Diff of the two buildlogs: -- --- b1/build.log 2025-08-22 06:15:54.192319810 +0000 +++ b2/build.log 2025-08-22 06:20:49.436689150 +0000 @@ -1,6 +1,6 @@ I: pbuilder: network access will be disabled during build -I: Current time: Thu Aug 21 18:12:56 -12 2025 -I: pbuilder-time-stamp: 1755843176 +I: Current time: Fri Sep 25 02:38:56 +14 2026 +I: pbuilder-time-stamp: 1790253536 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/forky-reproducible-base.tgz] I: copying local configuration @@ -25,53 +25,85 @@ dpkg-source: info: applying disable-tests-that-download.patch I: Not using root during the build. I: Installing the build-deps -I: user script /srv/workspace/pbuilder/2614804/tmp/hooks/D02_print_environment starting +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/D01_modify_environment starting +debug: Running on codethink03-arm64. +I: Changing host+domainname to test build reproducibility +I: Adding a custom variable just for the fun of it... +I: Changing /bin/sh to bash +'/bin/sh' -> '/bin/bash' +lrwxrwxrwx 1 root root 9 Sep 24 12:39 /bin/sh -> /bin/bash +I: Setting pbuilder2's login shell to /bin/bash +I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/D01_modify_environment finished +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/D02_print_environment starting I: set - BUILDDIR='/build/reproducible-path' - BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' - BUILDUSERNAME='pbuilder1' - BUILD_ARCH='arm64' - DEBIAN_FRONTEND='noninteractive' + BASH=/bin/sh + BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath + BASH_ALIASES=() + BASH_ARGC=() + BASH_ARGV=() + BASH_CMDS=() + BASH_LINENO=([0]="12" [1]="0") + BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:. + BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment") + BASH_VERSINFO=([0]="5" [1]="2" [2]="37" [3]="1" [4]="release" [5]="aarch64-unknown-linux-gnu") + BASH_VERSION='5.2.37(1)-release' + BUILDDIR=/build/reproducible-path + BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other' + BUILDUSERNAME=pbuilder2 + BUILD_ARCH=arm64 + DEBIAN_FRONTEND=noninteractive DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=12 ' - DISTRIBUTION='forky' - HOME='/root' - HOST_ARCH='arm64' + DIRSTACK=() + DISTRIBUTION=forky + EUID=0 + FUNCNAME=([0]="Echo" [1]="main") + GROUPS=() + HOME=/root + HOSTNAME=i-capture-the-hostname + HOSTTYPE=aarch64 + HOST_ARCH=arm64 IFS=' ' - INVOCATION_ID='19739b0f06944677bc0240aa3034f074' - LANG='C' - LANGUAGE='en_US:en' - LC_ALL='C' - MAIL='/var/mail/root' - OPTIND='1' - PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' - PBCURRENTCOMMANDLINEOPERATION='build' - PBUILDER_OPERATION='build' - PBUILDER_PKGDATADIR='/usr/share/pbuilder' - PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' - PBUILDER_SYSCONFDIR='/etc' - PPID='2614804' - PS1='# ' - PS2='> ' + INVOCATION_ID=c39ca4be8cac48549afad9861d493d61 + LANG=C + LANGUAGE=nl_BE:nl + LC_ALL=C + MACHTYPE=aarch64-unknown-linux-gnu + MAIL=/var/mail/root + OPTERR=1 + OPTIND=1 + OSTYPE=linux-gnu + PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path + PBCURRENTCOMMANDLINEOPERATION=build + PBUILDER_OPERATION=build + PBUILDER_PKGDATADIR=/usr/share/pbuilder + PBUILDER_PKGLIBDIR=/usr/lib/pbuilder + PBUILDER_SYSCONFDIR=/etc + PIPESTATUS=([0]="0") + POSIXLY_CORRECT=y + PPID=1664107 PS4='+ ' - PWD='/' - SHELL='/bin/bash' - SHLVL='2' - SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.jo4o81VD/pbuilderrc_MWKX --distribution forky --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/forky-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.jo4o81VD/b1 --logfile b1/build.log golang-github-sigstore-sigstore_1.9.5-1.dsc' - SUDO_GID='109' - SUDO_HOME='/var/lib/jenkins' - SUDO_UID='104' - SUDO_USER='jenkins' - TERM='unknown' - TZ='/usr/share/zoneinfo/Etc/GMT+12' - USER='root' - _='/usr/bin/systemd-run' - http_proxy='http://192.168.101.4:3128' + PWD=/ + SHELL=/bin/bash + SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix + SHLVL=3 + SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.jo4o81VD/pbuilderrc_XA3a --distribution forky --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/forky-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.jo4o81VD/b2 --logfile b2/build.log golang-github-sigstore-sigstore_1.9.5-1.dsc' + SUDO_GID=109 + SUDO_HOME=/var/lib/jenkins + SUDO_UID=104 + SUDO_USER=jenkins + TERM=unknown + TZ=/usr/share/zoneinfo/Etc/GMT-14 + UID=0 + USER=root + _='I: set' + http_proxy=http://192.168.101.4:3128 I: uname -a - Linux codethink04-arm64 6.12.41+deb13-cloud-arm64 #1 SMP Debian 6.12.41-1 (2025-08-12) aarch64 GNU/Linux + Linux i-capture-the-hostname 6.12.41+deb13-cloud-arm64 #1 SMP Debian 6.12.41-1 (2025-08-12) aarch64 GNU/Linux I: ls -l /bin - lrwxrwxrwx 1 root root 7 Aug 10 12:30 /bin -> usr/bin -I: user script /srv/workspace/pbuilder/2614804/tmp/hooks/D02_print_environment finished + lrwxrwxrwx 1 root root 7 Aug 10 2025 /bin -> usr/bin +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy @@ -638,7 +670,7 @@ Get: 477 http://deb.debian.org/debian forky/main arm64 golang-github-theupdateframework-go-tuf-dev all 2.0.2+0.7.0-1 [200 kB] Get: 478 http://deb.debian.org/debian forky/main arm64 golang-github-tink-crypto-tink-go-dev all 2.4.0-1 [2021 kB] Get: 479 http://deb.debian.org/debian forky/main arm64 golang-github-sigstore-sigstore-dev all 1.9.5-1 [112 kB] -Fetched 222 MB in 2s (104 MB/s) +Fetched 222 MB in 3s (76.3 MB/s) Preconfiguring packages ... Selecting previously unselected package golang-golang-x-sys-dev. