Diff of the two buildlogs: -- --- b1/build.log 2025-07-01 23:26:48.811539558 +0000 +++ b2/build.log 2025-07-01 23:29:22.812574003 +0000 @@ -1,6 +1,6 @@ I: pbuilder: network access will be disabled during build -I: Current time: Mon Aug 3 17:46:46 -12 2026 -I: pbuilder-time-stamp: 1785822406 +I: Current time: Wed Jul 2 13:26:52 +14 2025 +I: pbuilder-time-stamp: 1751412412 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/trixie-reproducible-base.tgz] I: copying local configuration @@ -25,52 +25,84 @@ dpkg-source: info: applying disable-tests-that-download.patch I: Not using root during the build. I: Installing the build-deps -I: user script /srv/workspace/pbuilder/2739388/tmp/hooks/D02_print_environment starting +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/D01_modify_environment starting +debug: Running on codethink04-arm64. +I: Changing host+domainname to test build reproducibility +I: Adding a custom variable just for the fun of it... +I: Changing /bin/sh to bash +'/bin/sh' -> '/bin/bash' +lrwxrwxrwx 1 root root 9 Jul 1 23:27 /bin/sh -> /bin/bash +I: Setting pbuilder2's login shell to /bin/bash +I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/D01_modify_environment finished +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/D02_print_environment starting I: set - BUILDDIR='/build/reproducible-path' - BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' - BUILDUSERNAME='pbuilder1' - BUILD_ARCH='arm64' - DEBIAN_FRONTEND='noninteractive' + BASH=/bin/sh + BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath + BASH_ALIASES=() + BASH_ARGC=() + BASH_ARGV=() + BASH_CMDS=() + BASH_LINENO=([0]="12" [1]="0") + BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:. + BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment") + BASH_VERSINFO=([0]="5" [1]="2" [2]="37" [3]="1" [4]="release" [5]="aarch64-unknown-linux-gnu") + BASH_VERSION='5.2.37(1)-release' + BUILDDIR=/build/reproducible-path + BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other' + BUILDUSERNAME=pbuilder2 + BUILD_ARCH=arm64 + DEBIAN_FRONTEND=noninteractive DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=12 ' - DISTRIBUTION='trixie' - HOME='/root' - HOST_ARCH='arm64' + DIRSTACK=() + DISTRIBUTION=trixie + EUID=0 + FUNCNAME=([0]="Echo" [1]="main") + GROUPS=() + HOME=/root + HOSTNAME=i-capture-the-hostname + HOSTTYPE=aarch64 + HOST_ARCH=arm64 IFS=' ' - INVOCATION_ID='d67218edeb8c4cbea435f37f9358ce5f' - LANG='C' - LANGUAGE='en_US:en' - LC_ALL='C' - MAIL='/var/mail/root' - OPTIND='1' - PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' - PBCURRENTCOMMANDLINEOPERATION='build' - PBUILDER_OPERATION='build' - PBUILDER_PKGDATADIR='/usr/share/pbuilder' - PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' - PBUILDER_SYSCONFDIR='/etc' - PPID='2739388' - PS1='# ' - PS2='> ' + INVOCATION_ID=ab1d96a673b443449deac641ef7ca78f + LANG=C + LANGUAGE=nl_BE:nl + LC_ALL=C + MACHTYPE=aarch64-unknown-linux-gnu + MAIL=/var/mail/root + OPTERR=1 + OPTIND=1 + OSTYPE=linux-gnu + PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path + PBCURRENTCOMMANDLINEOPERATION=build + PBUILDER_OPERATION=build + PBUILDER_PKGDATADIR=/usr/share/pbuilder + PBUILDER_PKGLIBDIR=/usr/lib/pbuilder + PBUILDER_SYSCONFDIR=/etc + PIPESTATUS=([0]="0") + POSIXLY_CORRECT=y + PPID=549391 PS4='+ ' - PWD='/' - SHELL='/bin/bash' - SHLVL='2' - SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.sPbObWtV/pbuilderrc_hQxn --distribution trixie --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/trixie-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.sPbObWtV/b1 --logfile b1/build.log golang-github-sigstore-sigstore_1.9.3-2.dsc' - SUDO_GID='109' - SUDO_UID='104' - SUDO_USER='jenkins' - TERM='unknown' - TZ='/usr/share/zoneinfo/Etc/GMT+12' - USER='root' - _='/usr/bin/systemd-run' - http_proxy='http://192.168.101.4:3128' + PWD=/ + SHELL=/bin/bash + SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix + SHLVL=3 + SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.sPbObWtV/pbuilderrc_YwOL --distribution trixie --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/trixie-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.sPbObWtV/b2 --logfile b2/build.log golang-github-sigstore-sigstore_1.9.3-2.dsc' + SUDO_GID=109 + SUDO_UID=104 + SUDO_USER=jenkins + TERM=unknown + TZ=/usr/share/zoneinfo/Etc/GMT-14 + UID=0 + USER=root + _='I: set' + http_proxy=http://192.168.101.4:3128 I: uname -a - Linux codethink03-arm64 6.1.0-37-cloud-arm64 #1 SMP Debian 6.1.140-1 (2025-05-22) aarch64 GNU/Linux + Linux i-capture-the-hostname 6.1.0-37-cloud-arm64 #1 SMP Debian 6.1.140-1 (2025-05-22) aarch64 GNU/Linux I: ls -l /bin - lrwxrwxrwx 1 root root 7 May 12 2025 /bin -> usr/bin -I: user script /srv/workspace/pbuilder/2739388/tmp/hooks/D02_print_environment finished + lrwxrwxrwx 1 root root 7 May 12 19:25 /bin -> usr/bin +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy @@ -633,7 +665,7 @@ Get: 473 http://deb.debian.org/debian trixie/main arm64 golang-github-theupdateframework-go-tuf-dev all 2.0.2+0.7.0-1 [200 kB] Get: 474 http://deb.debian.org/debian trixie/main arm64 golang-github-tink-crypto-tink-go-dev all 2.4.0-1 [2021 kB] Get: 475 http://deb.debian.org/debian trixie/main arm64 golang-github-sigstore-sigstore-dev all 1.9.3-2 [112 kB] -Fetched 223 MB in 1s (158 MB/s) +Fetched 223 MB in 1s (250 MB/s) Preconfiguring packages ... Selecting previously unselected package golang-golang-x-sys-dev. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 19964 files and directories currently installed.) @@ -2156,8 +2188,8 @@ Setting up tzdata (2025b-3) ... Current default time zone: 'Etc/UTC' -Local time is now: Tue Aug 4 05:48:25 UTC 2026. -Universal Time is now: Tue Aug 4 05:48:25 UTC 2026. +Local time is now: Tue Jul 1 23:27:59 UTC 2025. +Universal Time is now: Tue Jul 1 23:27:59 UTC 2025. Run 'dpkg-reconfigure tzdata' if you wish to change it. Setting up golang-github-coreos-go-semver-dev (0.3.0-1) ... @@ -2554,7 +2586,11 @@ Building tag database... -> Finished parsing the build-deps I: Building the package -I: Running cd /build/reproducible-path/golang-github-sigstore-sigstore-1.9.3/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../golang-github-sigstore-sigstore_1.9.3-2_source.changes +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/A99_set_merged_usr starting +Not re-configuring usrmerge for trixie +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/A99_set_merged_usr finished +hostname: Name or service not known +I: Running cd /build/reproducible-path/golang-github-sigstore-sigstore-1.9.3/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S > ../golang-github-sigstore-sigstore_1.9.3-2_source.changes dpkg-buildpackage: info: source package golang-github-sigstore-sigstore dpkg-buildpackage: info: source version 1.9.3-2 dpkg-buildpackage: info: source distribution unstable @@ -2582,57 +2618,57 @@ make[1]: Leaving directory '/build/reproducible-path/golang-github-sigstore-sigstore-1.9.3' dh_auto_build -O--builddirectory=_build -O--buildsystem=golang cd _build && go install -trimpath -v -p 12 github.com/sigstore/sigstore/pkg/cryptoutils github.com/sigstore/sigstore/pkg/fulcioroots github.com/sigstore/sigstore/pkg/oauth github.com/sigstore/sigstore/pkg/oauth/internal github.com/sigstore/sigstore/pkg/oauth/oidc github.com/sigstore/sigstore/pkg/oauthflow github.com/sigstore/sigstore/pkg/signature github.com/sigstore/sigstore/pkg/signature/dsse github.com/sigstore/sigstore/pkg/signature/kms github.com/sigstore/sigstore/pkg/signature/kms/aws github.com/sigstore/sigstore/pkg/signature/kms/cliplugin github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/handler github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/internal/signerverifier github.com/sigstore/sigstore/pkg/signature/kms/fake github.com/sigstore/sigstore/pkg/signature/options github.com/sigstore/sigstore/pkg/signature/payload github.com/sigstore/sigstore/pkg/signature/ssh github.com/sigstore/sigstore/pkg/signature/tink github.com/sigstore/sigstore/pkg/tuf github.com/sigstore/sigstore/test -internal/goos -internal/goexperiment -internal/asan -internal/goarch -internal/godebugs internal/unsafeheader -internal/msan -internal/byteorder -internal/profilerecord -internal/cpu internal/coverage/rtcov -internal/runtime/syscall -sync/atomic +internal/godebugs +internal/goarch +internal/asan +internal/goexperiment +internal/byteorder +internal/msan +internal/goos math/bits -crypto/internal/fips140/alias +internal/profilerecord unicode -unicode/utf8 -internal/abi internal/runtime/math +internal/abi +unicode/utf8 +internal/chacha8rand +sync/atomic +internal/runtime/syscall +crypto/internal/fips140/alias +internal/cpu +crypto/internal/fips140deps/byteorder internal/itoa cmp crypto/internal/fips140/subtle -internal/chacha8rand -crypto/internal/fips140deps/byteorder crypto/internal/boring/sig -math unicode/utf16 vendor/golang.org/x/crypto/cryptobyte/asn1 +math internal/nettrace encoding golang.org/x/crypto/internal/alias golang.org/x/crypto/salsa20/salsa -internal/bytealg -internal/runtime/atomic -internal/runtime/sys -crypto/internal/fips140deps/cpu google.golang.org/protobuf/internal/flags google.golang.org/protobuf/internal/set github.com/theupdateframework/go-tuf/v0/internal/sets log/internal container/list vendor/golang.org/x/crypto/internal/alias +internal/runtime/atomic +internal/runtime/sys +crypto/internal/fips140deps/cpu github.com/aws/aws-sdk-go-v2/internal/sdkio +internal/bytealg github.com/tink-crypto/tink-go/internal github.com/tink-crypto/tink-go/internal/internalapi github.com/tink-crypto/tink-go/key +internal/race internal/runtime/exithook +internal/runtime/maps internal/stringslite -internal/race internal/sync -internal/runtime/maps runtime internal/reflectlite sync @@ -2641,85 +2677,86 @@ weak slices maps +errors +sort internal/bisect -google.golang.org/protobuf/internal/pragma internal/testlog internal/singleflight unique -errors -sort +google.golang.org/protobuf/internal/pragma io -strconv -runtime/cgo -path -vendor/golang.org/x/net/dns/dnsmessage internal/oserror -internal/godebug math/rand/v2 +strconv +vendor/golang.org/x/net/dns/dnsmessage +path +runtime/cgo syscall +internal/godebug container/heap -hash bytes +hash crypto crypto/internal/fips140deps/godebug -github.com/aws/smithy-go/transport/http/internal/io strings crypto/internal/randutil -vendor/golang.org/x/text/transform -hash/fnv +github.com/aws/smithy-go/transport/http/internal/io reflect math/rand net/netip -hash/crc32 -github.com/syndtr/goleveldb/leveldb/comparer -golang.org/x/crypto/blowfish -github.com/aws/smithy-go/io -internal/syscall/unix -time -internal/syscall/execenv +hash/fnv crypto/internal/fips140 crypto/internal/impl regexp/syntax bufio +github.com/theupdateframework/go-tuf/v0/internal/roles +vendor/golang.org/x/text/transform net/http/internal/ascii +hash/crc32 +github.com/syndtr/goleveldb/leveldb/comparer net/http/internal/testcert -github.com/aws/aws-sdk-go-v2/internal/strings -github.com/theupdateframework/go-tuf/v0/internal/roles +golang.org/x/crypto/blowfish crypto/internal/fips140/sha256 +crypto/internal/fips140/sha3 crypto/internal/fips140/sha512 crypto/tls/internal/fips140tls -crypto/internal/fips140/sha3 +github.com/aws/smithy-go/io +internal/syscall/unix +time +internal/syscall/execenv +github.com/aws/aws-sdk-go-v2/internal/strings crypto/sha3 crypto/internal/fips140hash crypto/internal/fips140/hmac +regexp crypto/internal/fips140/check crypto/internal/fips140/aes crypto/internal/fips140/nistec/fiat crypto/internal/fips140/edwards25519/field -regexp crypto/internal/fips140/bigmod crypto/internal/fips140/hkdf crypto/internal/fips140/tls12 crypto/internal/fips140/tls13 crypto/internal/fips140/edwards25519 -io/fs +internal/poll context +io/fs github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common -github.com/aws/smithy-go/ptr github.com/aws/aws-sdk-go-v2/internal/timeconv -internal/poll +github.com/aws/smithy-go/ptr +internal/filepathlite +embed github.com/aws/aws-sdk-go-v2/internal/sdk github.com/aws/smithy-go/context github.com/tink-crypto/tink-go/tink -internal/filepathlite -embed google.golang.org/protobuf/internal/editiondefaults os -crypto/internal/fips140/nistec internal/fmtsort encoding/binary +crypto/internal/fips140/nistec encoding/base64 golang.org/x/crypto/internal/poly1305 +golang.org/x/sys/unix vendor/golang.org/x/crypto/internal/poly1305 github.com/golang/snappy github.com/tink-crypto/tink-go/internal/outputprefix @@ -2729,213 +2766,212 @@ fmt path/filepath google.golang.org/protobuf/internal/detrand -io/ioutil golang.org/x/sys/cpu +io/ioutil internal/sysinfo -golang.org/x/sys/unix crypto/internal/entropy crypto/internal/fips140/drbg -os/exec crypto/internal/fips140/aes/gcm crypto/internal/fips140only -crypto/internal/fips140/ecdh -crypto/internal/fips140/ecdsa crypto/internal/fips140/ed25519 crypto/internal/fips140/rsa crypto/internal/fips140/mlkem golang.org/x/crypto/sha3 +os/exec +crypto/internal/fips140/ecdh +crypto/internal/fips140/ecdsa +crypto/md5 net crypto/rc4 -crypto/md5 +crypto/cipher github.com/skratchdot/open-golang/open math/big encoding/hex -net/url -encoding/json github.com/opencontainers/go-digest +encoding/json +net/url