Your message dated Thu, 15 Feb 2024 19:00:21 +0000
with message-id <e1ragy5-00be6o...@fasolo.debian.org>
and subject line Bug#1050314: fixed in rekor 1.3.4-1
has caused the Debian Bug report #1050314,
regarding ITP: golang-github-sigstore-rekor -- Software Supply Chain 
Transparency Log
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
1050314: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1050314
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: wnpp
Severity: wishlist
Owner: Reinhard Tartler <siret...@tauware.de>

* Package name    : golang-github-sigstore-rekor
  Version         : 1.2.2-1
  Upstream Author : sigstore
* URL             : https://github.com/sigstore/rekor
* License         : Apache-2.0
  Programming Lang: Go
  Description     : Software Supply Chain Transparency Log

 Rekor's goals are to provide an immutable tamper resistant ledger of
 metadata generated within a software projects supply chain. Rekor will
 enable software maintainers and build systems to record signed metadata
 to an immutable record. Other parties can then query said metadata to
 enable them to make informed decisions on trust and non-repudiation of an
 object's lifecycle.
 .
 The Rekor project provides a restful API based server for validation and
 a transparency log for storage. A CLI application is available to make
 and verify entries, query the transparency log for inclusion proof,
 integrity verification of the transparency log or retrieval of entries
 by either public key or artifact.
 .
 Rekor fulfils the signature transparency role of sigstore's software
 signing infrastructure. However, Rekor can be run on its own and is
 designed to be extensible to working with different manifest schemas and
 PKI tooling.

This package will be maintained under the pkg-golang community's umbrella.
It is going to be used by container management tools that are linked into
podman

--- End Message ---
--- Begin Message ---
Source: rekor
Source-Version: 1.3.4-1
Done: Simon Josefsson <si...@josefsson.org>

We believe that the bug you reported is fixed in the latest version of
rekor, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1050...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Simon Josefsson <si...@josefsson.org> (supplier of updated rekor package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Fri, 02 Feb 2024 00:49:07 +0100
Source: rekor
Binary: golang-github-sigstore-rekor-dev rekor rekor-dbgsym
Architecture: source all amd64
Version: 1.3.4-1
Distribution: experimental
Urgency: medium
Maintainer: Debian Go Packaging Team <team+pkg...@tracker.debian.org>
Changed-By: Simon Josefsson <si...@josefsson.org>
Description:
 golang-github-sigstore-rekor-dev - Software Supply Chain Transparency Log 
(library)
 rekor      - Software Supply Chain Transparency Log (program)
Closes: 990249 1050314
Changes:
 rekor (1.3.4-1) experimental; urgency=medium
 .
   [ Simon Josefsson ]
   * Further packaging and release. Closes: #990249, #1050314.
 .
   [ Reinhard Tartler ]
   * Initial packaging.
Checksums-Sha1:
 e9e2261c6f4d29255f12b0c86c90648a39deb745 2571 rekor_1.3.4-1.dsc
 18ded9ac368c7ed80a6491db54071dd8912ba06d 851828 rekor_1.3.4.orig.tar.gz
 d9f45f0e9d99732ada7b3081a3a400d76c484ed2 3324 rekor_1.3.4-1.debian.tar.xz
 8926dde5f34fda933548f04c186dbc410616a5e0 296808 
golang-github-sigstore-rekor-dev_1.3.4-1_all.deb
 7ebb05a8695adc521405e5586589c5c2f3c79180 6103612 rekor-dbgsym_1.3.4-1_amd64.deb
 b4d11b4ef6ba1218863469f860ffca6dfeb54f9d 24894 rekor_1.3.4-1_amd64.buildinfo
 5d093ae73f568600b949722e4283d5dc6c0592ab 5642312 rekor_1.3.4-1_amd64.deb
Checksums-Sha256:
 018940a9957ed0d86b9e03b42c05f70625620a5a021c0370931322eb864e297c 2571 
rekor_1.3.4-1.dsc
 4cffef84dbd356cc81be77c76a96660076a2a2b268cd9ea76a21d518eabcf954 851828 
rekor_1.3.4.orig.tar.gz
 efd77a5f1fa77756e907e349bc6b549e4c4071944b380f4b21e4572105939419 3324 
rekor_1.3.4-1.debian.tar.xz
 e74203cfb31aa4d99b8c7e27c7fa8bb72449681f3cb4eed85708a0a3e822d334 296808 
golang-github-sigstore-rekor-dev_1.3.4-1_all.deb
 6ec3ecf74921f388a51e1cb2cd03ee388ea3a8fe781a663f4259169373ff8411 6103612 
rekor-dbgsym_1.3.4-1_amd64.deb
 fc2213562f6a85259517d6316b9919c55b6a144a8841a9751e30eae38eea083a 24894 
rekor_1.3.4-1_amd64.buildinfo
 cabc6f71050ae9128867c7e24c5aff5edb1c1235319da5edd2cc7d830b300a17 5642312 
rekor_1.3.4-1_amd64.deb
Files:
 51c7decd310212e25d678394d9d3803f 2571 golang optional rekor_1.3.4-1.dsc
 63fdaa9e38910201b355f25c3e07e105 851828 golang optional rekor_1.3.4.orig.tar.gz
 c947fd3cb64ccd51b8aa26355fb86272 3324 golang optional 
rekor_1.3.4-1.debian.tar.xz
 2158a0ad95903e540516db5f479c3a96 296808 golang optional 
golang-github-sigstore-rekor-dev_1.3.4-1_all.deb
 778071d85de43b6637048e7e01c64988 6103612 debug optional 
rekor-dbgsym_1.3.4-1_amd64.deb
 61f0bb9bf1ec992e8a4a70d7a6daa95a 24894 golang optional 
rekor_1.3.4-1_amd64.buildinfo
 f08de0ce38de082e0a3d8639d668a49d 5642312 golang optional 
rekor_1.3.4-1_amd64.deb

-----BEGIN PGP SIGNATURE-----

iIoEARYIADIWIQSjzJyHC50xCrrUzy9RcisI/kdFogUCZcz5lBQcc2ltb25Aam9z
ZWZzc29uLm9yZwAKCRBRcisI/kdFouU/AP9Q6ijuzM32byOfRhfvQMirUXnPz9NK
Lj4mAs5zleXF8QD7BqFa6I1trhvnQXeg09gs6szv2eGNEB7aagWI1tCuHg4=
=KUSQ
-----END PGP SIGNATURE-----

Attachment: pgpyG4fnUrQY_.pgp
Description: PGP signature


--- End Message ---

Reply via email to