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 20003 files and directories currently installed.) @@ -2174,8 +2206,8 @@ Setting up tzdata (2025b-5) ... Current default time zone: 'Etc/UTC' -Local time is now: Fri Aug 22 06:13:58 UTC 2025. -Universal Time is now: Fri Aug 22 06:13:58 UTC 2025. +Local time is now: Thu Sep 24 12:41:00 UTC 2026. +Universal Time is now: Thu Sep 24 12:41:00 UTC 2026. Run 'dpkg-reconfigure tzdata' if you wish to change it. Setting up golang-github-coreos-go-semver-dev (0.3.0-1) ... @@ -2575,7 +2607,11 @@ Building tag database... -> Finished parsing the build-deps I: Building the package -I: Running cd /build/reproducible-path/golang-github-sigstore-sigstore-1.9.5/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../golang-github-sigstore-sigstore_1.9.5-1_source.changes +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/A99_set_merged_usr starting +Not re-configuring usrmerge for forky +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/A99_set_merged_usr finished +hostname: Name or service not known +I: Running cd /build/reproducible-path/golang-github-sigstore-sigstore-1.9.5/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S > ../golang-github-sigstore-sigstore_1.9.5-1_source.changes dpkg-buildpackage: info: source package golang-github-sigstore-sigstore dpkg-buildpackage: info: source version 1.9.5-1 dpkg-buildpackage: info: source distribution unstable @@ -2603,41 +2639,45 @@ make[1]: Leaving directory '/build/reproducible-path/golang-github-sigstore-sigstore-1.9.5' dh_auto_build -O--builddirectory=_build -O--buildsystem=golang cd _build && go install -trimpath -v -p 12 github.com/sigstore/sigstore/pkg/cryptoutils github.com/sigstore/sigstore/pkg/fulcioroots github.com/sigstore/sigstore/pkg/oauth github.com/sigstore/sigstore/pkg/oauth/internal github.com/sigstore/sigstore/pkg/oauth/oidc github.com/sigstore/sigstore/pkg/oauthflow github.com/sigstore/sigstore/pkg/signature github.com/sigstore/sigstore/pkg/signature/dsse github.com/sigstore/sigstore/pkg/signature/kms github.com/sigstore/sigstore/pkg/signature/kms/aws github.com/sigstore/sigstore/pkg/signature/kms/cliplugin github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/handler github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/internal/signerverifier github.com/sigstore/sigstore/pkg/signature/kms/fake github.com/sigstore/sigstore/pkg/signature/options github.com/sigstore/sigstore/pkg/signature/payload github.com/sigstore/sigstore/pkg/signature/ssh github.com/sigstore/sigstore/pkg/signature/tink github.com/sigstore/sigstore/pkg/tuf github.com/sigstore/sigstore/test -internal/msan +internal/unsafeheader +internal/coverage/rtcov internal/byteorder -internal/goexperiment internal/godebugs -internal/asan -internal/coverage/rtcov -internal/unsafeheader internal/profilerecord +internal/asan +internal/msan +internal/goarch +internal/goexperiment internal/goos internal/runtime/syscall -internal/goarch +internal/cpu sync/atomic +internal/abi +internal/runtime/math math/bits -unicode unicode/utf8 +unicode +internal/chacha8rand crypto/internal/fips140/alias -cmp +crypto/internal/fips140deps/byteorder internal/itoa -internal/cpu +cmp crypto/internal/fips140/subtle -crypto/internal/fips140deps/byteorder crypto/internal/boring/sig -internal/abi -internal/chacha8rand -internal/runtime/math unicode/utf16 vendor/golang.org/x/crypto/cryptobyte/asn1 -math internal/nettrace encoding golang.org/x/crypto/internal/alias -golang.org/x/crypto/salsa20/salsa google.golang.org/protobuf/internal/flags +math google.golang.org/protobuf/internal/set github.com/theupdateframework/go-tuf/v0/internal/sets +golang.org/x/crypto/salsa20/salsa +internal/runtime/atomic +internal/runtime/sys +internal/bytealg +crypto/internal/fips140deps/cpu log/internal container/list vendor/golang.org/x/crypto/internal/alias @@ -2647,100 +2687,96 @@ github.com/tink-crypto/tink-go/internal/internalapi github.com/tink-crypto/tink-go/key github.com/tink-crypto/tink-go/monitoring -internal/bytealg -internal/runtime/atomic -internal/runtime/sys -crypto/internal/fips140deps/cpu -internal/runtime/exithook internal/stringslite +internal/runtime/exithook internal/race internal/sync internal/runtime/maps runtime -internal/reflectlite -iter sync -weak +iter +internal/reflectlite crypto/subtle +weak slices maps -errors -sort internal/bisect -unique -google.golang.org/protobuf/internal/pragma internal/testlog internal/singleflight -io +google.golang.org/protobuf/internal/pragma +unique +runtime/cgo +errors +sort +internal/godebug internal/oserror strconv path -vendor/golang.org/x/net/dns/dnsmessage -math/rand/v2 -runtime/cgo -syscall -bytes +io hash -internal/godebug +bytes +crypto/internal/fips140deps/godebug strings -crypto/internal/randutil -github.com/aws/smithy-go/transport/http/internal/io container/heap +github.com/aws/smithy-go/transport/http/internal/io +vendor/golang.org/x/net/dns/dnsmessage +math/rand +syscall +math/rand/v2 hash/fnv -hash/crc32 crypto reflect net/netip +hash/crc32 golang.org/x/crypto/blowfish -crypto/internal/fips140deps/godebug +github.com/syndtr/goleveldb/leveldb/comparer +github.com/aws/smithy-go/io +vendor/golang.org/x/text/transform +crypto/internal/randutil crypto/internal/impl -math/rand +net/http/internal/testcert +crypto/internal/fips140 +bufio github.com/theupdateframework/go-tuf/v0/internal/roles regexp/syntax net/http/internal/ascii -net/http/internal/testcert -bufio -vendor/golang.org/x/text/transform -github.com/syndtr/goleveldb/leveldb/comparer -crypto/internal/fips140 -github.com/aws/smithy-go/io github.com/aws/aws-sdk-go-v2/internal/strings crypto/internal/fips140/sha256 crypto/internal/fips140/sha3 crypto/internal/fips140/sha512 crypto/tls/internal/fips140tls -crypto/internal/fips140/hmac crypto/sha3 -crypto/internal/fips140/check +crypto/internal/fips140/hmac crypto/internal/fips140hash -crypto/internal/fips140/aes +crypto/internal/fips140/check crypto/internal/fips140/nistec/fiat crypto/internal/fips140/edwards25519/field crypto/internal/fips140/bigmod -crypto/internal/fips140/hkdf crypto/internal/fips140/tls12 -time +crypto/internal/fips140/hkdf +crypto/internal/fips140/aes +crypto/internal/fips140/tls13 internal/syscall/unix +time internal/syscall/execenv -crypto/internal/fips140/tls13 crypto/internal/fips140/edwards25519 regexp io/fs context github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common github.com/aws/smithy-go/ptr -internal/poll github.com/aws/aws-sdk-go-v2/internal/timeconv +internal/poll +internal/fmtsort +encoding/binary +crypto/internal/fips140/nistec github.com/aws/aws-sdk-go-v2/internal/sdk github.com/aws/smithy-go/context github.com/tink-crypto/tink-go/tink internal/filepathlite embed -crypto/internal/fips140/nistec google.golang.org/protobuf/internal/editiondefaults os -internal/fmtsort -encoding/binary encoding/base64 golang.org/x/crypto/internal/poly1305 golang.org/x/sys/unix @@ -2751,258 +2787,258 @@ encoding/pem crypto/internal/sysrand fmt +net path/filepath -golang.org/x/sys/cpu google.golang.org/protobuf/internal/detrand +golang.org/x/sys/cpu io/ioutil -net internal/sysinfo crypto/internal/entropy crypto/internal/fips140/drbg -crypto/internal/fips140/ed25519 -crypto/internal/fips140/rsa -crypto/internal/fips140/ecdsa +os/exec +golang.org/x/crypto/sha3 +crypto/internal/fips140only crypto/internal/fips140/aes/gcm crypto/internal/fips140/ecdh -crypto/internal/fips140only +crypto/internal/fips140/ed25519 +crypto/internal/fips140/ecdsa +crypto/internal/fips140/rsa crypto/internal/fips140/mlkem -golang.org/x/crypto/sha3 crypto/md5 crypto/rc4 -os/exec -crypto/cipher github.com/skratchdot/open-golang/open -crypto/internal/boring +crypto/cipher crypto/des -golang.org/x/crypto/chacha20 vendor/golang.org/x/crypto/chacha20 -math/big -encoding/hex -net/url -encoding/json -github.com/opencontainers/go-digest -crypto/sha512 +golang.org/x/crypto/chacha20 +crypto/internal/boring crypto/ecdh -crypto/sha1 +crypto/sha512 crypto/aes crypto/sha256 crypto/hmac -google.golang.org/protobuf/internal/errors -go/token -compress/flate +crypto/sha1 +golang.org/x/crypto/ssh/internal/bcrypt_pbkdf golang.org/x/crypto/pbkdf2 +golang.org/x/crypto/hkdf +golang.org/x/crypto/scrypt +vendor/golang.org/x/crypto/chacha20poly1305 +encoding/hex +math/big +net/url +encoding/json +github.com/opencontainers/go-digest +compress/flate +google.golang.org/protobuf/internal/errors google.golang.org/protobuf/internal/version +go/token github.com/theupdateframework/go-tuf/v0/internal/fsutil -google.golang.org/protobuf/encoding/protowire log -golang.org/x/crypto/scrypt -vendor/golang.org/x/crypto/chacha20poly1305 -google.golang.org/protobuf/reflect/protoreflect vendor/golang.org/x/text/unicode/norm -vendor/golang.org/x/text/unicode/bidi +google.golang.org/protobuf/encoding/protowire vendor/golang.org/x/net/http2/hpack mime +google.golang.org/protobuf/reflect/protoreflect +vendor/golang.org/x/text/unicode/bidi mime/quotedprintable net/http/internal github.com/syndtr/goleveldb/leveldb/util github.com/syndtr/goleveldb/leveldb/storage +compress/gzip flag github.com/syndtr/goleveldb/leveldb/cache -compress/gzip -vendor/golang.org/x/text/secure/bidirule github.com/syndtr/goleveldb/leveldb/filter runtime/debug -runtime/trace +golang.org/x/term github.com/syndtr/goleveldb/leveldb/opt +vendor/golang.org/x/text/secure/bidirule +runtime/trace text/template/parse -vendor/golang.org/x/net/idna -gopkg.in/square/go-jose.v2/json -github.com/pkg/browser -database/sql/driver github.com/syndtr/goleveldb/leveldb/errors +gopkg.in/square/go-jose.v2/json github.com/syndtr/goleveldb/leveldb/iterator github.com/syndtr/goleveldb/leveldb/journal +github.com/pkg/browser testing +database/sql/driver +golang.org/x/crypto/curve25519 github.com/go-jose/go-jose/json google.golang.org/protobuf/internal/descfmt google.golang.org/protobuf/internal/descopts google.golang.org/protobuf/internal/strs google.golang.org/protobuf/internal/encoding/messageset google.golang.org/protobuf/internal/genid -google.golang.org/protobuf/internal/order google.golang.org/protobuf/internal/encoding/text -google.golang.org/protobuf/reflect/protoregistry -google.golang.org/protobuf/runtime/protoiface -github.com/syndtr/goleveldb/leveldb/memdb -google.golang.org/protobuf/internal/protolazy -github.com/syndtr/goleveldb/leveldb/table -text/template -golang.org/x/crypto/curve25519 -google.golang.org/protobuf/proto -golang.org/x/crypto/ssh/internal/bcrypt_pbkdf -golang.org/x/term -github.com/aws/aws-sdk-go-v2/internal/sync/singleflight -github.com/secure-systems-lab/go-securesystemslib/cjson -google.golang.org/protobuf/internal/encoding/defval -github.com/aws/smithy-go/internal/sync/singleflight crypto/elliptic crypto/internal/boring/bbig encoding/asn1 crypto/rand crypto/dsa -github.com/theupdateframework/go-tuf/v0/data -github.com/syndtr/goleveldb/leveldb +google.golang.org/protobuf/internal/order +google.golang.org/protobuf/reflect/protoregistry crypto/ed25519 crypto/rsa github.com/secure-systems-lab/go-securesystemslib/encrypted +google.golang.org/protobuf/runtime/protoiface +google.golang.org/protobuf/internal/encoding/defval +github.com/secure-systems-lab/go-securesystemslib/cjson +google.golang.org/protobuf/internal/protolazy crypto/internal/hpke -github.com/theupdateframework/go-tuf/v0/util +vendor/golang.org/x/net/idna +github.com/syndtr/goleveldb/leveldb/memdb +github.com/syndtr/goleveldb/leveldb/table +github.com/theupdateframework/go-tuf/v0/data +text/template +github.com/sigstore/sigstore/pkg/signature/options golang.org/x/crypto/ed25519 +google.golang.org/protobuf/proto +github.com/theupdateframework/go-tuf/v0/util github.com/segmentio/ksuid -google.golang.org/protobuf/internal/filedesc -google.golang.org/protobuf/encoding/prototext +vendor/golang.org/x/crypto/cryptobyte +crypto/x509/pkix github.com/aws/aws-sdk-go-v2/internal/rand +github.com/aws/aws-sdk-go-v2/internal/sync/singleflight +github.com/aws/smithy-go/internal/sync/singleflight +github.com/syndtr/goleveldb/leveldb github.com/aws/smithy-go/logging github.com/aws/smithy-go -github.com/aws/smithy-go/middleware github.com/aws/smithy-go/time -github.com/sigstore/sigstore/pkg/signature/options -github.com/aws/smithy-go/auth github.com/aws/smithy-go/rand -github.com/aws/aws-sdk-go-v2/feature/ec2/imds/internal/config +github.com/aws/smithy-go/middleware +github.com/aws/smithy-go/auth github.com/aws/aws-sdk-go-v2/aws/ratelimit -vendor/golang.org/x/crypto/cryptobyte -crypto/x509/pkix +github.com/aws/aws-sdk-go-v2/feature/ec2/imds/internal/config os/user github.com/aws/aws-sdk-go-v2/aws/protocol/restjson github.com/aws/smithy-go/document github.com/aws/smithy-go/encoding -github.com/sigstore/sigstore/pkg/oauth encoding/xml -github.com/aws/aws-sdk-go-v2/internal/ini -golang.org/x/sync/singleflight +crypto/ecdsa github.com/aws/smithy-go/encoding/json +github.com/aws/aws-sdk-go-v2/internal/ini github.com/aws/aws-sdk-go-v2/service/sso/types +google.golang.org/protobuf/internal/filedesc +google.golang.org/protobuf/encoding/prototext github.com/aws/aws-sdk-go-v2/service/ssooidc/types github.com/aws/aws-sdk-go-v2/service/sts/types github.com/aws/aws-sdk-go-v2/service/kms/types +golang.org/x/sync/singleflight +github.com/tink-crypto/tink-go/subtle/random +github.com/sigstore/sigstore/pkg/oauth github.com/aws/aws-sdk-go-v2/aws/middleware/private/metrics -github.com/jellydator/ttlcache github.com/aws/aws-sdk-go-v2/internal/context -crypto/ecdsa github.com/aws/aws-sdk-go-v2/internal/middleware -github.com/tink-crypto/tink-go/subtle/random -google.golang.org/protobuf/internal/encoding/json +github.com/jellydator/ttlcache github.com/tink-crypto/tink-go/internal/signature/ecdsa +google.golang.org/protobuf/internal/encoding/json github.com/tink-crypto/tink-go/secretdata -golang.org/x/crypto/hkdf github.com/tink-crypto/tink-go/subtle +gopkg.in/square/go-jose.v2/cipher +github.com/go-jose/go-jose/cipher +github.com/tink-crypto/tink-go/signature/subtle +github.com/aws/aws-sdk-go-v2/aws/protocol/xml +github.com/aws/smithy-go/encoding/xml google.golang.org/protobuf/internal/encoding/tag google.golang.org/protobuf/encoding/protojson google.golang.org/protobuf/internal/impl -github.com/aws/smithy-go/encoding/xml -github.com/aws/aws-sdk-go-v2/aws/protocol/xml -gopkg.in/square/go-jose.v2/cipher -github.com/tink-crypto/tink-go/signature/subtle -github.com/go-jose/go-jose/cipher github.com/aws/aws-sdk-go-v2/internal/shareddefaults crypto/x509 +github.com/google/go-containerregistry/pkg/name vendor/golang.org/x/net/http/httpproxy net/textproto -github.com/google/go-containerregistry/pkg/name +github.com/sigstore/sigstore/pkg/signature/payload mime/multipart vendor/golang.org/x/net/http/httpguts -github.com/sigstore/sigstore/pkg/signature/payload -github.com/theupdateframework/go-tuf/v0/pkg/keys github.com/sigstore/sigstore/pkg/cryptoutils +github.com/theupdateframework/go-tuf/v0/pkg/keys crypto/tls gopkg.in/square/go-jose.v2 github.com/go-jose/go-jose github.com/sigstore/sigstore/test golang.org/x/crypto/ssh -google.golang.org/protobuf/internal/filetype -google.golang.org/protobuf/runtime/protoimpl -github.com/theupdateframework/go-tuf/v0/internal/signer github.com/theupdateframework/go-tuf/v0/verify github.com/theupdateframework/go-tuf/v0/sign +github.com/theupdateframework/go-tuf/v0/internal/signer +github.com/theupdateframework/go-tuf/v0/pkg/targets +github.com/theupdateframework/go-tuf/v0 +google.golang.org/protobuf/internal/filetype +google.golang.org/protobuf/runtime/protoimpl google.golang.org/protobuf/types/known/timestamppb github.com/tink-crypto/tink-go/proto/tink_go_proto github.com/tink-crypto/tink-go/proto/common_go_proto github.com/tink-crypto/tink-go/proto/ed25519_go_proto google.golang.org/protobuf/types/descriptorpb -github.com/theupdateframework/go-tuf/v0/pkg/targets github.com/tink-crypto/tink-go/proto/ecdsa_go_proto github.com/tink-crypto/tink-go/core/registry -github.com/theupdateframework/go-tuf/v0 github.com/tink-crypto/tink-go/core/cryptofmt github.com/tink-crypto/tink-go/internal/primitiveset github.com/tink-crypto/tink-go/internal/protoserialization github.com/tink-crypto/tink-go/internal/registryconfig github.com/tink-crypto/tink-go/internal/internalregistry +github.com/secure-systems-lab/go-securesystemslib/dsse github.com/tink-crypto/tink-go/keyset -github.com/tink-crypto/tink-go/signature/ed25519 -github.com/tink-crypto/tink-go/signature/ecdsa google.golang.org/genproto/googleapis/api/annotations -github.com/sigstore/sigstore/pkg/signature/tink +github.com/tink-crypto/tink-go/signature/ecdsa +github.com/tink-crypto/tink-go/signature/ed25519 github.com/sigstore/protobuf-specs/gen/pb-go/common/v1 +github.com/sigstore/sigstore/pkg/signature/tink github.com/sigstore/sigstore/pkg/signature -github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/internal/signerverifier +net/http/httptrace +net/http github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding -github.com/secure-systems-lab/go-securesystemslib/dsse +github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/internal/signerverifier +github.com/sigstore/sigstore/pkg/signature/dsse github.com/sigstore/sigstore/pkg/signature/ssh github.com/sigstore/sigstore/pkg/signature/kms/cliplugin github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/handler -github.com/sigstore/sigstore/pkg/signature/dsse github.com/sigstore/sigstore/pkg/signature/kms github.com/sigstore/sigstore/pkg/signature/kms/fake -net/http/httptrace -net/http net/http/httptest golang.org/x/oauth2/internal +github.com/theupdateframework/go-tuf/v0/client net/http/httputil -github.com/aws/smithy-go/encoding/httpbinding github.com/aws/smithy-go/endpoints -github.com/theupdateframework/go-tuf/v0/client +github.com/aws/smithy-go/encoding/httpbinding golang.org/x/oauth2 -github.com/sigstore/sigstore/pkg/oauth/internal -github.com/coreos/go-oidc/v3/oidc -github.com/aws/smithy-go/transport/http github.com/theupdateframework/go-tuf/v0/client/leveldbstore +github.com/aws/smithy-go/transport/http github.com/sigstore/sigstore/pkg/tuf -github.com/sigstore/sigstore/pkg/oauth/oidc -github.com/sigstore/sigstore/pkg/oauthflow +github.com/sigstore/sigstore/pkg/oauth/internal +github.com/coreos/go-oidc/v3/oidc github.com/aws/smithy-go/auth/bearer -github.com/aws/aws-sdk-go-v2/internal/auth github.com/aws/aws-sdk-go-v2/internal/endpoints/awsrulesfn -github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding github.com/aws/aws-sdk-go-v2/aws/protocol/query +github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding github.com/aws/smithy-go/private/requestcompression +github.com/aws/aws-sdk-go-v2/internal/auth github.com/sigstore/sigstore/pkg/fulcioroots +github.com/sigstore/sigstore/pkg/oauth/oidc +github.com/sigstore/sigstore/pkg/oauthflow github.com/aws/aws-sdk-go-v2/aws github.com/aws/aws-sdk-go-v2/credentials github.com/aws/aws-sdk-go-v2/credentials/processcreds -github.com/aws/aws-sdk-go-v2/aws/signer/internal/v4 github.com/aws/aws-sdk-go-v2/aws/defaults +github.com/aws/aws-sdk-go-v2/aws/signer/internal/v4 github.com/aws/aws-sdk-go-v2/internal/configsources +github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 github.com/aws/aws-sdk-go-v2/internal/endpoints github.com/aws/aws-sdk-go-v2/aws/middleware -github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 +github.com/aws/aws-sdk-go-v2/service/sso/internal/endpoints github.com/aws/aws-sdk-go-v2/service/ssooidc/internal/endpoints github.com/aws/aws-sdk-go-v2/service/sts/internal/endpoints -github.com/aws/aws-sdk-go-v2/service/sso/internal/endpoints github.com/aws/aws-sdk-go-v2/service/kms/internal/endpoints -github.com/aws/aws-sdk-go-v2/aws/retry github.com/aws/aws-sdk-go-v2/aws/transport/http +github.com/aws/aws-sdk-go-v2/aws/retry github.com/aws/aws-sdk-go-v2/aws/signer/v4 -github.com/aws/aws-sdk-go-v2/credentials/endpointcreds/internal/client -github.com/aws/aws-sdk-go-v2/feature/ec2/imds github.com/aws/aws-sdk-go-v2/service/internal/presigned-url github.com/aws/aws-sdk-go-v2/internal/auth/smithy -github.com/aws/aws-sdk-go-v2/credentials/endpointcreds