alle opties
trixie  ] [  forky  ] [  sid  ]
[ Bron: sigstore-go  ]

Pakket: sigstore-go (0.7.1-2 en anderen)

Verwijzigingen voor sigstore-go

Screenshot

Debian bronnen:

Het bronpakket sigstore-go downloaden:

Beheerders:

Externe bronnen:

Vergelijkbare pakketten:

Sigstore signing and verification (program)

A client library for Sigstore (https://www.sigstore.dev/), written in Go. Features:

 * Signing and verification of Sigstore bundles
   (https://github.com/sigstore/protobuf-
   specs/blob/main/protos/sigstore_bundle.proto) compliant with Sigstore
   Client Spec
 * Verification of raw Sigstore signatures by creating bundles for them
   (see conformance tests (/cmd/conformance/main.go) for example)
 * Signing and verifying with a Timestamp Authority (TSA)
 * Signing and verifying (offline or online) with Rekor (Artifact
   Transparency Log)
 * Structured verification results including certificate metadata
 * TUF support
 * Verification support for custom trusted root
   (https://github.com/sigstore/protobuf-
   specs/blob/main/protos/sigstore_trustroot.proto)
 * Basic CLI and examples

For an example of how to use this library, see the verification documentation (/docs/verification.md), the CLI cmd/sigstore-go (/cmd/sigstore-go/main.go). Note that the CLI is to demonstrate how to use the library, and not intended as a fully- featured Sigstore CLI like cosign (https://github.com/sigstore/cosign).

Background

Sigstore already has a canonical Go client implementation, cosign (https://github.com/sigstore/cosign), which was developed with a focus on container image signing/verification. It has a rich CLI and a long legacy of features and development. sigstore-go is a more minimal and friendly API for integrating Go code with Sigstore, with a focus on the newly specified data structures in sigstore/protobuf-specs (https://github.com/sigstore/protobuf-specs). sigstore-go attempts to minimize the dependency tree for simple signing and verification tasks, omitting KMS support and container image verification.

This package contains the binaries.

Andere aan sigstore-go gerelateerde pakketten

  • depends
  • recommends
  • suggests
  • enhances

sigstore-go downloaden

Pakket downloaden voor alle beschikbare platforms
Platform Versie Pakketgrootte Geïnstalleerde grootte Bestanden
amd64 0.7.1-2+b4 12.703,7 kB44.093,0 kB [overzicht]
arm64 0.7.1-2+b4 10.858,3 kB41.615,0 kB [overzicht]
armel 0.7.1-2+b4 11.051,0 kB42.078,0 kB [overzicht]
armhf 0.7.1-2+b4 11.039,9 kB41.886,0 kB [overzicht]
i386 0.7.1-2+b4 11.902,9 kB41.965,0 kB [overzicht]
loong64 (unofficial port) 0.7.1-2 11.126,9 kB42.313,0 kB [overzicht]
mips64el 0.7.1-2+b4 9.951,5 kB48.134,0 kB [overzicht]
ppc64el 0.7.1-2+b4 10.720,6 kB43.277,0 kB [overzicht]
riscv64 0.7.1-2+b4 11.233,7 kB41.933,0 kB [overzicht]
s390x 0.7.1-2+b4 11.405,0 kB46.541,0 kB [overzicht]