forked from sigstore/sigstore
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Switch from ed25519 to ecdsa (sigstore#52)
* Switch from ed25519 to ecdsa ed25519 hasn't yet been approved and won't work with most KMS systems, so we need to use ecdsa until it will. I chose the P521 elliptic curve because it is the most secure one available, although I believe the tradeoff is larger keys. It might be worth it to choose a different curve if we want people to be able to pass in public keys via command line. Signed-off-by: Priya Wadhwa <priyawadhwa@google.com> * Use pointer for pubilc key since rekor expects that Signed-off-by: Priya Wadhwa <priyawadhwa@google.com> * Hash payload before using SignASN1 or VerifyASN1 Signed-off-by: Priya Wadhwa <priyawadhwa@google.com> * use pointer Signed-off-by: Priya Wadhwa <priyawadhwa@google.com> * Switch to P256 curve so that this will work with KMS's Signed-off-by: Priya Wadhwa <priyawadhwa@google.com> Signed-off-by: Dan Lorenc <dlorenc@google.com>
- Loading branch information
priyawadhwa
authored and
Dan Lorenc
committed
Mar 6, 2021
1 parent
1a2a1e2
commit da9a0df
Showing
5 changed files
with
59 additions
and
24 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters