Skip to content

docs(debugging): add securityContext and /proc/1/root tips for epheme…

af74e21
Select commit
Loading
Failed to load commit list.
Merged

add securityContext and /proc/1/root tips for ephemeral containers #3334

docs(debugging): add securityContext and /proc/1/root tips for epheme…
af74e21
Select commit
Loading
Failed to load commit list.
Chainguard Enforce / Enforce - Commit Signing succeeded May 18, 2026 in 1s

Successfully verified commit signature.

CLAIM DESCRIPTION
Found Git signature
Validated Git signature
Validated Rekor entry
Allowed by policy

Details

Certificate

Details
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 598018865901601117110484883510221514825304383269 (0x68c017e86196d976a7d5c624c61739bf09d81f25)
    Signature Algorithm: ECDSA-SHA384
        Issuer: O=sigstore.dev,CN=sigstore-intermediate
        Validity
            Not Before: May 17 19:31:05 2026 UTC
            Not After : May 17 19:41:05 2026 UTC
        Subject:         Subject Public Key Info:
            Public Key Algorithm: ECDSA
                Public-Key: (256 bit)
                X:
                    01:c9:18:31:ae:7a:2a:28:e4:87:c3:9a:d0:ea:e5:
                    5f:c8:ec:30:21:48:18:84:5d:3b:e3:f5:fc:1f:fd:
                    5c:06
                Y:
                    9f:e2:f3:7f:1f:1f:ad:49:46:3b:85:db:14:29:db:
                    91:f7:45:c4:94:79:2e:52:4d:22:1c:dd:e2:f3:72:
                    1a:b2
                Curve: P-256
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage:
                Code Signing
            X509v3 Subject Key Identifier:
                8D:C4:B4:68:7E:DC:B5:66:41:72:2C:D0:8A:3E:75:28:53:D9:45:51
            X509v3 Authority Key Identifier:
                keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
            X509v3 Subject Alternative Name: critical
                email:fan.yang@chainguard.dev
            oidcIssuer:
                https://accounts.google.com
            Unknown extension 1.3.6.1.4.1.57264.1.8
            Signed Certificate Timestamp:
                BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnjdrsuEAAAQDAEcwRQIgCXRAJ9wH802Ft8FKlKUuLfW0Jck9XcRbWTTVt6cqSWwCIQC+m+CJFwrK57ijW1e0c7b1dbdo/7S+QMufI59M+SSDQA==

    Signature Algorithm: ECDSA-SHA384
         30:65:02:31:00:ab:4a:9e:ea:72:b8:ee:c8:cc:44:cd:75:01:
         d4:a4:5b:88:0f:8d:9b:62:c5:38:c3:51:81:62:84:f3:9c:d9:
         6f:ad:3a:66:f6:63:a7:a7:34:12:8f:4a:8c:2e:1a:0d:eb:02:
         30:1e:62:c4:80:65:6f:95:c0:64:88:aa:bb:1b:fe:d6:16:da:
         4b:92:06:8e:96:f1:3f:2e:09:64:63:cb:91:13:83:1a:50:87:
         4d:c3:69:c6:a5:00:aa:9f:f6:5c:d6:8c:79

Rekor Entry

Details
{
  "body": "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",
  "integratedTime": 1779046266,
  "logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
  "logIndex": 1563762287,
  "verification": {
    "inclusionProof": {
      "checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1445800868\nDHstUlmh/ZhCOd0oKLQfoS0poJWIW7+kuxuRmS7aRJM=\n\n— rekor.sigstore.dev wNI9ajBFAiBfr0GwTy/LWe+pphUkwBpCXqpWvs8Ybsxn7Sj7W44/xQIhAKJ41oKpNHCy/DKhITrjWde+0TZercfnw5yfYa9S6ree\n",
      "hashes": [
        "a5ed2071d0f2319893e1992e2ecde50cc045855ddb89c0f6d15e1a55a9fbf515",
        "5c5f372e1168a97fcbb61ccd8847adbf2f7832b2ccbc83aeb5fd740af3e26048",
        "46ce4f944d36d59ce2a5a6bb550c54711043d661d495a7216db7a0ac9f9fba53",
        "38c8c52a9114948542b9c98e1b9ac3fc14e7a6fdb6b0a922a09cee9d553af8b8",
        "df36997a1ad435f11014998be52aae45a3d2f9f6d9096765808f5557f51129df",
        "59e50a5d884d19f677afeaca46a2d3d186ff71c49bac932d05eac29da866b5f0",
        "a649ed1c33a091fbf17f2abdf3d435eb9876e24d8ef4d586b91e444199ab789b",
        "b097ccc282545643920d9fa3bfad5bde17c599e11eeafa6453035a0f137d6218",
        "275d2b8cfcb51222c841535c101630e6ea1902f1e08bc2393f641a93df183619",
        "cd3b4e390e53c648ef75f2fdd733d6b385d3983016ecc2a338353f782d316c4e",
        "4e81954c1bf7440966c3938bf873601b42875ccb348dfc11d1f23cae7d3fa514",
        "000d027401305cf85f169c935b4c337e74f874a8251e81ff4b1120c49455135b",
        "03a1310956d1acb55e95a14590703e30573f00f4110a6cfc289fdc8cbf6a1364",
        "8ff874c8645864396155629adb1ba3adca0664cc2d4b19e76e05e8d02a02ef6a",
        "909d92dda2085874ef2eec7569768a91371c8541ca7908519253b6bba2586782",
        "02a4e39485127f18f70176fd7208f39df0edc7bd1600af4cea0a45642aaec55c",
        "fd7bdb517df27bd72581838149cb8114f041169e61be0f177a9c47ba21ef5867",
        "083d2c8591fde65dcfb733736f519b7fcf491451259e0ffca2ec38f43c231e6d",
        "42df6a3feefc5a7a230b11612172ba24f270c260a31ae62ac35e14839584e800",
        "e228e7575adcbcb5dbe5cb706fbfbb0ff260d5c522ec8148b2f374981aa65148",
        "54b84dd2a0a46508aea79cb824c8cd7881c74db60235be55086e7383ceaac8d8",
        "d625635c1c687b39e049362097bc71ed066de936302111f7582ca0be518c54ae",
        "111228198bfb2aeeabd7f9dee3bf766bd76fc19efb5a13fa420561c54f12aac2",
        "de23acdd2106f8e1d01ca38602cbe80f0f2331565b119f77f04851b88cae9f90",
        "80e3ac1d6de81dde564644c9d8bbcc31058264b8c33396223c839ad92b030df5",
        "30bd639bc9b1bd53575d0af5c059aceaf651c50652258b7c620f5f17c5ae6763",
        "04a07d6583fcb5f67db036d6499a1a82a2ada0f9c1a2f0b682845e73241877d9",
        "793f85e3bd60d8725f778dd4e23e0bd4f20192de2b2db1d077fa4e47fae594ed",
        "0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
      ],
      "logIndex": 1441858025,
      "rootHash": "0c7b2d5259a1fd984239dd2828b41fa12d29a095885bbfa4bb1b91992eda4493",
      "treeSize": 1445800868
    },
    "signedEntryTimestamp": "MEUCIQCmCXxFzXuWrl/U3q8sa1FuwaqOZOd9uo9sBpXDgLbKhQIgQz06FwTO4dMneUyGjweqLj+nc0XgpfNT9Hb0dCA+2ag="
  }
}