[signingscript] run osslsigncode verify with known CA bundles
还没有人认领这个 Issue。
评估
调研方向
从 signingscript 实现和链接的 Bugzilla 报告开始,然后确定当前签名如何处理验证。完成标准是为受支持的 Windows 版本存储 CA bundle,并在签名时使用它们运行 osslsigncode verify。
由索引模型根据 Issue 内容生成。
描述
As a followup for https://bugzilla.mozilla.org/show_bug.cgi?id=1769081, one thing we could do to detect this kind of thing earlier is verify at signing time that (as far as we can determine) all supported windows versions will be able to verify our signed artifact, e.g. by storing CA bundles that contain the trusted CAs for each version and running osslsigncode against that.
- 主要语言
- Python
- 星标
- 16
- 派生
- 38
- 平均合并
- 1 天 7 小时
- 30 天内合并 PR
- 14
贡献指南
这个仓库没有索引到贡献指南
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
mozilla-releng/scriptworker-scripts 的其他 Issue
-
难度 5/5 一周以上 新手友好度 15/100
-
难度 5/5 一周以上 新手友好度 25/100
-
treescript
难度 5/5 一周以上 新手友好度 35/100
mozilla-releng/scriptworker-scripts#1055 · 2 条评论 ·
-
难度 4/5 3-5 天 新手友好度 32/100
mozilla-releng/scriptworker-scripts#994 · 1 条评论 ·
-
难度 4/5 3-5 天 新手友好度 35/100
mozilla-releng/scriptworker-scripts#980 · 1 条评论 ·
查看 mozilla-releng/scriptworker-scripts 的全部 Issue
相似的 Issue
-
agent-ready documentation needs-triage
难度 1/5 1-3 小时 新手友好度 88/100
-
documentation
难度 1/5 1 小时以内 新手友好度 91/100
-
workflow-status page template still says reusable workflows are "triggered only by workflow_call:" 未关闭
难度 1/5 1 小时以内 新手友好度 92/100
-
instance instance add
难度 1/5 1 小时以内 新手友好度 72/100
searxng/searx-instances#939 · 1 条评论 ·
-
area-deployment area-integrations triage:bot-seen
难度 2/5 半天 新手友好度 86/100