google.golang.org/protobuf/internal/errors go/token compress/flate -crypto/cipher -google.golang.org/protobuf/encoding/protowire google.golang.org/protobuf/internal/version +google.golang.org/protobuf/encoding/protowire github.com/theupdateframework/go-tuf/v0/internal/fsutil log vendor/golang.org/x/text/unicode/norm vendor/golang.org/x/net/http2/hpack -google.golang.org/protobuf/reflect/protoreflect -mime crypto/internal/boring +crypto/des +google.golang.org/protobuf/reflect/protoreflect crypto/ecdh crypto/sha512 crypto/sha1 crypto/aes -crypto/des crypto/sha256 crypto/hmac -compress/gzip vendor/golang.org/x/crypto/chacha20 +compress/gzip vendor/golang.org/x/text/unicode/bidi -mime/quotedprintable +mime golang.org/x/crypto/pbkdf2 -golang.org/x/crypto/scrypt +mime/quotedprintable net/http/internal +golang.org/x/crypto/scrypt github.com/syndtr/goleveldb/leveldb/util github.com/syndtr/goleveldb/leveldb/storage -vendor/golang.org/x/crypto/chacha20poly1305 flag +vendor/golang.org/x/crypto/chacha20poly1305 github.com/syndtr/goleveldb/leveldb/cache github.com/syndtr/goleveldb/leveldb/filter -runtime/debug -github.com/syndtr/goleveldb/leveldb/opt google.golang.org/protobuf/internal/descfmt google.golang.org/protobuf/internal/descopts google.golang.org/protobuf/internal/strs google.golang.org/protobuf/internal/encoding/messageset google.golang.org/protobuf/internal/genid +google.golang.org/protobuf/internal/encoding/text google.golang.org/protobuf/internal/order -google.golang.org/protobuf/runtime/protoiface google.golang.org/protobuf/reflect/protoregistry -google.golang.org/protobuf/internal/encoding/text -google.golang.org/protobuf/internal/protolazy +google.golang.org/protobuf/runtime/protoiface +github.com/secure-systems-lab/go-securesystemslib/cjson vendor/golang.org/x/text/secure/bidirule -runtime/trace -text/template/parse -gopkg.in/square/go-jose.v2/json -vendor/golang.org/x/net/idna -github.com/pkg/browser -testing -google.golang.org/protobuf/proto +google.golang.org/protobuf/internal/protolazy +github.com/syndtr/goleveldb/leveldb/opt github.com/syndtr/goleveldb/leveldb/errors -database/sql/driver -github.com/syndtr/goleveldb/leveldb/iterator -google.golang.org/protobuf/internal/encoding/defval -github.com/secure-systems-lab/go-securesystemslib/cjson -github.com/syndtr/goleveldb/leveldb/journal -github.com/go-jose/go-jose/json +runtime/debug +vendor/golang.org/x/net/idna github.com/theupdateframework/go-tuf/v0/data -github.com/syndtr/goleveldb/leveldb/memdb +text/template/parse +github.com/syndtr/goleveldb/leveldb/iterator crypto/elliptic +runtime/trace crypto/internal/boring/bbig encoding/asn1 crypto/rand crypto/dsa -google.golang.org/protobuf/internal/filedesc -google.golang.org/protobuf/encoding/prototext -github.com/theupdateframework/go-tuf/v0/util +google.golang.org/protobuf/internal/encoding/defval golang.org/x/term +google.golang.org/protobuf/proto crypto/ed25519 crypto/rsa github.com/secure-systems-lab/go-securesystemslib/encrypted +github.com/theupdateframework/go-tuf/v0/util crypto/internal/hpke +github.com/syndtr/goleveldb/leveldb/journal +github.com/syndtr/goleveldb/leveldb/memdb github.com/syndtr/goleveldb/leveldb/table -text/template +testing golang.org/x/crypto/ed25519 -github.com/segmentio/ksuid +gopkg.in/square/go-jose.v2/json +github.com/pkg/browser +github.com/sigstore/sigstore/pkg/signature/options +database/sql/driver +github.com/go-jose/go-jose/json golang.org/x/crypto/chacha20 golang.org/x/crypto/curve25519 -github.com/sigstore/sigstore/pkg/signature/options +golang.org/x/crypto/ssh/internal/bcrypt_pbkdf +text/template +google.golang.org/protobuf/internal/filedesc vendor/golang.org/x/crypto/cryptobyte crypto/x509/pkix -golang.org/x/crypto/ssh/internal/bcrypt_pbkdf +google.golang.org/protobuf/encoding/prototext +github.com/segmentio/ksuid +github.com/syndtr/goleveldb/leveldb github.com/aws/aws-sdk-go-v2/internal/rand github.com/aws/aws-sdk-go-v2/internal/sync/singleflight github.com/aws/smithy-go/internal/sync/singleflight github.com/aws/smithy-go/logging -github.com/syndtr/goleveldb/leveldb github.com/aws/smithy-go github.com/aws/smithy-go/time -github.com/aws/smithy-go/rand +crypto/ecdsa github.com/aws/smithy-go/middleware +github.com/aws/smithy-go/rand +github.com/aws/smithy-go/auth github.com/aws/aws-sdk-go-v2/aws/ratelimit github.com/aws/aws-sdk-go-v2/feature/ec2/imds/internal/config os/user -github.com/aws/smithy-go/document +github.com/aws/aws-sdk-go-v2/aws/protocol/restjson github.com/aws/smithy-go/encoding encoding/xml -github.com/aws/smithy-go/auth github.com/aws/aws-sdk-go-v2/internal/ini -crypto/ecdsa -github.com/aws/aws-sdk-go-v2/aws/protocol/restjson +github.com/aws/smithy-go/document github.com/aws/smithy-go/encoding/json +github.com/aws/aws-sdk-go-v2/aws/middleware/private/metrics +github.com/sigstore/sigstore/pkg/oauth +github.com/aws/aws-sdk-go-v2/internal/context +golang.org/x/sync/singleflight github.com/aws/aws-sdk-go-v2/service/sso/types +github.com/aws/aws-sdk-go-v2/internal/middleware github.com/aws/aws-sdk-go-v2/service/ssooidc/types github.com/aws/aws-sdk-go-v2/service/sts/types github.com/aws/aws-sdk-go-v2/service/kms/types -golang.org/x/sync/singleflight +gopkg.in/square/go-jose.v2/cipher +github.com/go-jose/go-jose/cipher +github.com/jellydator/ttlcache github.com/tink-crypto/tink-go/subtle/random -github.com/aws/aws-sdk-go-v2/aws/middleware/private/metrics -github.com/aws/aws-sdk-go-v2/internal/context google.golang.org/protobuf/internal/encoding/json -github.com/jellydator/ttlcache github.com/tink-crypto/tink-go/internal/signature/ecdsa -github.com/aws/aws-sdk-go-v2/internal/middleware golang.org/x/crypto/hkdf -github.com/sigstore/sigstore/pkg/oauth -github.com/tink-crypto/tink-go/subtle google.golang.org/protobuf/internal/encoding/tag +github.com/tink-crypto/tink-go/subtle google.golang.org/protobuf/encoding/protojson -gopkg.in/square/go-jose.v2/cipher -github.com/go-jose/go-jose/cipher -github.com/tink-crypto/tink-go/signature/subtle google.golang.org/protobuf/internal/impl +github.com/tink-crypto/tink-go/signature/subtle github.com/aws/aws-sdk-go-v2/aws/protocol/xml github.com/aws/smithy-go/encoding/xml github.com/aws/aws-sdk-go-v2/internal/shareddefaults -net/textproto +crypto/x509 github.com/google/go-containerregistry/pkg/name +net/textproto vendor/golang.org/x/net/http/httpproxy -crypto/x509 vendor/golang.org/x/net/http/httpguts mime/multipart github.com/sigstore/sigstore/pkg/signature/payload -github.com/sigstore/sigstore/pkg/cryptoutils github.com/theupdateframework/go-tuf/v0/pkg/keys +github.com/sigstore/sigstore/pkg/cryptoutils