James Carnegie
23849c1c2e
fix: use canonical names inside TUF fetcher ( #144 )
...
* fix: use canonical names inside TUF fetcher
* keep hold of reference to Config
2024-08-30 17:03:29 +01:00
James Carnegie
4778d3de6a
fix: tuf oci image parsing ( #142 )
...
* fix: tuf oci image parsing
2024-08-29 12:27:13 -05:00
Jonny Stoten
aed959f858
fix: use a client pointing at Docker's TUF by default ( #104 )
...
`policy.Options` now contains the arguments to `tuf.Client`'s constructor rather than an actual Client. If these arguments are not provided, defaults pointing at Docker's TUF repo will be used. An actual TUF client can be passed in on the context (which is useful for testing). If this is not provided `attest.Verify` will create a TUF client using the options on `policy.Options`.
---------
Co-authored-by: Joel Kamp <joel.kamp@docker.com >
2024-08-23 09:33:30 +01:00
mrjoelkamp
d2a8348ae8
feat: generate vsa policy value from file
2024-08-14 10:57:15 -05:00
James Carnegie
9582e69968
fix: standardize casing of initialisms ( #112 )
...
* fix: standardize casing of initialisms
* fix: rename intoto -> inToto and Intoto to InToto
* fix: fix all linting errors
2024-08-01 15:35:15 +01:00
mrjoelkamp
0330ea4755
feat: add EmbeddedRoot type
2024-07-10 17:30:35 -05:00
mrjoelkamp
1754a98e4e
fix: dont use keyword var
2024-07-10 16:35:48 -05:00
Joel Kamp
a05fc10d53
Update pkg/tuf/tuf_test.go
...
Co-authored-by: David Dooling <141646279+whalelines@users.noreply.github.com >
2024-07-10 16:19:58 -05:00
mrjoelkamp
e830271d01
feat: add test
2024-07-10 14:39:52 -05:00
Jonny Stoten
6397dcede8
Check version of attest against constraints in TUF ( #19 )
...
* Check version of attest against constraints in TUF
* Add link to semver lib constraints docs
2024-05-22 17:02:25 +01:00
mrjoelkamp
eddb277d7e
feat: add tuf download target tests
2024-05-15 16:22:35 -05:00
mrjoelkamp
a3422b5331
feat: add policy, oci, attestation
2024-04-22 12:38:56 -05:00
mrjoelkamp
c1035c951e
feat: combine tuf code
2024-04-15 15:37:31 -05:00