Skip to content

docs(debugging): add securityContext and /proc/1/root tips for epheme…

0b57d75
Select commit
Loading
Failed to load commit list.
Closed

docs(debugging): add securityContext and /proc/1/root tips for ephemeral containers #3333

docs(debugging): add securityContext and /proc/1/root tips for epheme…
0b57d75
Select commit
Loading
Failed to load commit list.
Chainguard Enforce / Enforce - Commit Signing succeeded May 17, 2026 in 0s

Successfully verified commit signature.

CLAIM DESCRIPTION
Found Git signature
Validated Git signature
Validated Rekor entry
Allowed by policy

Details

Certificate

Details
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 272245581923645379862253346258626780529200275710 (0x2fafea02f80bb36d56166a47386bb52baf2520fe)
    Signature Algorithm: ECDSA-SHA384
        Issuer: O=sigstore.dev,CN=sigstore-intermediate
        Validity
            Not Before: May 17 19:24:36 2026 UTC
            Not After : May 17 19:34:36 2026 UTC
        Subject:         Subject Public Key Info:
            Public Key Algorithm: ECDSA
                Public-Key: (256 bit)
                X:
                    4c:7d:96:e1:85:07:68:0d:54:00:33:53:e7:e5:36:
                    39:a3:5d:f7:bb:44:50:34:f6:d1:a7:66:58:0d:47:
                    2d:12
                Y:
                    ca:49:18:a2:49:60:be:50:5a:14:e4:cd:c8:10:07:
                    cb:dd:1b:73:ec:d6:61:f4:71:39:8d:03:2e:3e:97:
                    69:9e
                Curve: P-256
        X509v3 extensions:
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage:
                Code Signing
            X509v3 Subject Key Identifier:
                70:1D:26:4A:29:13:D5:BB:2A:83:54:8C:C8:3F:30:F4:95:D3:CF:B7
            X509v3 Authority Key Identifier:
                keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
            X509v3 Subject Alternative Name: critical
                email:fan.yang@chainguard.dev
            oidcIssuer:
                https://accounts.google.com
            Unknown extension 1.3.6.1.4.1.57264.1.8
            Signed Certificate Timestamp:
                BHoAeAB2AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnjdlwYEAAAQDAEcwRQIhAJW8oC3J2ZqpLsgcAzQdXLOaIzv2LiAZA+himus4TfSmAiAtTXDkJ0VqiCK01BZHLmbeVuRi8BYyK8rY6b2WBqeTEQ==

    Signature Algorithm: ECDSA-SHA384
         30:65:02:31:00:cb:28:f4:f1:29:c6:f1:d2:52:70:89:87:b7:
         76:bd:40:63:37:2a:fc:d2:48:77:a7:58:a1:b5:95:04:6e:1c:
         8f:f2:d6:e9:d2:43:8d:d9:fd:d3:9d:57:fb:3b:65:24:31:02:
         30:3f:d4:90:92:75:2e:f4:a1:4e:f8:2c:8e:66:92:0b:92:da:
         28:98:1f:6d:c7:77:32:f9:62:ad:9b:76:e2:28:2c:9d:ce:9e:
         e4:69:0a:95:f2:f3:bf:88:53:92:1f:69:1b