gopkg.in/square/go-jose.v2 github.com/sigstore/sigstore/test -golang.org/x/crypto/ssh github.com/go-jose/go-jose crypto/tls -github.com/theupdateframework/go-tuf/v0/internal/signer -github.com/theupdateframework/go-tuf/v0/sign -github.com/theupdateframework/go-tuf/v0/verify -github.com/theupdateframework/go-tuf/v0/pkg/targets -github.com/theupdateframework/go-tuf/v0 +golang.org/x/crypto/ssh google.golang.org/protobuf/internal/filetype google.golang.org/protobuf/runtime/protoimpl +github.com/theupdateframework/go-tuf/v0/internal/signer +github.com/theupdateframework/go-tuf/v0/verify +github.com/theupdateframework/go-tuf/v0/sign +google.golang.org/protobuf/types/descriptorpb google.golang.org/protobuf/types/known/timestamppb github.com/tink-crypto/tink-go/proto/tink_go_proto github.com/tink-crypto/tink-go/proto/common_go_proto github.com/tink-crypto/tink-go/proto/ed25519_go_proto -google.golang.org/protobuf/types/descriptorpb +github.com/theupdateframework/go-tuf/v0/pkg/targets github.com/tink-crypto/tink-go/proto/ecdsa_go_proto +github.com/theupdateframework/go-tuf/v0 github.com/tink-crypto/tink-go/core/registry github.com/tink-crypto/tink-go/core/cryptofmt -github.com/tink-crypto/tink-go/internal/primitiveset github.com/tink-crypto/tink-go/internal/protoserialization github.com/tink-crypto/tink-go/internal/registryconfig +github.com/tink-crypto/tink-go/internal/primitiveset github.com/tink-crypto/tink-go/keyset -google.golang.org/genproto/googleapis/api/annotations -github.com/secure-systems-lab/go-securesystemslib/dsse github.com/tink-crypto/tink-go/insecurecleartextkeyset +google.golang.org/genproto/googleapis/api/annotations github.com/sigstore/sigstore/pkg/signature/tink github.com/sigstore/protobuf-specs/gen/pb-go/common/v1 github.com/sigstore/sigstore/pkg/signature -net/http/httptrace +github.com/secure-systems-lab/go-securesystemslib/dsse github.com/sigstore/sigstore/pkg/signature/dsse -github.com/sigstore/sigstore/pkg/signature/ssh github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/internal/signerverifier -net/http +github.com/sigstore/sigstore/pkg/signature/ssh github.com/sigstore/sigstore/pkg/signature/kms/cliplugin github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/handler github.com/sigstore/sigstore/pkg/signature/kms github.com/sigstore/sigstore/pkg/signature/kms/fake +net/http/httptrace +net/http net/http/httptest -golang.org/x/oauth2/internal -net/http/httputil github.com/aws/smithy-go/encoding/httpbinding +golang.org/x/oauth2/internal github.com/aws/smithy-go/endpoints +net/http/httputil github.com/theupdateframework/go-tuf/v0/client golang.org/x/oauth2 github.com/theupdateframework/go-tuf/v0/client/leveldbstore @@ -2949,32 +2985,32 @@ github.com/aws/smithy-go/auth/bearer github.com/aws/aws-sdk-go-v2/internal/auth github.com/aws/aws-sdk-go-v2/internal/endpoints/awsrulesfn -github.com/aws/aws-sdk-go-v2/aws/protocol/query github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding +github.com/aws/aws-sdk-go-v2/aws/protocol/query github.com/aws/smithy-go/private/requestcompression github.com/aws/aws-sdk-go-v2/aws -github.com/aws/aws-sdk-go-v2/credentials github.com/aws/aws-sdk-go-v2/aws/middleware -github.com/aws/aws-sdk-go-v2/aws/defaults +github.com/aws/aws-sdk-go-v2/internal/configsources +github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 +github.com/aws/aws-sdk-go-v2/credentials github.com/aws/aws-sdk-go-v2/credentials/processcreds github.com/aws/aws-sdk-go-v2/aws/signer/internal/v4 github.com/aws/aws-sdk-go-v2/internal/endpoints -github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 -github.com/aws/aws-sdk-go-v2/internal/configsources -github.com/aws/aws-sdk-go-v2/service/ssooidc/internal/endpoints -github.com/aws/aws-sdk-go-v2/service/kms/internal/endpoints +github.com/aws/aws-sdk-go-v2/aws/defaults github.com/aws/aws-sdk-go-v2/service/sso/internal/endpoints +github.com/aws/aws-sdk-go-v2/service/ssooidc/internal/endpoints github.com/aws/aws-sdk-go-v2/service/sts/internal/endpoints +github.com/aws/aws-sdk-go-v2/service/kms/internal/endpoints github.com/aws/aws-sdk-go-v2/aws/transport/http github.com/aws/aws-sdk-go-v2/aws/retry github.com/aws/aws-sdk-go-v2/aws/signer/v4 -github.com/aws/aws-sdk-go-v2/credentials/endpointcreds/internal/client -github.com/aws/aws-sdk-go-v2/feature/ec2/imds github.com/aws/aws-sdk-go-v2/internal/auth/smithy github.com/aws/aws-sdk-go-v2/service/internal/presigned-url -github.com/aws/aws-sdk-go-v2/service/ssooidc +github.com/aws/aws-sdk-go-v2/credentials/endpointcreds/internal/client +github.com/aws/aws-sdk-go-v2/feature/ec2/imds github.com/aws/aws-sdk-go-v2/service/sso github.com/aws/aws-sdk-go-v2/service/sts +github.com/aws/aws-sdk-go-v2/service/ssooidc github.com/aws/aws-sdk-go-v2/service/kms github.com/aws/aws-sdk-go-v2/credentials/endpointcreds github.com/aws/aws-sdk-go-v2/credentials/ec2rolecreds @@ -3047,7 +3083,7 @@ === RUN TestMarshalCertificateToPEM/cert1 === RUN TestMarshalCertificateToPEM/cert2 === RUN TestMarshalCertificateToPEM/nil ---- PASS: TestMarshalCertificateToPEM (0.01s) +--- PASS: TestMarshalCertificateToPEM (0.00s) --- PASS: TestMarshalCertificateToPEM/cert1 (0.00s) --- PASS: TestMarshalCertificateToPEM/cert2 (0.00s) --- PASS: TestMarshalCertificateToPEM/nil (0.00s) @@ -3055,9 +3091,9 @@ === RUN TestMarshalCertificatesToPEM/one_cert === RUN TestMarshalCertificatesToPEM/two_certs === RUN TestMarshalCertificatesToPEM/nil_cert ---- PASS: TestMarshalCertificatesToPEM (0.01s) +--- PASS: TestMarshalCertificatesToPEM (0.00s) --- PASS: TestMarshalCertificatesToPEM/one_cert (0.00s) - --- PASS: TestMarshalCertificatesToPEM/two_certs (0.01s) + --- PASS: TestMarshalCertificatesToPEM/two_certs (0.00s) --- PASS: TestMarshalCertificatesToPEM/nil_cert (0.00s) === RUN TestCheckExpiration === RUN TestCheckExpiration/valid @@ -3086,7 +3122,7 @@ === RUN TestRSAPrivateKeyPEMRoundtrip === PAUSE TestRSAPrivateKeyPEMRoundtrip === RUN TestUnmarshalPEMToPrivateKey ---- PASS: TestUnmarshalPEMToPrivateKey (1.77s) +--- PASS: TestUnmarshalPEMToPrivateKey (0.96s) === RUN TestECDSAPublicKeyPEMRoundtrip === PAUSE TestECDSAPublicKeyPEMRoundtrip === RUN TestEd25519PublicKeyPEMRoundtrip @@ -3094,13 +3130,13 @@ === RUN TestRSAPublicKeyPEMRoundtrip === PAUSE TestRSAPublicKeyPEMRoundtrip === RUN TestSKIDRSA ---- PASS: TestSKIDRSA (0.17s) +--- PASS: TestSKIDRSA (0.39s) === RUN TestSKIDECDSA --- PASS: TestSKIDECDSA (0.00s) === RUN TestSKIDED25519 --- PASS: TestSKIDED25519 (0.00s) === RUN TestEqualKeys ---- PASS: TestEqualKeys (0.87s) +--- PASS: TestEqualKeys (1.47s) === RUN TestValidatePubKeyUnsupported --- PASS: TestValidatePubKeyUnsupported (0.00s) === RUN TestValidatePubKeyRsa @@ -3112,7 +3148,7 @@ === RUN TestValidatePubKeyEd25519 --- PASS: TestValidatePubKeyEd25519 (0.00s) === RUN TestUnmarshalPEMToPublicKey ---- PASS: TestUnmarshalPEMToPublicKey (0.47s) +--- PASS: TestUnmarshalPEMToPublicKey (1.03s) === RUN TestMarshalAndUnmarshalOtherNameSAN --- PASS: TestMarshalAndUnmarshalOtherNameSAN (0.00s) === RUN TestUnmarshalOtherNameSANFailures @@ -3128,39 +3164,39 @@ === PAUSE TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func === CONT TestGeneratePEMEncodedRSAKeyPair/encrypted === CONT TestRSAPrivateKeyPEMRoundtrip -=== CONT TestEd25519PublicKeyPEMRoundtrip -=== CONT TestRSAPublicKeyPEMRoundtrip === CONT TestGeneratePEMEncodedECDSAKeyPair === RUN TestGeneratePEMEncodedECDSAKeyPair/encrypted +=== CONT TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func === PAUSE TestGeneratePEMEncodedECDSAKeyPair/encrypted === RUN TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func === PAUSE TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func === RUN TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func === PAUSE TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func === CONT TestGeneratePEMEncodedECDSAKeyPair/encrypted +=== CONT TestEd25519PublicKeyPEMRoundtrip +=== CONT TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func --- PASS: TestEd25519PublicKeyPEMRoundtrip (0.00s) -=== CONT TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func -=== CONT TestGeneratePEMEncodedRSAKeyPair/nil_pass_func +=== CONT TestRSAPublicKeyPEMRoundtrip +=== CONT TestECDSAPublicKeyPEMRoundtrip +=== CONT TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func === CONT TestEd25519PrivateKeyPEMRoundtrip === CONT TestECDSAPrivateKeyPEMRoundtrip -=== CONT TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func -=== CONT TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func +=== CONT TestGeneratePEMEncodedRSAKeyPair/nil_pass_func --- PASS: TestECDSAPrivateKeyPEMRoundtrip (0.00s) ---- PASS: TestEd25519PrivateKeyPEMRoundtrip (0.01s) -=== CONT TestECDSAPublicKeyPEMRoundtrip ---- PASS: TestECDSAPublicKeyPEMRoundtrip (0.00s) ---- PASS: TestRSAPrivateKeyPEMRoundtrip (0.11s) +--- PASS: TestECDSAPublicKeyPEMRoundtrip (0.01s) +--- PASS: TestEd25519PrivateKeyPEMRoundtrip (0.00s) +--- PASS: TestRSAPrivateKeyPEMRoundtrip (0.16s) +--- PASS: TestRSAPublicKeyPEMRoundtrip (0.27s) --- PASS: TestGeneratePEMEncodedECDSAKeyPair (0.00s) --- PASS: TestGeneratePEMEncodedECDSAKeyPair/SkipPassword_func (0.00s) --- PASS: TestGeneratePEMEncodedECDSAKeyPair/nil_pass_func (0.00s) - --- PASS: TestGeneratePEMEncodedECDSAKeyPair/encrypted (0.41s) ---- PASS: TestRSAPublicKeyPEMRoundtrip (0.51s) + --- PASS: TestGeneratePEMEncodedECDSAKeyPair/encrypted (0.45s) --- PASS: TestGeneratePEMEncodedRSAKeyPair (0.00s) - --- PASS: TestGeneratePEMEncodedRSAKeyPair/nil_pass_func (0.13s) - --- PASS: TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func (0.26s) - --- PASS: TestGeneratePEMEncodedRSAKeyPair/encrypted (0.62s) + --- PASS: TestGeneratePEMEncodedRSAKeyPair/nil_pass_func (0.51s) + --- PASS: TestGeneratePEMEncodedRSAKeyPair/encrypted (0.80s) + --- PASS: TestGeneratePEMEncodedRSAKeyPair/SkipPassword_func (1.81s) PASS -ok github.com/sigstore/sigstore/pkg/cryptoutils 3.935s +ok github.com/sigstore/sigstore/pkg/cryptoutils 5.689s ? github.com/sigstore/sigstore/pkg/fulcioroots [no test files] ? github.com/sigstore/sigstore/pkg/oauth [no test files] === RUN TestParseAccessTokenSuccessResponse @@ -3184,7 +3220,7 @@ === RUN FuzzParseAccessTokenSuccess --- PASS: FuzzParseAccessTokenSuccess (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/oauth/internal 0.011s +ok github.com/sigstore/sigstore/pkg/oauth/internal 0.012s ? github.com/sigstore/sigstore/pkg/oauth/oidc [no test files] === RUN TestClientCredentialsFlowTokenGetter_ccFlow client_credentials_test.go:36: got request: /.well-known/openid-configuration @@ -3215,33 +3251,33 @@ --- PASS: TestStaticTokenGetter_GetIDToken/verified (0.00s) --- PASS: TestStaticTokenGetter_GetIDToken/spiffeid (0.00s) === RUN TestSubjectFromToken -=== RUN TestSubjectFromToken/no_email_or_subject === RUN TestSubjectFromToken/Email_as_subject === RUN TestSubjectFromToken/String_email_verified_value === RUN TestSubjectFromToken/Email_not_verified === RUN TestSubjectFromToken/invalid_email_verified_property === RUN TestSubjectFromToken/Subject_as_subject +=== RUN TestSubjectFromToken/no_email_or_subject --- PASS: TestSubjectFromToken (0.00s) - --- PASS: TestSubjectFromToken/no_email_or_subject (0.00s) --- PASS: TestSubjectFromToken/Email_as_subject (0.00s) --- PASS: TestSubjectFromToken/String_email_verified_value (0.00s) --- PASS: TestSubjectFromToken/Email_not_verified (0.00s) --- PASS: TestSubjectFromToken/invalid_email_verified_property (0.00s) --- PASS: TestSubjectFromToken/Subject_as_subject (0.00s) + --- PASS: TestSubjectFromToken/no_email_or_subject (0.00s) === RUN TestSubjectFromUnverifiedToken +=== RUN TestSubjectFromUnverifiedToken/invalid_email_verified_property === RUN TestSubjectFromUnverifiedToken/Subject_as_subject === RUN TestSubjectFromUnverifiedToken/no_email_or_subject === RUN TestSubjectFromUnverifiedToken/Email_as_subject === RUN TestSubjectFromUnverifiedToken/String_email_verified_value === RUN TestSubjectFromUnverifiedToken/Email_not_verified -=== RUN TestSubjectFromUnverifiedToken/invalid_email_verified_property --- PASS: TestSubjectFromUnverifiedToken (0.00s) + --- PASS: TestSubjectFromUnverifiedToken/invalid_email_verified_property (0.00s) --- PASS: TestSubjectFromUnverifiedToken/Subject_as_subject (0.00s) --- PASS: TestSubjectFromUnverifiedToken/no_email_or_subject (0.00s) --- PASS: TestSubjectFromUnverifiedToken/Email_as_subject (0.00s) --- PASS: TestSubjectFromUnverifiedToken/String_email_verified_value (0.00s) --- PASS: TestSubjectFromUnverifiedToken/Email_not_verified (0.00s) - --- PASS: TestSubjectFromUnverifiedToken/invalid_email_verified_property (0.00s) === RUN TestInteractiveFlow_IO === RUN TestInteractiveFlow_IO/default === RUN TestInteractiveFlow_IO/buffer @@ -3249,11 +3285,11 @@ --- PASS: TestInteractiveFlow_IO/default (0.00s) --- PASS: TestInteractiveFlow_IO/buffer (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/oauthflow 0.032s +ok github.com/sigstore/sigstore/pkg/oauthflow 0.033s === RUN TestGetAlgorithmDetails --- PASS: TestGetAlgorithmDetails (0.00s) === RUN TestAlgorithmRegistryConfig ---- PASS: TestAlgorithmRegistryConfig (4.16s) +--- PASS: TestAlgorithmRegistryConfig (3.44s) === RUN TestSignatureAlgorithmFlagRoundtrip --- PASS: TestSignatureAlgorithmFlagRoundtrip (0.00s) === RUN TestGetDefaultPublicKeyDetails @@ -3263,13 +3299,13 @@ === RUN TestGetDefaultPublicKeyDetails/ed25519 === RUN TestGetDefaultPublicKeyDetails/ed25519-ph === RUN TestGetDefaultPublicKeyDetails/rsa-2048-pss ---- PASS: TestGetDefaultPublicKeyDetails (0.76s) +--- PASS: TestGetDefaultPublicKeyDetails (0.67s) --- PASS: TestGetDefaultPublicKeyDetails/ecdsa-p256 (0.00s) --- PASS: TestGetDefaultPublicKeyDetails/ecdsa-p384 (0.00s) - --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048 (0.26s) + --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048 (0.48s) --- PASS: TestGetDefaultPublicKeyDetails/ed25519 (0.00s) --- PASS: TestGetDefaultPublicKeyDetails/ed25519-ph (0.00s) - --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048-pss (0.50s) + --- PASS: TestGetDefaultPublicKeyDetails/rsa-2048-pss (0.19s) === RUN TestHashingAlgorithmMatches --- PASS: TestHashingAlgorithmMatches (0.00s) === RUN TestECDSASignerVerifier @@ -3307,9 +3343,9 @@ === RUN TestLoadDefaultSigner/ecdsa-p256 === RUN TestLoadDefaultSigner/ed25519 === RUN TestLoadDefaultSigner/ed25519-ph ---- PASS: TestLoadDefaultSigner (1.51s) - --- PASS: TestLoadDefaultSigner/rsa-2048 (0.89s) - --- PASS: TestLoadDefaultSigner/rsa-2048-pss (0.62s) +--- PASS: TestLoadDefaultSigner (0.99s) + --- PASS: TestLoadDefaultSigner/rsa-2048 (0.35s) + --- PASS: TestLoadDefaultSigner/rsa-2048-pss (0.64s) --- PASS: TestLoadDefaultSigner/ecdsa-p256 (0.00s) --- PASS: TestLoadDefaultSigner/ed25519 (0.00s) --- PASS: TestLoadDefaultSigner/ed25519-ph (0.00s) @@ -3323,36 +3359,36 @@ === RUN TestLoadDefaultSignerVerifier/ecdsa-p256 === RUN TestLoadDefaultSignerVerifier/ed25519 === RUN TestLoadDefaultSignerVerifier/ed25519-ph ---- PASS: TestLoadDefaultSignerVerifier (1.23s) - --- PASS: TestLoadDefaultSignerVerifier/rsa-2048 (0.83s) - --- PASS: TestLoadDefaultSignerVerifier/rsa-2048-pss (0.40s) +--- PASS: TestLoadDefaultSignerVerifier (0.71s) + --- PASS: TestLoadDefaultSignerVerifier/rsa-2048 (0.33s) + --- PASS: TestLoadDefaultSignerVerifier/rsa-2048-pss (0.39s) --- PASS: TestLoadDefaultSignerVerifier/ecdsa-p256 (0.00s) --- PASS: TestLoadDefaultSignerVerifier/ed25519 (0.00s) --- PASS: TestLoadDefaultSignerVerifier/ed25519-ph (0.00s) === RUN TestProviderRoundtrip === RUN TestProviderRoundtrip/ECDSA === RUN TestProviderRoundtrip/RSA ---- PASS: TestProviderRoundtrip (0.26s) +--- PASS: TestProviderRoundtrip (1.03s) --- PASS: TestProviderRoundtrip/ECDSA (0.00s) --- PASS: TestProviderRoundtrip/RSA (0.00s) === RUN TestLoadUnsafeVerifier ---- PASS: TestLoadUnsafeVerifier (0.25s) +--- PASS: TestLoadUnsafeVerifier (0.28s) === RUN TestLoadVerifier ---- PASS: TestLoadVerifier (0.29s) +--- PASS: TestLoadVerifier (0.43s) === RUN TestLoadDefaultVerifier === RUN TestLoadDefaultVerifier/rsa-2048 === RUN TestLoadDefaultVerifier/rsa-2048-pss === RUN TestLoadDefaultVerifier/ecdsa-p256 === RUN TestLoadDefaultVerifier/ed25519 === RUN TestLoadDefaultVerifier/ed25519-ph ---- PASS: TestLoadDefaultVerifier (1.09s) - --- PASS: TestLoadDefaultVerifier/rsa-2048 (0.83s) - --- PASS: TestLoadDefaultVerifier/rsa-2048-pss (0.27s) +--- PASS: TestLoadDefaultVerifier (0.83s) + --- PASS: TestLoadDefaultVerifier/rsa-2048 (0.65s) + --- PASS: TestLoadDefaultVerifier/rsa-2048-pss (0.17s) --- PASS: TestLoadDefaultVerifier/ecdsa-p256 (0.00s) --- PASS: TestLoadDefaultVerifier/ed25519 (0.00s) --- PASS: TestLoadDefaultVerifier/ed25519-ph (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature 9.706s +ok github.com/sigstore/sigstore/pkg/signature 8.535s === RUN TestImplementsDSSESigner --- PASS: TestImplementsDSSESigner (0.00s) === RUN TestImplementsDSSEVerifier @@ -3366,7 +3402,7 @@ === RUN TestInvalidSignature --- PASS: TestInvalidSignature (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/dsse 0.014s +ok github.com/sigstore/sigstore/pkg/signature/dsse 0.019s === RUN TestGet === PAUSE TestGet === CONT TestGet @@ -3379,9 +3415,9 @@ === RUN TestGet/successful_provider === PAUSE TestGet/successful_provider === CONT TestGet/cliplugin -=== CONT TestGet/successful_provider -=== CONT TestGet/file_path === CONT TestGet/registered_provider_error +=== CONT TestGet/file_path +=== CONT TestGet/successful_provider --- PASS: TestGet (0.00s) --- PASS: TestGet/cliplugin (0.00s) --- PASS: TestGet/file_path (0.00s) @@ -3462,21 +3498,21 @@ === PAUSE TestPluginClient/CryptoSigner === CONT TestPluginClient/DefaultAlgorithm === CONT TestPluginClient/SupportedAlgorithms -=== CONT TestPluginClient/SignMessage === CONT TestPluginClient/PublicKey +=== CONT TestPluginClient/CreateKey === CONT TestPluginClient/CryptoSigner +=== CONT TestPluginClient/SignMessage === CONT TestPluginClient/VerifySignature -=== CONT TestPluginClient/CreateKey --- PASS: TestPluginClient (0.00s) - --- PASS: TestPluginClient/SupportedAlgorithms (0.00s) --- PASS: TestPluginClient/DefaultAlgorithm (0.00s) + --- PASS: TestPluginClient/SupportedAlgorithms (0.00s) --- PASS: TestPluginClient/CryptoSigner (0.00s) - --- PASS: TestPluginClient/VerifySignature (0.00s) --- PASS: TestPluginClient/CreateKey (0.00s) - --- PASS: TestPluginClient/SignMessage (0.00s) --- PASS: TestPluginClient/PublicKey (0.00s) + --- PASS: TestPluginClient/SignMessage (0.00s) + --- PASS: TestPluginClient/VerifySignature (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin 0.025s +ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin 0.024s === RUN TestPluginArgsJSON === PAUSE TestPluginArgsJSON === RUN TestPluginRespJSON @@ -3485,136 +3521,136 @@ === PAUSE TestHashFuncJSON === CONT TestPluginArgsJSON === CONT TestHashFuncJSON -=== RUN TestHashFuncJSON/MD4 -=== PAUSE TestHashFuncJSON/MD4 -=== RUN TestPluginArgsJSON/defaultAlgorithm === CONT TestPluginRespJSON -=== PAUSE TestPluginArgsJSON/defaultAlgorithm === RUN TestPluginRespJSON/defaultAlgorithm -=== RUN TestPluginArgsJSON/supportedAlgorithms -=== PAUSE TestPluginArgsJSON/supportedAlgorithms -=== RUN TestPluginArgsJSON/createKey -=== PAUSE TestPluginArgsJSON/createKey -=== RUN TestPluginArgsJSON/publicKey -=== PAUSE TestPluginArgsJSON/publicKey -=== RUN TestPluginArgsJSON/signMessage -=== PAUSE TestPluginArgsJSON/signMessage -=== RUN TestPluginArgsJSON/verifySignature -=== PAUSE TestPluginArgsJSON/verifySignature -=== CONT TestPluginArgsJSON/defaultAlgorithm -=== CONT TestPluginArgsJSON/signMessage -=== CONT TestPluginArgsJSON/verifySignature -=== CONT TestPluginArgsJSON/publicKey -=== CONT TestPluginArgsJSON/supportedAlgorithms -=== CONT TestPluginArgsJSON/createKey +=== RUN TestHashFuncJSON/MD4 +=== PAUSE TestPluginRespJSON/defaultAlgorithm +=== RUN TestPluginRespJSON/supportedAlgorithms +=== PAUSE