File tree Expand file tree Collapse file tree 4 files changed +28
-20
lines changed
https%3A%2F%2Ftuf-repo-cdn.sigstage.dev
https%3A%2F%2Ftuf-repo-cdn.sigstore.dev Expand file tree Collapse file tree 4 files changed +28
-20
lines changed Original file line number Diff line number Diff line change @@ -616,13 +616,7 @@ def from_tuf(
616
616
sc_path = updater .get_signing_config_path ()
617
617
inner_sc = trustroot_v1 .SigningConfig .from_json (Path (sc_path ).read_bytes ())
618
618
except TUFError as e :
619
- # TUF repo may not have signing config yet: hard code values for prod:
620
- # https://github.com/sigstore/sigstore-python/issues/1388
621
- if url == DEFAULT_TUF_URL :
622
- embedded = read_embedded ("signing_config.v0.2.json" , url )
623
- inner_sc = trustroot_v1 .SigningConfig .from_json (embedded )
624
- else :
625
- raise e
619
+ raise e
626
620
627
621
return cls (
628
622
trustroot_v1 .ClientTrustConfig (
Original file line number Diff line number Diff line change 6
6
"majorApiVersion" : 1 ,
7
7
"validFor" : {
8
8
"start" : " 2022-04-14T21:38:40Z"
9
- }
9
+ },
10
+ "operator" : " sigstore.dev"
10
11
}
11
12
],
12
13
"oidcUrls" : [
15
16
"majorApiVersion" : 1 ,
16
17
"validFor" : {
17
18
"start" : " 2025-04-16T00:00:00Z"
18
- }
19
+ },
20
+ "operator" : " sigstore.dev"
19
21
}
20
22
],
21
23
"rekorTlogUrls" : [
24
26
"majorApiVersion" : 1 ,
25
27
"validFor" : {
26
28
"start" : " 2021-01-12T11:53:27Z"
27
- }
29
+ },
30
+ "operator" : " sigstore.dev"
28
31
}
29
32
],
30
33
"tsaUrls" : [
33
36
"majorApiVersion" : 1 ,
34
37
"validFor" : {
35
38
"start" : " 2025-04-09T00:00:00Z"
36
- }
39
+ },
40
+ "operator" : " sigstore.dev"
37
41
}
38
42
],
39
43
"rekorTlogConfig" : {
42
46
"tsaConfig" : {
43
47
"selector" : " ANY"
44
48
}
45
- }
49
+ }
Original file line number Diff line number Diff line change 1
1
{
2
- "comment" : " Place holder for use until prod actually has a signing config: see ClientTrustConfig.from_tuf()" ,
3
2
"mediaType" : " application/vnd.dev.sigstore.signingconfig.v0.2+json" ,
4
3
"caUrls" : [
5
4
{
6
5
"url" : " https://fulcio.sigstore.dev" ,
7
6
"majorApiVersion" : 1 ,
8
7
"validFor" : {
9
8
"start" : " 2022-04-13T20:06:15.000Z"
10
- }
9
+ },
10
+ "operator" : " sigstore.dev"
11
11
}
12
12
],
13
13
"oidcUrls" : [
14
14
{
15
15
"url" : " https://oauth2.sigstore.dev/auth" ,
16
16
"majorApiVersion" : 1 ,
17
17
"validFor" : {
18
- "start" : " 2025-04-30T00:00:00Z"
19
- }
18
+ "start" : " 2022-04-13T20:06:15.000Z"
19
+ },
20
+ "operator" : " sigstore.dev"
20
21
}
21
22
],
22
23
"rekorTlogUrls" : [
25
26
"majorApiVersion" : 1 ,
26
27
"validFor" : {
27
28
"start" : " 2021-01-12T11:53:27.000Z"
28
- }
29
+ },
30
+ "operator" : " sigstore.dev"
29
31
}
30
32
],
31
33
"tsaUrls" : [
34
+ {
35
+ "url" : " https://timestamp.sigstore.dev/api/v1/timestamp" ,
36
+ "majorApiVersion" : 1 ,
37
+ "validFor" : {
38
+ "start" : " 2025-07-04T00:00:00Z"
39
+ },
40
+ "operator" : " sigstore.dev"
41
+ }
32
42
],
33
43
"rekorTlogConfig" : {
34
44
"selector" : " ANY"
35
45
},
36
46
"tsaConfig" : {
37
- "selector" : " ALL "
47
+ "selector" : " ANY "
38
48
}
39
- }
49
+ }
Original file line number Diff line number Diff line change @@ -252,7 +252,7 @@ def signer():
252
252
trust_config = ClientTrustConfig .staging ()
253
253
trust_config .signing_config ._tlogs .append (
254
254
Service (
255
- url = "https://log2025-alpha1.rekor.sigstage.dev" , major_api_version = 2
255
+ url = "https://log2025-alpha1.rekor.sigstage.dev" , major_api_version = 2 , operator = "sigstage.dev"
256
256
)
257
257
)
258
258
return SigningContext .from_trust_config (trust_config )
You can’t perform that action at this time.
0 commit comments