Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request from GHSA-8gw7-4j42-w388
* wip Signed-off-by: Asra Ali <asraa@google.com> more tests Signed-off-by: Asra Ali <asraa@google.com> finish tests Signed-off-by: Asra Ali <asraa@google.com> Add explicit testcase for failure in verifytlogentry Signed-off-by: Asra Ali <asraa@google.com> add testing for invalid provided bundle fails Signed-off-by: Asra Ali <asraa@google.com> update Signed-off-by: Asra Ali <asraa@google.com> address hayden comments Signed-off-by: Asra Ali <asraa@google.com> update Signed-off-by: Asra Ali <asraa@google.com> * fix: verify RekorBundle payload references blob Co-authored-by: Cody Soyland <codysoyland@github.com> Co-authored-by: Asra Ali <asraa@google.com> * Add test for invalid blob signature causing error Signed-off-by: Hayden Blauzvern <hblauzvern@google.com> * Add tests for checking identity flags Signed-off-by: Hayden Blauzvern <hblauzvern@google.com> * address bob's comment Signed-off-by: Asra Ali <asraa@google.com> * add comment on intoto multisig Signed-off-by: Asra Ali <asraa@google.com> Signed-off-by: Asra Ali <asraa@google.com> Signed-off-by: Hayden Blauzvern <hblauzvern@google.com> Co-authored-by: Cody Soyland <codysoyland@github.com> Co-authored-by: Hayden Blauzvern <hblauzvern@google.com>
- Loading branch information