Adds one positive and one negative test for RFC3161 timestamps:
Updates d.txt.good.sigstore to include an RFC3161 timestamp.
Updates trusted_root.d.json to include the necessary timestamp authority cert chain.
Adds the test_verify_rejects_bad_tsa_timestamp test case which attempts to verify a bundle containing an RFC3161 timestamp which was issued outside the validity window of the Fulcio signing certificate.
Adds one positive and one negative test for RFC3161 timestamps:
d.txt.good.sigstore
to include an RFC3161 timestamp.trusted_root.d.json
to include the necessary timestamp authority cert chain.test_verify_rejects_bad_tsa_timestamp
test case which attempts to verify a bundle containing an RFC3161 timestamp which was issued outside the validity window of the Fulcio signing certificate.