TestHashFuncJSON/MD4 +=== PAUSE TestPluginRespJSON/supportedAlgorithms === RUN TestHashFuncJSON/MD5 +=== RUN TestPluginRespJSON/createKey === PAUSE TestHashFuncJSON/MD5 -=== PAUSE TestPluginRespJSON/defaultAlgorithm === RUN TestHashFuncJSON/SHA-1 === PAUSE TestHashFuncJSON/SHA-1 === RUN TestHashFuncJSON/SHA-224 === PAUSE TestHashFuncJSON/SHA-224 === RUN TestHashFuncJSON/SHA-256 -=== RUN TestPluginRespJSON/supportedAlgorithms === PAUSE TestHashFuncJSON/SHA-256 === RUN TestHashFuncJSON/SHA-384 -=== PAUSE TestPluginRespJSON/supportedAlgorithms -=== RUN TestPluginRespJSON/createKey -=== PAUSE TestPluginRespJSON/createKey -=== RUN TestPluginRespJSON/publicKey -=== PAUSE TestPluginRespJSON/publicKey -=== RUN TestPluginRespJSON/signMessage -=== PAUSE TestPluginRespJSON/signMessage -=== RUN TestPluginRespJSON/verifySignature -=== PAUSE TestPluginRespJSON/verifySignature -=== CONT TestPluginRespJSON/defaultAlgorithm -=== CONT TestPluginRespJSON/signMessage === PAUSE TestHashFuncJSON/SHA-384 -=== CONT TestPluginRespJSON/verifySignature -=== CONT TestPluginRespJSON/createKey -=== CONT TestPluginRespJSON/publicKey -=== CONT TestPluginRespJSON/supportedAlgorithms === RUN TestHashFuncJSON/SHA-512 +=== RUN TestPluginArgsJSON/defaultAlgorithm +=== PAUSE TestPluginRespJSON/createKey === PAUSE TestHashFuncJSON/SHA-512 +=== RUN TestPluginRespJSON/publicKey +=== PAUSE TestPluginArgsJSON/defaultAlgorithm +=== PAUSE TestPluginRespJSON/publicKey === RUN TestHashFuncJSON/MD5+SHA1 +=== RUN TestPluginArgsJSON/supportedAlgorithms === PAUSE TestHashFuncJSON/MD5+SHA1 +=== PAUSE TestPluginArgsJSON/supportedAlgorithms === RUN TestHashFuncJSON/RIPEMD-160 +=== RUN TestPluginArgsJSON/createKey +=== PAUSE TestPluginArgsJSON/createKey +=== RUN TestPluginArgsJSON/publicKey +=== PAUSE TestPluginArgsJSON/publicKey +=== RUN TestPluginArgsJSON/signMessage +=== PAUSE TestPluginArgsJSON/signMessage +=== RUN TestPluginRespJSON/signMessage === PAUSE TestHashFuncJSON/RIPEMD-160 +=== PAUSE TestPluginRespJSON/signMessage +=== RUN TestPluginArgsJSON/verifySignature === RUN TestHashFuncJSON/SHA3-224 +=== PAUSE TestPluginArgsJSON/verifySignature === PAUSE TestHashFuncJSON/SHA3-224 +=== CONT TestPluginArgsJSON/defaultAlgorithm === RUN TestHashFuncJSON/SHA3-256 === PAUSE TestHashFuncJSON/SHA3-256 === RUN TestHashFuncJSON/SHA3-384 === PAUSE TestHashFuncJSON/SHA3-384 +=== CONT TestPluginArgsJSON/createKey === RUN TestHashFuncJSON/SHA3-512 === PAUSE TestHashFuncJSON/SHA3-512 ---- PASS: TestPluginArgsJSON (0.00s) - --- PASS: TestPluginArgsJSON/publicKey (0.00s) - --- PASS: TestPluginArgsJSON/defaultAlgorithm (0.00s) - --- PASS: TestPluginArgsJSON/verifySignature (0.00s) - --- PASS: TestPluginArgsJSON/supportedAlgorithms (0.00s) - --- PASS: TestPluginArgsJSON/createKey (0.00s) - --- PASS: TestPluginArgsJSON/signMessage (0.00s) === RUN TestHashFuncJSON/SHA-512/224 +=== CONT TestPluginArgsJSON/signMessage +=== RUN TestPluginRespJSON/verifySignature +=== CONT TestPluginArgsJSON/supportedAlgorithms +=== PAUSE TestPluginRespJSON/verifySignature === PAUSE TestHashFuncJSON/SHA-512/224 === RUN TestHashFuncJSON/SHA-512/256 +=== CONT TestPluginRespJSON/defaultAlgorithm === PAUSE TestHashFuncJSON/SHA-512/256 === RUN TestHashFuncJSON/BLAKE2s-256 === PAUSE TestHashFuncJSON/BLAKE2s-256 === RUN TestHashFuncJSON/BLAKE2b-256 +=== CONT TestPluginRespJSON/publicKey +=== CONT TestPluginRespJSON/verifySignature +=== CONT TestPluginArgsJSON/publicKey === PAUSE TestHashFuncJSON/BLAKE2b-256 === RUN TestHashFuncJSON/BLAKE2b-384 === PAUSE TestHashFuncJSON/BLAKE2b-384 +=== CONT TestPluginArgsJSON/verifySignature +=== CONT TestPluginRespJSON/signMessage +=== CONT TestPluginRespJSON/createKey +=== CONT TestPluginRespJSON/supportedAlgorithms === RUN TestHashFuncJSON/BLAKE2b-512 +--- PASS: TestPluginArgsJSON (0.00s) + --- PASS: TestPluginArgsJSON/createKey (0.00s) + --- PASS: TestPluginArgsJSON/supportedAlgorithms (0.00s) + --- PASS: TestPluginArgsJSON/signMessage (0.00s) + --- PASS: TestPluginArgsJSON/verifySignature (0.00s) + --- PASS: TestPluginArgsJSON/publicKey (0.00s) + --- PASS: TestPluginArgsJSON/defaultAlgorithm (0.00s) === PAUSE TestHashFuncJSON/BLAKE2b-512 === CONT TestHashFuncJSON/MD4 -=== CONT TestHashFuncJSON/BLAKE2b-384 -=== CONT TestHashFuncJSON/BLAKE2b-256 -=== CONT TestHashFuncJSON/RIPEMD-160 -=== CONT TestHashFuncJSON/BLAKE2s-256 -=== CONT TestHashFuncJSON/MD5+SHA1 -=== CONT TestHashFuncJSON/BLAKE2b-512 -=== CONT TestHashFuncJSON/SHA3-512 -=== CONT TestHashFuncJSON/SHA-224 -=== CONT TestHashFuncJSON/SHA3-256 -=== CONT TestHashFuncJSON/SHA3-224 -=== CONT TestHashFuncJSON/SHA-512/224 --- PASS: TestPluginRespJSON (0.00s) - --- PASS: TestPluginRespJSON/verifySignature (0.00s) --- PASS: TestPluginRespJSON/defaultAlgorithm (0.00s) --- PASS: TestPluginRespJSON/publicKey (0.00s) --- PASS: TestPluginRespJSON/signMessage (0.00s) - --- PASS: TestPluginRespJSON/supportedAlgorithms (0.00s) + --- PASS: TestPluginRespJSON/verifySignature (0.00s) --- PASS: TestPluginRespJSON/createKey (0.00s) -=== CONT TestHashFuncJSON/SHA-256 -=== CONT TestHashFuncJSON/SHA-512 -=== CONT TestHashFuncJSON/MD5 -=== CONT TestHashFuncJSON/SHA-384 + --- PASS: TestPluginRespJSON/supportedAlgorithms (0.00s) === CONT TestHashFuncJSON/SHA-512/256 +=== CONT TestHashFuncJSON/SHA-256 === CONT TestHashFuncJSON/SHA-1 +=== CONT TestHashFuncJSON/SHA3-224 +=== CONT TestHashFuncJSON/MD5+SHA1 +=== CONT TestHashFuncJSON/RIPEMD-160 +=== CONT TestHashFuncJSON/SHA3-512 +=== CONT TestHashFuncJSON/SHA3-256 +=== CONT TestHashFuncJSON/SHA-384 +=== CONT TestHashFuncJSON/BLAKE2b-384 +=== CONT TestHashFuncJSON/BLAKE2b-256 +=== CONT TestHashFuncJSON/BLAKE2s-256 +=== CONT TestHashFuncJSON/SHA-224 +=== CONT TestHashFuncJSON/MD5 +=== CONT TestHashFuncJSON/SHA-512/224 +=== CONT TestHashFuncJSON/SHA-512 === CONT TestHashFuncJSON/SHA3-384 +=== CONT TestHashFuncJSON/BLAKE2b-512 --- PASS: TestHashFuncJSON (0.00s) --- PASS: TestHashFuncJSON/MD4 (0.00s) + --- PASS: TestHashFuncJSON/SHA-1 (0.00s) + --- PASS: TestHashFuncJSON/SHA-256 (0.00s) + --- PASS: TestHashFuncJSON/SHA-512/256 (0.00s) + --- PASS: TestHashFuncJSON/MD5+SHA1 (0.00s) + --- PASS: TestHashFuncJSON/RIPEMD-160 (0.00s) + --- PASS: TestHashFuncJSON/SHA3-512 (0.00s) + --- PASS: TestHashFuncJSON/SHA3-224 (0.00s) + --- PASS: TestHashFuncJSON/SHA3-256 (0.00s) + --- PASS: TestHashFuncJSON/SHA-384 (0.00s) --- PASS: TestHashFuncJSON/BLAKE2b-384 (0.00s) --- PASS: TestHashFuncJSON/BLAKE2b-256 (0.00s) - --- PASS: TestHashFuncJSON/RIPEMD-160 (0.00s) - --- PASS: TestHashFuncJSON/MD5+SHA1 (0.00s) --- PASS: TestHashFuncJSON/BLAKE2s-256 (0.00s) - --- PASS: TestHashFuncJSON/BLAKE2b-512 (0.00s) --- PASS: TestHashFuncJSON/SHA-224 (0.00s) - --- PASS: TestHashFuncJSON/SHA3-512 (0.00s) - --- PASS: TestHashFuncJSON/SHA3-256 (0.00s) - --- PASS: TestHashFuncJSON/SHA3-224 (0.00s) - --- PASS: TestHashFuncJSON/SHA-256 (0.00s) + --- PASS: TestHashFuncJSON/MD5 (0.00s) --- PASS: TestHashFuncJSON/SHA-512/224 (0.00s) --- PASS: TestHashFuncJSON/SHA-512 (0.00s) - --- PASS: TestHashFuncJSON/MD5 (0.00s) - --- PASS: TestHashFuncJSON/SHA-384 (0.00s) - --- PASS: TestHashFuncJSON/SHA-512/256 (0.00s) - --- PASS: TestHashFuncJSON/SHA-1 (0.00s) --- PASS: TestHashFuncJSON/SHA3-384 (0.00s) + --- PASS: TestHashFuncJSON/BLAKE2b-512 (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common 0.010s +ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/common 0.011s === RUN TestPackRPCOptions === PAUSE TestPackRPCOptions === RUN TestUnpackRPCOptions @@ -3636,24 +3672,24 @@ === RUN TestUnpackVerifyOptions === PAUSE TestUnpackVerifyOptions === CONT TestPackRPCOptions -=== CONT TestUnpackPublicKeyOptions === CONT TestUnpackSignOptions -=== CONT TestPackSignOptions === CONT TestUnpackVerifyOptions -=== CONT TestPackVerifyOptions +=== CONT TestPackPublicKeyOptions --- PASS: TestPackRPCOptions (0.00s) -=== CONT TestUnpackRPCOptions ---- PASS: TestUnpackRPCOptions (0.00s) +=== CONT TestUnpackMessageOptions +--- PASS: TestPackPublicKeyOptions (0.00s) --- PASS: TestUnpackVerifyOptions (0.00s) +--- PASS: TestUnpackMessageOptions (0.00s) +=== CONT TestUnpackPublicKeyOptions +=== CONT TestPackSignOptions --- PASS: TestUnpackPublicKeyOptions (0.00s) ---- PASS: TestPackVerifyOptions (0.00s) -=== CONT TestPackPublicKeyOptions -=== CONT TestPackMessageOptions ---- PASS: TestPackSignOptions (0.00s) +=== CONT TestUnpackRPCOptions +=== CONT TestPackVerifyOptions --- PASS: TestUnpackSignOptions (0.00s) ---- PASS: TestPackPublicKeyOptions (0.00s) -=== CONT TestUnpackMessageOptions ---- PASS: TestUnpackMessageOptions (0.00s) +--- PASS: TestPackSignOptions (0.00s) +=== CONT TestPackMessageOptions +--- PASS: TestUnpackRPCOptions (0.00s) +--- PASS: TestPackVerifyOptions (0.00s) --- PASS: TestPackMessageOptions (0.00s) PASS ok github.com/sigstore/sigstore/pkg/signature/kms/cliplugin/encoding 0.017s @@ -3664,7 +3700,7 @@ === RUN TestFakeSignerWithPrivateKey --- PASS: TestFakeSignerWithPrivateKey (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/signature/kms/fake 0.016s +ok github.com/sigstore/sigstore/pkg/signature/kms/fake 0.014s ? github.com/sigstore/sigstore/pkg/signature/options [no test files] === RUN TestMarshalCosign === PAUSE TestMarshalCosign @@ -3675,32 +3711,32 @@ === RUN TestMarshalCosign/no_claims === PAUSE TestMarshalCosign/no_claims === RUN TestMarshalCosign/standard_atomic_signature -=== RUN TestUnmarshalCosign/no_claims === PAUSE TestMarshalCosign/standard_atomic_signature === RUN TestMarshalCosign/arbitrary_claims -=== PAUSE TestUnmarshalCosign/no_claims === PAUSE TestMarshalCosign/arbitrary_claims -=== RUN TestUnmarshalCosign/arbitrary_claims === RUN TestMarshalCosign/custom_identity -=== PAUSE TestUnmarshalCosign/arbitrary_claims -=== RUN TestUnmarshalCosign/unknown_type === PAUSE TestMarshalCosign/custom_identity +=== RUN TestUnmarshalCosign/no_claims === CONT TestMarshalCosign/no_claims +=== CONT TestMarshalCosign/custom_identity +=== CONT TestMarshalCosign/arbitrary_claims +=== PAUSE TestUnmarshalCosign/no_claims +=== RUN TestUnmarshalCosign/arbitrary_claims +=== PAUSE TestUnmarshalCosign/arbitrary_claims +=== RUN TestUnmarshalCosign/unknown_type === PAUSE TestUnmarshalCosign/unknown_type === CONT TestUnmarshalCosign/no_claims -=== CONT TestUnmarshalCosign/unknown_type === CONT TestMarshalCosign/standard_atomic_signature -=== CONT TestMarshalCosign/arbitrary_claims +=== CONT TestUnmarshalCosign/unknown_type === CONT TestUnmarshalCosign/arbitrary_claims -=== CONT TestMarshalCosign/custom_identity --- PASS: TestUnmarshalCosign (0.00s) - --- PASS: TestUnmarshalCosign/no_claims (0.00s) --- PASS: TestUnmarshalCosign/unknown_type (0.00s) + --- PASS: TestUnmarshalCosign/no_claims (0.00s) --- PASS: TestUnmarshalCosign/arbitrary_claims (0.00s) --- PASS: TestMarshalCosign (0.00s) - --- PASS: TestMarshalCosign/no_claims (0.00s) - --- PASS: TestMarshalCosign/standard_atomic_signature (0.00s) --- PASS: TestMarshalCosign/arbitrary_claims (0.00s) + --- PASS: TestMarshalCosign/standard_atomic_signature (0.00s) + --- PASS: TestMarshalCosign/no_claims (0.00s) --- PASS: TestMarshalCosign/custom_identity (0.00s) PASS ok github.com/sigstore/sigstore/pkg/signature/payload 0.011s @@ -3713,17 +3749,17 @@ === RUN TestRoundTrip === RUN TestRoundTrip/rsa === RUN TestRoundTrip/ed25519 ---- PASS: TestRoundTrip (0.13s) - --- PASS: TestRoundTrip/rsa (0.06s) +--- PASS: TestRoundTrip (0.10s) + --- PASS: TestRoundTrip/rsa (0.04s) --- PASS: TestRoundTrip/ed25519 (0.01s) PASS -ok github.com/sigstore/sigstore/pkg/signature/ssh 0.145s +ok github.com/sigstore/sigstore/pkg/signature/ssh 0.122s === RUN TestKeyHandleToSignerECDSA ---- PASS: TestKeyHandleToSignerECDSA (0.08s) +--- PASS: TestKeyHandleToSignerECDSA (0.07s) === RUN TestKeyHandleToSignerED25519 --- PASS: TestKeyHandleToSignerED25519 (0.01s) PASS -ok github.com/sigstore/sigstore/pkg/signature/tink 0.096s +ok github.com/sigstore/sigstore/pkg/signature/tink 0.089s === RUN TestMarshalStatusType --- PASS: TestMarshalStatusType (0.00s) === RUN TestMarshalInvalidStatusType @@ -3745,9 +3781,9 @@ === RUN TestUnmarshalInvalidUsageType --- PASS: TestUnmarshalInvalidUsageType (0.00s) PASS -ok github.com/sigstore/sigstore/pkg/tuf 0.015s +ok github.com/sigstore/sigstore/pkg/tuf 0.013s ? github.com/sigstore/sigstore/test [no test files] - rm -fr -- /tmp/dh-xdg-rundir-Rz7OG0_S + rm -fr -- /tmp/dh-xdg-rundir-kuV2YnIW rm -rf /build/reproducible-path/golang-github-sigstore-sigstore-1.9.3/debian/tmp-home make[1]: Leaving directory '/build/reproducible-path/golang-github-sigstore-sigstore-1.9.3' create-stamp debian/debhelper-build-stamp @@ -3777,12 +3813,14 @@ dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: not including original source code in upload I: copying local configuration +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/B01_cleanup starting +I: user script /srv/workspace/pbuilder/549391/tmp/hooks/B01_cleanup finished I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env -I: removing directory /srv/workspace/pbuilder/2739388 and its subdirectories -I: Current time: Mon Aug 3 17:49:47 -12 2026 -I: pbuilder-time-stamp: 1785822587 +I: removing directory /srv/workspace/pbuilder/549391 and its subdirectories +I: Current time: Wed Jul 2 13:29:21 +14 2025 +I: pbuilder-time-stamp: 1751412561