defenseunicorns / uds-package-sigstore

🏭 UDS Sigstore Zarf Package
GNU Affero General Public License v3.0
1 stars 0 forks source link

chore: create initial repository layout and package #2

Closed Racer159 closed 3 months ago

Racer159 commented 4 months ago

This sets up the initial repository layout and package for the uds sigstore package.

bburky commented 4 months ago

TODO. Remind me if I don't get back to this

bburky commented 4 months ago

current sigstore stack to use (basically all of sigstore)

In support of using witness to do in-toto attestations of GitLab CI pipeline runs, using JWT identity. In-toto attestations will be stored in archivista.

Not currently supporting UDS package development or UDS prod deployment (will be for SWF customer envs only).

Racer159 commented 3 months ago

(added issues for the above follow ons)