github.com/aws/aws-sdk-go-v2/service/sso +github.com/aws/aws-sdk-go-v2/feature/ec2/imds github.com/aws/aws-sdk-go-v2/service/ssooidc +github.com/aws/aws-sdk-go-v2/credentials/endpointcreds/internal/client github.com/aws/aws-sdk-go-v2/service/sts github.com/aws/aws-sdk-go-v2/service/kms +github.com/aws/aws-sdk-go-v2/credentials/endpointcreds github.com/aws/aws-sdk-go-v2/credentials/ec2rolecreds github.com/aws/aws-sdk-go-v2/credentials/ssocreds github.com/aws/aws-sdk-go-v2/credentials/stscreds @@ -3112,7 +3148,7 @@ === RUN TestRSAPrivateKeyPEMRoundtrip === PAUSE TestRSAPrivateKeyPEMRoundtrip === RUN TestUnmarshalPEMToPrivateKey ---- PASS: TestUnmarshalPEMToPrivateKey (2.03s) +--- PASS: TestUnmarshalPEMToPrivateKey (3.42s) === RUN TestECDSAPublicKeyPEMRoundtrip === PAUSE TestECDSAPublicKeyPEMRoundtrip === RUN TestEd25519PublicKeyPEMRoundtrip @@ -3120,13 +3156,13 @@ === RUN TestRSAPublicKeyPEMRoundtrip === PAUSE TestRSAPublicKeyPEMRoundtrip === RUN TestSKIDRSA ---- PASS: TestSKIDRSA (0.23s) +--- PASS: TestSKIDRSA (0.22s) === RUN TestSKIDECDSA --- PASS: TestSKIDECDSA (0.00s) === RUN TestSKIDED25519 ---- PASS: TestSKIDED25519 (0.00s) +--- PASS: TestSKIDED25519 (0.01s) === RUN TestEqualKeys ---- PASS: TestEqualKeys (2.07s) +--- PASS: TestEqualKeys (0.98s) === RUN TestValidatePubKeyUnsupported --- PASS: TestValidatePubKeyUnsupported (0.00s) === RUN TestValidatePubKeyRsa @@ -3138,7 +3174,7 @@ === RUN TestValidatePubKeyEd25519 --- PASS: TestValidatePubKeyEd25519 (0.00s) === RUN TestUnmarshalPEMToPublicKey ---- PASS: TestUnmarshalPEMToPublicKey (1.67s) +--- PASS: TestUnmarshalPEMToPublicKey (2.37s) === RUN TestMarshalAndUnmarshalOtherNameSAN --- PASS: TestMarshalAndUnmarshalOtherNameSAN (0.00s) === RUN TestUnmarshalOtherNameSANFailures @@ -3153,14 +3189,12 @@ === RUN TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func === PAUSE TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func === CONT TestGeneratePEMEncodedRSAKeyPair/encrypted -=== CONT TestEd25519PublicKeyPEMRoundtrip ---- PASS: TestEd25519PublicKeyPEMRoundtrip (0.00s) +=== CONT TestEd25519PrivateKeyPEMRoundtrip +--- PASS: TestEd25519PrivateKeyPEMRoundtrip (0.00s) === CONT TestRSAPublicKeyPEMRoundtrip === CONT TestECDSAPublicKeyPEMRoundtrip --- PASS: TestECDSAPublicKeyPEMRoundtrip (0.00s) -=== CONT TestRSAPrivateKeyPEMRoundtrip -=== CONT TestECDSAPrivateKeyPEMRoundtrip ---- PASS: TestECDSAPrivateKeyPEMRoundtrip (0.00s) +=== CONT TestEd25519PublicKeyPEMRoundtrip === CONT TestGeneratePEMEncodedECDSAKeyPair === RUN TestGeneratePEMEncodedECDSAKeyPair/encrypted === PAUSE TestGeneratePEMEncodedECDSAKeyPair/encrypted @@ -3169,24 +3203,26 @@ === RUN TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func === PAUSE TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func === CONT TestGeneratePEMEncodedECDSAKeyPair/encrypted -=== CONT TestEd25519PrivateKeyPEMRoundtrip ---- PASS: TestEd25519PrivateKeyPEMRoundtrip (0.00s) +--- PASS: TestEd25519PublicKeyPEMRoundtrip (0.00s) +=== CONT TestRSAPrivateKeyPEMRoundtrip +=== CONT TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func === CONT TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func === CONT TestGeneratePEMEncodedRSAKeyPair/nil_pass_func +=== CONT TestECDSAPrivateKeyPEMRoundtrip === CONT TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func -=== CONT TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func ---- PASS: TestRSAPrivateKeyPEMRoundtrip (0.81s) ---- PASS: TestRSAPublicKeyPEMRoundtrip (1.09s) +--- PASS: TestECDSAPrivateKeyPEMRoundtrip (0.03s) +--- PASS: TestRSAPrivateKeyPEMRoundtrip (1.33s) --- PASS: TestGeneratePEMEncodedECDSAKeyPair (0.00s) - --- PASS: TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func (0.02s) - --- PASS: TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func (0.00s) - --- PASS: TestGeneratePEMEncodedECDSAKeyPair/encrypted (1.33s) + --- PASS: TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func (0.00s) + --- PASS: TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func (0.04s) + --- PASS: TestGeneratePEMEncodedECDSAKeyPair/encrypted (1.47s) +--- PASS: TestRSAPublicKeyPEMRoundtrip (1.86s) --- PASS: TestGeneratePEMEncodedRSAKeyPair (0.00s) - --- PASS: TestGeneratePEMEncodedRSAKeyPair/nil_pass_func (0.48s) - --- PASS: TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func (1.54s) - --- PASS: TestGeneratePEMEncodedRSAKeyPair/encrypted (2.31s) + --- PASS: TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func (1.71s) + --- PASS: TestGeneratePEMEncodedRSAKeyPair/encrypted (2.21s) + --- PASS: TestGeneratePEMEncodedRSAKeyPair/nil_pass_func (2.89s) PASS -ok github.com/sigstore/sigstore/pkg/cryptoutils 8.400s +ok github.com/sigstore/sigstore/pkg/cryptoutils 10.074s ? github.com/sigstore/sigstore/pkg/fulcioroots [no test files] ? github.com/sigstore/sigstore/pkg/oauth [no test files] === RUN TestParseAccessTokenSuccessResponse @@ -3210,14 +3246,14 @@ === RUN FuzzParseAccessTokenSuccess --- PASS: FuzzParseAccessTokenSuccess (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/oauth/internal 0.023s +ok github.com/sigstore/sigstore/pkg/oauth/internal 0.024s ? github.com/sigstore/sigstore/pkg/oauth/oidc [no test files] === RUN TestClientCredentialsFlowTokenGetter_ccFlow client_credentials_test.go:36: got request: /.well-known/openid-configuration client_credentials_test.go:36: got request: /.well-known/openid-configuration client_credentials_test.go:36: got request: /token Token received! ---- PASS: TestClientCredentialsFlowTokenGetter_ccFlow (0.01s) +--- PASS: TestClientCredentialsFlowTokenGetter_ccFlow (0.00s) === RUN TestDeviceFlowTokenGetter_deviceFlow device_test.go:94: got request: /.well-known/openid-configuration device_test.go:94: got request: /.well-known/openid-configuration @@ -3255,19 +3291,19 @@ --- PASS: TestSubjectFromToken/Email_not_verified (0.00s) --- PASS: TestSubjectFromToken/invalid_email_verified_property (0.00s) === RUN TestSubjectFromUnverifiedToken -=== RUN TestSubjectFromUnverifiedToken/Subject_as_subject -=== RUN TestSubjectFromUnverifiedToken/no_email_or_subject -=== RUN TestSubjectFromUnverifiedToken/Email_as_subject === RUN TestSubjectFromUnverifiedToken/String_email_verified_value === RUN TestSubjectFromUnverifiedToken/Email_not_verified === RUN TestSubjectFromUnverifiedToken/invalid_email_verified_property +=== RUN TestSubjectFromUnverifiedToken/Subject_as_subject +=== RUN