\n— rekor.sigstore.dev wNI9ajBFAiEAp77jDZ1D+/fSP5RickeuSO3imyAxPehutrmcJ9EUD+4CIH9UTEQamCDsb+MGrZf+ALcB2qLEC+pUjW+2gNOOkZvz\n",
"hashes": [
"fb515793b75b17ed7d313bebc25434f179ea16dde767356bcbd372171e108d6e",
"90615107d1dab9de1c8b4d419b76d0cf7410987fd1c306eba5aee3ce9885a6bc",
"fa5c66f5f253426700a73bab9ca4b2dd2818e76743a1f240d2ef4f9559b588d7",
"15500367bad22fd00d0884b4835bf9b3f505ef8889528462d6d3222766a9f496",
"ca76e6399393a206599e712db15f2cd98be566406a333694b30d259d1a3c9d3c",
"510e1fef61e3380cc6ac9a8b052e7ed15e06bc5fa3b738363dac0b94804f5043",
"4857cef51a33a1a162d00e35349e33f18672f0a880341a351b79d39fbdb84298",
"758343ce7ae27c072547efb612b2de5d90f826099fdcbe0b14eb3abcd381236b",
"505e1751ca8f3fe9dd3786a6964bd9bb8f4e0f296322d459de048b804e869b97",
"cc0a4476b579333b6c5d4cf52ba4077c105a313dc88878b2919dd9acc06ff1af",
"9c63f84ef86cd46b5c589b03055486288d514b2e6bd34a4166af28ef6872a83a",
"fdcbcc4cce95adb8e5ac566f54f16f54d310ea2ac6250657afda63e503159996",
"99919d77d2d76500e573ac6b9c6e2390064614c8cdd87ab03b183af1abf470df",
"cfc363eb4f8389ca90d57eb90d05b4c78f4380af42554f8e84fbefa8a33a7bed",
"bdb8e2e4c00430ed5dee20cceeac3eff6a7fe3fc279458f29d14609d695b0abd",
"c2e656ac596aebb05633a4627f4e315c807ec571af16c8e9f206c0d030954a43",
"c90a2afc7bd9b673576364c032e906b025b6fc16d5ab220d93aea7086af283b6",
"3b1ac038ff451773e85be2fcd08524661f12dd69db96b613dfb4bff2c6b0f12b",
"2a027db3369d748301dd7cffbe043e3c777e3846e87dbe53d8a533d933de6da5",
"442f436aa1a190e16bdf430405d6ed065929ba23b1184f45c024d64fbf586068",
"2825fe5e48fd0d413c508b6d900c53aad10311f72e352e8775150f21c9a44d65",
"1caf419f66d28dc8c7751c2aa4794c7686f34efb9db7526ef5e4498472a3c3b1",
"d56b2ed59fdc6c3348570bb823f99729ed202a7f1d3b7cae4c95833883df40ea",
"574eb76ed8497036800f215ee9ce6b122fc5d4cf894e5f494cdbe7038f1fea08",
"8764928670d661d9873f0ac445c478c9d44998078f7ffd3177ea5971a7012426",
"98be0b7db38c291250820e72f6266a6d8e932ea334742a66099438ecdb253849",
"04a07d6583fcb5f67db036d6499a1a82a2ada0f9c1a2f0b682845e73241877d9",
"793f85e3bd60d8725f778dd4e23e0bd4f20192de2b2db1d077fa4e47fae594ed",
"0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
],
"logIndex": 1424974520,
"rootHash": "7b78876762dea1e0e7cde1c31888b0518e8cccd2e148cb445290d5992b0eaeb5",
"treeSize": 1444410491
},
"signedEntryTimestamp": "MEYCIQCcr/+0rU6Qt7E/znXkZ5Dj9GKh6e8ghD7ESEpTWPfgAQIhAOJX6mMv+drT1LDOGmLnvMv40u0cJB0TFvQM65pMpz4Y"
}
}
Loading