Rekor Entry

Details
{
  "body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiI4ZDBhMTVjZGI2NWFkMjAzZjA1Yzg0OGE1MmI3NmVlMTJiMjAyMWExNDMyMzViYWM1Y2I1ODRlZmM1OWI1MTlhIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FUUNJR1hTWnJobnZhRDdFUVZ4MUJzMzhob2NwYWJqYWJNVWFDekQwVlVhYzNPVkFpQWhJZDBlSWVQSGFqc2FIcTVWK2JlYXUzZk1QblJIRklNT2tDblNCQmtrRHc9PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXdSRU5EUVd4aFowRjNTVUpCWjBsVlREWXZjVUYyWjB4ek1qRlhSbTF3U0U5SGRURkxOamhzU1ZBMGQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFpkMDVVUlROTlZHdDVUa1JOTWxkb1kwNU5hbGwzVGxSRk0wMVVhM3BPUkUweVYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVZVU0RKWE5GbFZTR0ZCTVZWQlJFNVVOU3RWTWs5aFRtUTVOM1JGVlVSVU1qQmhaRzBLVjBFeFNFeFNURXRUVW1scFUxZERLMVZHYjFVMVRUTkpSVUZtVEROU2RIbzNUbHBvT1VoRk5XcFJUWFZRY0dSd2JuRlBRMEZZVlhkblowWjRUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlZqUWpCdENsTnBhMVF4WW5OeFp6RlRUWGxFT0hjNVNsaFVlamRqZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDBwUldVUldVakJTUVZGSUwwSkNjM2RIV1VWWVdtMUdkVXh1YkdoaWJXUkJXVEpvYUdGWE5XNWtWMFo1V2tNMWExcFlXWGRMVVZsTFMzZFpRZ3BDUVVkRWRucEJRa0ZSVVdKaFNGSXdZMGhOTmt4NU9XaFpNazUyWkZjMU1HTjVOVzVpTWpsdVlrZFZkVmt5T1hSTlEzTkhRMmx6UjBGUlVVSm5OemgzQ2tGUlowVklVWGRpWVVoU01HTklUVFpNZVRsb1dUSk9kbVJYTlRCamVUVnVZakk1Ym1KSFZYVlpNamwwVFVsSFMwSm5iM0pDWjBWRlFXUmFOVUZuVVVNS1FraDNSV1ZuUWpSQlNGbEJNMVF3ZDJGellraEZWRXBxUjFJMFkyMVhZek5CY1VwTFdISnFaVkJMTXk5b05IQjVaME00Y0Rkdk5FRkJRVWRsVGpKWVFncG5VVUZCUWtGTlFWSjZRa1pCYVVWQmJHSjVaMHhqYmxwdGNXdDFlVUozUkU1Q01XTnpOVzlxVHk5WmRVbENhMFEyUjB0aE5ucG9UamxMV1VOSlF6Rk9DbU5QVVc1U1YzRkpTWEpVVlVaclkzVmFkRFZYTlVkTWQwWnFTWEo1ZEdwd2RscFpSM0ExVFZKTlFXOUhRME54UjFOTk5EbENRVTFFUVRKblFVMUhWVU1LVFZGRVRFdFFWSGhMWTJKNE1HeEtkMmxaWlROa2NqRkJXWHBqY1M5T1NrbGtObVJaYjJKWFZrSkhOR05xTDB4WE5tUktSR3BrYmprd05URllLM3AwYkFwS1JFVkRUVVF2Vld0S1NqRk1kbE5vVkhabmMycHRZVk5ETlV4aFMwcG5abUpqWkROTmRteHBjbHAwTWpScFozTnVZelpsTlVkclMyeG1USHAyTkdoVUNtdG9PWEJIZHowOUNpMHRMUzB0UlU1RUlFTkZVbFJKUmtsRFFWUkZMUzB0TFMwSyJ9fX19",
  "integratedTime": 1779045876,
  "logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
  "logIndex": 1563749044,
  "verification": {
    "inclusionProof": {
      "checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1441847004\nrFr5fJppIJsawDDPf5U7si+hA88549xNOrL+VpFmKhA=\n\n— rekor.sigstore.dev wNI9ajBGAiEA9uq4+T1JNVzJsr4eItCp50ViwQL9/74ByHbNYz1UDyQCIQCe6mNAYgcIq+mFl6dS17NSo7XtlznHQ7mjutEeXN0qlQ==\n",
      "hashes": [
        "9e69cf3cdd5296c064b5eda15874ca14c7c7f2f0c28e7b0992294d0f0b43156d",
        "fcf119d63e4330aae5765723c20c2643f4b2223bda50f6835d10b170d9529334",
        "34b58d0a6875984ac0b33d6b775436b4970c95d69e0000c2495f740401ab6f8b",
        "afc219952250b7ea2dd6f5c06fbbe673527bdb69e8c417664e3038778eff2fd1",
        "df2820a22657baa2bce6eb1fae2a8362d5e474a6bc7449a2a1e74f09ad60f940",
        "5c42d59d558ee997a65f7cbe485c59d495dcb075a87d55cb8066c9a93c7c4c10",
        "14f1c78a6a6d998440c46b685f85f7e7785dd9cd2008ba945db2915b9db6c55b",
        "9eacb32d10f5ea8029d611fd6cb3bdf0b4ed5bb1401968e87a1a17a196cc5cb4",
        "4f51d77ac1ded1f13d117a1b27b139eae0d8f537fbb23e34a1db426795cff53c",
        "a1a49790e63828a02dd9488a1ab8eee6f296fbf11cccb0e6c338637489362a2d",
        "a182a2185eb5005e05f08aacfa0c317686a3224140e181f878b863b435bb5d67",
        "f48144f77c56cac3cad1d519b60338ff62844048c2f7904719c4aa55b3e9ba5c",
        "59a146119f5a79f8cad40ff2403773855422cc010721037d7e8582fdc0c14968",
        "996ce8b1ae2c58f09a68d445e9b9d7666d01879b386d27c48070cbda1f8e8e10",
        "eba013833108d9857a7eecda1880c82a20871638a967c58697118e29f874ece4",
        "54b84dd2a0a46508aea79cb824c8cd7881c74db60235be55086e7383ceaac8d8",
        "d625635c1c687b39e049362097bc71ed066de936302111f7582ca0be518c54ae",
        "111228198bfb2aeeabd7f9dee3bf766bd76fc19efb5a13fa420561c54f12aac2",
        "de23acdd2106f8e1d01ca38602cbe80f0f2331565b119f77f04851b88cae9f90",
        "80e3ac1d6de81dde564644c9d8bbcc31058264b8c33396223c839ad92b030df5",
        "04a07d6583fcb5f67db036d6499a1a82a2ada0f9c1a2f0b682845e73241877d9",
        "793f85e3bd60d8725f778dd4e23e0bd4f20192de2b2db1d077fa4e47fae594ed",
        "0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
      ],
      "logIndex": 1441844782,
      "rootHash": "ac5af97c9a69209b1ac030cf7f953bb22fa103cf39e3dc4d3ab2fe5691662a10",
      "treeSize": 1441847004
    },
    "signedEntryTimestamp": "MEUCIAzqqQEEibpN8brT9UrN1EmyqqDkV5xrSZQ/p5k5HwblAiEAnDqXKd7jalo/SRQ5I9VW3HNdEP+qRYvsqyVfRiS0aY8="
  }
}