TestSubjectFromUnverifiedToken/no_email_or_subject +=== RUN TestSubjectFromUnverifiedToken/Email_as_subject --- PASS: TestSubjectFromUnverifiedToken (0.00s) - --- PASS: TestSubjectFromUnverifiedToken/Subject_as_subject (0.00s) - --- PASS: TestSubjectFromUnverifiedToken/no_email_or_subject (0.00s) - --- PASS: TestSubjectFromUnverifiedToken/Email_as_subject (0.00s) --- PASS: TestSubjectFromUnverifiedToken/String_email_verified_value (0.00s) --- PASS: TestSubjectFromUnverifiedToken/Email_not_verified (0.00s) --- PASS: TestSubjectFromUnverifiedToken/invalid_email_verified_property (0.00s) + --- PASS: TestSubjectFromUnverifiedToken/Subject_as_subject (0.00s) + --- PASS: TestSubjectFromUnverifiedToken/no_email_or_subject (0.00s) + --- PASS: TestSubjectFromUnverifiedToken/Email_as_subject (0.00s) === RUN TestInteractiveFlow_IO === RUN TestInteractiveFlow_IO/default === RUN TestInteractiveFlow_IO/buffer @@ -3275,11 +3311,11 @@ --- PASS: TestInteractiveFlow_IO/default (0.00s) --- PASS: TestInteractiveFlow_IO/buffer (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/oauthflow 0.050s +ok github.com/sigstore/sigstore/pkg/oauthflow 0.052s === RUN TestGetAlgorithmDetails --- PASS: TestGetAlgorithmDetails (0.00s) === RUN TestAlgorithmRegistryConfig ---- PASS: TestAlgorithmRegistryConfig (21.07s) +--- PASS: TestAlgorithmRegistryConfig (2.79s) === RUN TestSignatureAlgorithmFlagRoundtrip --- PASS: TestSignatureAlgorithmFlagRoundtrip (0.00s) === RUN TestGetDefaultPublicKeyDetails @@ -3289,17 +3325,17 @@ === RUN TestGetDefaultPublicKeyDetails/ed25519 === RUN TestGetDefaultPublicKeyDetails/ed25519-ph === RUN TestGetDefaultPublicKeyDetails/rsa-2048-pss ---- PASS: TestGetDefaultPublicKeyDetails (2.37s) +--- PASS: TestGetDefaultPublicKeyDetails (1.39s) --- PASS: TestGetDefaultPublicKeyDetails/ecdsa-p256 (0.00s) --- PASS: TestGetDefaultPublicKeyDetails/ecdsa-p384 (0.00s) - --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048 (0.90s) + --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048 (0.82s) --- PASS: TestGetDefaultPublicKeyDetails/ed25519 (0.00s) --- PASS: TestGetDefaultPublicKeyDetails/ed25519-ph (0.00s) - --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048-pss (1.47s) + --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048-pss (0.56s) === RUN TestHashingAlgorithmMatches --- PASS: TestHashingAlgorithmMatches (0.00s) === RUN TestECDSASignerVerifier ---- PASS: TestECDSASignerVerifier (0.01s) +--- PASS: TestECDSASignerVerifier (0.00s) === RUN TestECDSASignerVerifierUnsupportedHash --- PASS: TestECDSASignerVerifierUnsupportedHash (0.00s) === RUN TestECDSALoadVerifierWithoutKey @@ -3310,17 +3346,17 @@ === RUN TestED25519SignerVerifier --- PASS: TestED25519SignerVerifier (0.00s) === RUN TestED25519Verifier ---- PASS: TestED25519Verifier (0.00s) +--- PASS: TestED25519Verifier (0.01s) === RUN TestED25519phSignerVerifier --- PASS: TestED25519phSignerVerifier (0.00s) === RUN TestED25519phVerifier --- PASS: TestED25519phVerifier (0.00s) === RUN TestRSAPKCS1v15SignerVerifier ---- PASS: TestRSAPKCS1v15SignerVerifier (0.06s) +--- PASS: TestRSAPKCS1v15SignerVerifier (0.13s) === RUN TestRSAPKCS1v15SignerVerifierUnsupportedHash --- PASS: TestRSAPKCS1v15SignerVerifierUnsupportedHash (0.00s) === RUN TestRSAPSSSignerVerifier ---- PASS: TestRSAPSSSignerVerifier (0.13s) +--- PASS: TestRSAPSSSignerVerifier (0.24s) === RUN TestRSAPSSSignerVerifierUnsupportedHash --- PASS: TestRSAPSSSignerVerifierUnsupportedHash (0.00s) === RUN TestLoadEd25519Signer @@ -3333,14 +3369,14 @@ === RUN TestLoadDefaultSigner/ecdsa-p256 === RUN TestLoadDefaultSigner/ed25519 === RUN TestLoadDefaultSigner/ed25519-ph ---- PASS: TestLoadDefaultSigner (0.56s) - --- PASS: TestLoadDefaultSigner/rsa-2048 (0.14s) - --- PASS: TestLoadDefaultSigner/rsa-2048-pss (0.41s) +--- PASS: TestLoadDefaultSigner (2.22s) + --- PASS: TestLoadDefaultSigner/rsa-2048 (1.69s) + --- PASS: TestLoadDefaultSigner/rsa-2048-pss (0.53s) --- PASS: TestLoadDefaultSigner/ecdsa-p256 (0.00s) --- PASS: TestLoadDefaultSigner/ed25519 (0.00s) --- PASS: TestLoadDefaultSigner/ed25519-ph (0.00s) === RUN TestLoadRSAPSSSignerVerifier ---- PASS: TestLoadRSAPSSSignerVerifier (0.00s) +--- PASS: TestLoadRSAPSSSignerVerifier (0.01s) === RUN TestConvertED25519ph --- PASS: TestConvertED25519ph (0.00s) === RUN TestLoadDefaultSignerVerifier @@ -3349,36 +3385,36 @@ === RUN TestLoadDefaultSignerVerifier/ecdsa-p256 === RUN TestLoadDefaultSignerVerifier/ed25519 === RUN TestLoadDefaultSignerVerifier/ed25519-ph ---- PASS: TestLoadDefaultSignerVerifier (0.85s) - --- PASS: TestLoadDefaultSignerVerifier/rsa-2048 (0.34s) - --- PASS: TestLoadDefaultSignerVerifier/rsa-2048-pss (0.51s) +--- PASS: TestLoadDefaultSignerVerifier (0.80s) + --- PASS: TestLoadDefaultSignerVerifier/rsa-2048 (0.48s) + --- PASS: TestLoadDefaultSignerVerifier/rsa-2048-pss (0.32s) --- PASS: TestLoadDefaultSignerVerifier/ecdsa-p256 (0.00s) --- PASS: TestLoadDefaultSignerVerifier/ed25519 (0.00s) --- PASS: TestLoadDefaultSignerVerifier/ed25519-ph (0.00s) === RUN TestProviderRoundtrip === RUN TestProviderRoundtrip/ECDSA === RUN TestProviderRoundtrip/RSA ---- PASS: TestProviderRoundtrip (1.17s) +--- PASS: TestProviderRoundtrip (0.39s) --- PASS: TestProviderRoundtrip/ECDSA (0.00s) - --- PASS: TestProviderRoundtrip/RSA (0.01s) + --- PASS: TestProviderRoundtrip/RSA (0.00s) === RUN TestLoadUnsafeVerifier ---- PASS: TestLoadUnsafeVerifier (0.16s) +--- PASS: TestLoadUnsafeVerifier (1.59s) === RUN TestLoadVerifier ---- PASS: TestLoadVerifier (0.45s) +--- PASS: TestLoadVerifier (1.11s) === RUN TestLoadDefaultVerifier === RUN TestLoadDefaultVerifier/rsa-2048 === RUN TestLoadDefaultVerifier/rsa-2048-pss === RUN TestLoadDefaultVerifier/ecdsa-p256 === RUN TestLoadDefaultVerifier/ed25519 === RUN TestLoadDefaultVerifier/ed25519-ph ---- PASS: TestLoadDefaultVerifier (0.73s) - --- PASS: TestLoadDefaultVerifier/rsa-2048 (0.43s) - --- PASS: TestLoadDefaultVerifier/rsa-2048-pss (0.30s) +--- PASS: TestLoadDefaultVerifier (1.38s) + --- PASS: TestLoadDefaultVerifier/rsa-2048 (0.17s) + --- PASS: TestLoadDefaultVerifier/rsa-2048-pss (1.21s) --- PASS: TestLoadDefaultVerifier/ecdsa-p256 (0.00s) --- PASS: TestLoadDefaultVerifier/ed25519 (0.00s) --- PASS: TestLoadDefaultVerifier/ed25519-ph (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature 27.645s +ok github.com/sigstore/sigstore/pkg/signature 12.136s === RUN TestImplementsDSSESigner --- PASS: TestImplementsDSSESigner (0.00s) === RUN TestImplementsDSSEVerifier @@ -3392,7 +3428,7 @@ === RUN TestInvalidSignature --- PASS: TestInvalidSignature (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/dsse 0.041s +ok github.com/sigstore/sigstore/pkg/signature/dsse 0.033s === RUN TestGet === PAUSE TestGet === CONT TestGet @@ -3414,7 +3450,7 @@ --- PASS: TestGet/successful_provider (0.00s) --- PASS: TestGet/registered_provider_error (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms 0.042s +ok github.com/sigstore/sigstore/pkg/signature/kms 0.058s === RUN TestParseReference === RUN TestParseReference/awskms:///1234abcd-12ab-34cd-56ef-1234567890ab === RUN TestParseReference/awskms:///mrk-1234abcd12ab34cd56ef1234567890ab @@ -3448,7 +3484,7 @@ --- PASS: TestParseReference/awskms:///1234abcd-12ab-YYYY-56ef-1234567890ab (0.00s) --- PASS: TestParseReference/awskms://1234abcd-12ab-34cd-56ef-1234567890ab (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/aws 0.040s +ok github.com/sigstore/sigstore/pkg/signature/kms/aws 0.045s === RUN TestInvokePlugin === RUN TestInvokePlugin/success === RUN TestInvokePlugin/success:_expected_stdin @@ -3488,21 +3524,21 @@ === PAUSE TestPluginClient/CryptoSigner === CONT TestPluginClient/DefaultAlgorithm === CONT TestPluginClient/CryptoSigner -=== CONT TestPluginClient/VerifySignature === CONT TestPluginClient/PublicKey +=== CONT TestPluginClient/VerifySignature +=== CONT TestPluginClient/SignMessage === CONT TestPluginClient/CreateKey === CONT TestPluginClient/SupportedAlgorithms -=== CONT TestPluginClient/SignMessage --- PASS: TestPluginClient (0.00s) --- PASS: TestPluginClient/DefaultAlgorithm (0.00s) --- PASS: TestPluginClient/CryptoSigner (0.00s) - --- PASS: TestPluginClient/VerifySignature (0.00s) --- PASS: TestPluginClient/PublicKey (0.00s) + --- PASS: TestPluginClient/SignMessage (0.00s) + --- PASS: TestPluginClient/VerifySignature (0.00s) --- PASS: TestPluginClient/CreateKey (0.00s) --- PASS: TestPluginClient/SupportedAlgorithms (0.00s) - --- PASS: TestPluginClient/SignMessage (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin 0.054s +ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin 0.041s === RUN TestPluginArgsJSON === PAUSE TestPluginArgsJSON === RUN TestPluginRespJSON @@ -3511,18 +3547,6 @@ === PAUSE TestHashFuncJSON === CONT TestPluginArgsJSON === RUN TestPluginArgsJSON/defaultAlgorithm -=== PAUSE TestPluginArgsJSON/defaultAlgorithm -=== RUN TestPluginArgsJSON/supportedAlgorithms -=== PAUSE TestPluginArgsJSON/supportedAlgorithms -=== RUN TestPluginArgsJSON/createKey -=== PAUSE TestPluginArgsJSON/createKey -=== RUN TestPluginArgsJSON/publicKey -=== PAUSE TestPluginArgsJSON/publicKey -=== RUN TestPluginArgsJSON/signMessage -=== PAUSE TestPluginArgsJSON/signMessage -=== RUN TestPluginArgsJSON/verifySignature -=== PAUSE TestPluginArgsJSON/verifySignature -=== CONT TestPluginArgsJSON/defaultAlgorithm === CONT TestHashFuncJSON === RUN TestHashFuncJSON/MD4 === PAUSE TestHashFuncJSON/MD4 @@ -3563,32 +3587,18 @@ === RUN TestHashFuncJSON/BLAKE2b-512 === PAUSE TestHashFuncJSON/BLAKE2b-512 === CONT TestHashFuncJSON/MD4 -=== CONT TestPluginRespJSON -=== RUN TestPluginRespJSON/defaultAlgorithm -=== PAUSE TestPluginRespJSON/defaultAlgorithm -=== RUN TestPluginRespJSON/supportedAlgorithms -=== PAUSE TestPluginRespJSON/supportedAlgorithms -=== RUN TestPluginRespJSON/createKey -=== PAUSE TestPluginRespJSON/createKey -=== RUN TestPluginRespJSON/publicKey -=== PAUSE TestPluginRespJSON/publicKey -=== RUN TestPluginRespJSON/signMessage -=== PAUSE TestPluginRespJSON/signMessage -=== RUN TestPluginRespJSON/verifySignature -=== PAUSE TestPluginRespJSON/verifySignature -=== CONT TestPluginRespJSON/defaultAlgorithm -=== CONT TestPluginArgsJSON/verifySignature -=== CONT TestPluginArgsJSON/signMessage -=== CONT TestPluginArgsJSON/publicKey -=== CONT TestPluginArgsJSON/createKey -=== CONT TestPluginArgsJSON/supportedAlgorithms ---- PASS: TestPluginArgsJSON (0.00s) - --- PASS: TestPluginArgsJSON/defaultAlgorithm (0.00s) - --- PASS: TestPluginArgsJSON/verifySignature (0.00s) - --- PASS: TestPluginArgsJSON/signMessage (0.00s) - --- PASS: TestPluginArgsJSON/publicKey (0.00s) - --- PASS: TestPluginArgsJSON/createKey (0.00s) - --- PASS: TestPluginArgsJSON/supportedAlgorithms (0.00s) +=== PAUSE TestPluginArgsJSON/defaultAlgorithm +=== RUN TestPluginArgsJSON/supportedAlgorithms +=== PAUSE TestPluginArgsJSON/supportedAlgorithms +=== RUN TestPluginArgsJSON/createKey +=== PAUSE TestPluginArgsJSON/createKey +=== RUN TestPluginArgsJSON/publicKey +=== PAUSE TestPluginArgsJSON/publicKey +=== RUN TestPluginArgsJSON/signMessage +=== PAUSE TestPluginArgsJSON/signMessage +=== RUN TestPluginArgsJSON/verifySignature +=== PAUSE TestPluginArgsJSON/verifySignature +=== CONT TestPluginArgsJSON/defaultAlgorithm === CONT TestHashFuncJSON/BLAKE2b-512 === CONT TestHashFuncJSON/BLAKE2b-384 === CONT TestHashFuncJSON/BLAKE2b-256 @@ -3627,6 +3637,32 @@ --- PASS: TestHashFuncJSON/SHA-224 (0.00s) --- PASS: TestHashFuncJSON/SHA-1 (0.00s) --- PASS: TestHashFuncJSON/MD5 (0.00s) +=== CONT TestPluginRespJSON +=== RUN TestPluginRespJSON/defaultAlgorithm +=== PAUSE TestPluginRespJSON/defaultAlgorithm +=== RUN TestPluginRespJSON/supportedAlgorithms +=== PAUSE TestPluginRespJSON/supportedAlgorithms +=== RUN TestPluginRespJSON/createKey +=== PAUSE TestPluginRespJSON/createKey +=== RUN TestPluginRespJSON/publicKey +=== PAUSE TestPluginRespJSON/publicKey +=== RUN TestPluginRespJSON/signMessage +=== PAUSE TestPluginRespJSON/signMessage +=== RUN TestPluginRespJSON/verifySignature +=== PAUSE TestPluginRespJSON/verifySignature +=== CONT TestPluginRespJSON/defaultAlgorithm +=== CONT TestPluginArgsJSON/verifySignature +=== CONT TestPluginArgsJSON/signMessage +=== CONT TestPluginArgsJSON/publicKey +=== CONT TestPluginArgsJSON/createKey +=== CONT TestPluginArgsJSON/supportedAlgorithms +--- PASS: TestPluginArgsJSON (0.00s) + --- PASS: TestPluginArgsJSON/defaultAlgorithm (0.00s) + --- PASS: TestPluginArgsJSON/verifySignature (0.00s) + --- PASS: TestPluginArgsJSON/signMessage (0.00s) + --- PASS: TestPluginArgsJSON/publicKey (0.00s) + --- PASS: TestPluginArgsJSON/createKey (0.00s) + --- PASS: TestPluginArgsJSON/supportedAlgorithms (0.00s) === CONT TestPluginRespJSON/verifySignature === CONT TestPluginRespJSON/signMessage === CONT TestPluginRespJSON/publicKey @@ -3640,7 +3676,7 @@ --- PASS: TestPluginRespJSON/createKey (0.00s) --- PASS: TestPluginRespJSON/supportedAlgorithms (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common 0.024s +ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common 0.020s === RUN TestPackRPCOptions === PAUSE TestPackRPCOptions === RUN TestUnpackRPCOptions @@ -3662,27 +3698,27 @@ === RUN TestUnpackVerifyOptions === PAUSE TestUnpackVerifyOptions === CONT TestPackRPCOptions ---- PASS: TestPackRPCOptions (0.00s) -=== CONT TestUnpackVerifyOptions ---- PASS: TestUnpackVerifyOptions (0.00s) -=== CONT TestPackVerifyOptions ---- PASS: TestPackVerifyOptions (0.00s) -=== CONT TestUnpackSignOptions ---- PASS: TestUnpackSignOptions (0.00s) -=== CONT TestPackSignOptions ---- PASS: TestPackSignOptions (0.00s) === CONT TestUnpackPublicKeyOptions ---- PASS: TestUnpackPublicKeyOptions (0.00s) -=== CONT TestPackPublicKeyOptions ---- PASS: TestPackPublicKeyOptions (0.00s) +=== CONT TestPackVerifyOptions +=== CONT TestUnpackVerifyOptions === CONT TestUnpackMessageOptions ---- PASS: TestUnpackMessageOptions (0.00s) +=== CONT TestPackPublicKeyOptions +=== CONT TestUnpackSignOptions === CONT TestPackMessageOptions --- PASS: TestPackMessageOptions (0.00s) === CONT TestUnpackRPCOptions +--- PASS: TestUnpackMessageOptions (0.00s) +=== CONT TestPackSignOptions +--- PASS: TestUnpackSignOptions (0.00s) +--- PASS: TestUnpackPublicKeyOptions (0.00s) +--- PASS: TestPackRPCOptions (0.00s) +--- PASS: TestPackVerifyOptions (0.00s) +--- PASS: TestUnpackVerifyOptions (0.00s) --- PASS: TestUnpackRPCOptions (0.00s) +--- PASS: TestPackPublicKeyOptions (0.00s) +--- PASS: TestPackSignOptions (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding 0.032s +ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding 0.054s ? github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/handler [no test files] ? github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/internal/signerverifier [no test files] === RUN TestFakeSigner @@ -3697,6 +3733,7 @@ === RUN TestUnmarshalCosign === PAUSE TestUnmarshalCosign === CONT TestMarshalCosign +=== CONT TestUnmarshalCosign === RUN TestMarshalCosign/no_claims === PAUSE TestMarshalCosign/no_claims === RUN TestMarshalCosign/standard_atomic_signature @@ -3706,7 +3743,6 @@ === RUN TestMarshalCosign/custom_identity === PAUSE TestMarshalCosign/custom_identity === CONT TestMarshalCosign/no_claims -=== CONT TestUnmarshalCosign === RUN TestUnmarshalCosign/no_claims === PAUSE TestUnmarshalCosign/no_claims === RUN TestUnmarshalCosign/arbitrary_claims @@ -3715,21 +3751,21 @@ === PAUSE TestUnmarshalCosign/unknown_type === CONT TestUnmarshalCosign/no_claims === CONT TestMarshalCosign/custom_identity +=== CONT TestUnmarshalCosign/unknown_type === CONT TestMarshalCosign/arbitrary_claims +=== CONT TestUnmarshalCosign/arbitrary_claims === CONT TestMarshalCosign/standard_atomic_signature --- PASS: TestMarshalCosign (0.00s) --- PASS: TestMarshalCosign/no_claims (0.00s) --- PASS: TestMarshalCosign/custom_identity (0.00s) --- PASS: TestMarshalCosign/arbitrary_claims (0.00s) --- PASS: TestMarshalCosign/standard_atomic_signature (0.00s) -=== CONT TestUnmarshalCosign/unknown_type -=== CONT TestUnmarshalCosign/arbitrary_claims --- PASS: TestUnmarshalCosign (0.00s) --- PASS: TestUnmarshalCosign/no_claims (0.00s) --- PASS: TestUnmarshalCosign/unknown_type (0.00s) --- PASS: TestUnmarshalCosign/arbitrary_claims (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/payload 0.021s +ok github.com/sigstore/sigstore/pkg/signature/payload 0.060s === RUN TestFromOpenSSH sign_test.go:154: skip TestFromOpenSSH: missing ssh-keygen in PATH --- SKIP: TestFromOpenSSH (0.00s) @@ -3739,25 +3775,25 @@ === RUN TestRoundTrip === RUN TestRoundTrip/rsa === RUN TestRoundTrip/ed25519 ---- PASS: TestRoundTrip (0.11s) - --- PASS: TestRoundTrip/rsa (0.05s) +--- PASS: TestRoundTrip (0.19s) + --- PASS: TestRoundTrip/rsa (0.10s) --- PASS: TestRoundTrip/ed25519 (0.01s) PASS -ok github.com/sigstore/sigstore/pkg/signature/ssh 0.143s +ok github.com/sigstore/sigstore/pkg/signature/ssh 0.246s === RUN TestKeyHandleToSignerECDSA === RUN TestKeyHandleToSignerECDSA/ECDSA-P256-SHA256 === RUN TestKeyHandleToSignerECDSA/ECDSA-P384-SHA512 === RUN TestKeyHandleToSignerECDSA/ECDSA-P521-SHA512 ---- PASS: TestKeyHandleToSignerECDSA (0.07s) +--- PASS: TestKeyHandleToSignerECDSA (0.11s) --- PASS: TestKeyHandleToSignerECDSA/ECDSA-P256-SHA256 (0.00s) - --- PASS: TestKeyHandleToSignerECDSA/ECDSA-P384-SHA512 (0.02s) - --- PASS: TestKeyHandleToSignerECDSA/ECDSA-P521-SHA512 (0.05s) + --- PASS: TestKeyHandleToSignerECDSA/ECDSA-P384-SHA512 (0.03s) + --- PASS: TestKeyHandleToSignerECDSA/ECDSA-P521-SHA512 (0.07s) === RUN TestKeyHandleToSignerED25519 ---- PASS: TestKeyHandleToSignerED25519 (0.02s) +--- PASS: TestKeyHandleToSignerED25519 (0.03s) === RUN TestKeyHandleToSignerFailsWithInvalidKeyType ---- PASS: TestKeyHandleToSignerFailsWithInvalidKeyType (2.54s) +--- PASS: TestKeyHandleToSignerFailsWithInvalidKeyType (17.75s) PASS -ok github.com/sigstore/sigstore/pkg/signature/tink 2.657s +ok github.com/sigstore/sigstore/pkg/signature/tink 17.916s === RUN TestMarshalStatusType --- PASS: TestMarshalStatusType (0.00s) === RUN TestMarshalInvalidStatusType @@ -3779,9 +3815,9 @@ === RUN TestUnmarshalInvalidUsageType --- PASS: TestUnmarshalInvalidUsageType (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/tuf 0.041s +ok github.com/sigstore/sigstore/pkg/tuf 0.034s ? github.com/sigstore/sigstore/test [no test files] - rm -fr -- /tmp/dh-xdg-rundir-IYOw13OB + rm -fr -- /tmp/dh-xdg-rundir-pdYCcHIJ rm -rf /build/reproducible-path/golang-github-sigstore-sigstore-1.9.5/debian/tmp-home make[1]: Leaving directory '/build/reproducible-path/golang-github-sigstore-sigstore-1.9.5' create-stamp debian/debhelper-build-stamp @@ -3811,12 +3847,14 @@ dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: including full source code in upload I: copying local configuration +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/B01_cleanup starting +I: user script /srv/workspace/pbuilder/1664107/tmp/hooks/B01_cleanup finished I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env -I: removing directory /srv/workspace/pbuilder/2614804 and its subdirectories -I: Current time: Thu Aug 21 18:15:53 -12 2025 -I: pbuilder-time-stamp: 1755843353 +I: removing directory /srv/workspace/pbuilder/1664107 and its subdirectories +I: Current time: Fri Sep 25 02:43:48 +14 2026 +I: pbuilder-time-stamp: 1790253828