File: signed.go

package info (click to toggle)
cosign 2.5.0-2
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid, trixie
  • size: 4,960 kB
  • sloc: sh: 222; makefile: 170
file content (70 lines) | stat: -rw-r--r-- 1,819 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
//
// Copyright 2021 The Sigstore Authors.
//
// Licensed under the Apache License, Version 2.0 (the "License");
// you may not use this file except in compliance with the License.
// You may obtain a copy of the License at
//
//     http://www.apache.org/licenses/LICENSE-2.0
//
// Unless required by applicable law or agreed to in writing, software
// distributed under the License is distributed on an "AS IS" BASIS,
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
// See the License for the specific language governing permissions and
// limitations under the License.

package empty

import (
	"errors"
	"fmt"

	"github.com/google/go-containerregistry/pkg/name"
	v1 "github.com/google/go-containerregistry/pkg/v1"
	"github.com/google/go-containerregistry/pkg/v1/empty"
	"github.com/sigstore/cosign/v2/pkg/oci"
)

type signedImage struct {
	v1.Image
	digest       v1.Hash
	signature    oci.Signatures
	attestations oci.Signatures
}

func (se *signedImage) Signatures() (oci.Signatures, error) {
	return se.signature, nil
}

func (se *signedImage) Attestations() (oci.Signatures, error) {
	return se.attestations, nil
}

func (se *signedImage) Attachment(name string) (oci.File, error) { //nolint: revive
	return nil, errors.New("no attachments")
}

func (se *signedImage) Digest() (v1.Hash, error) {
	if se.digest.Hex == "" {
		return v1.Hash{}, fmt.Errorf("digest not available")
	}
	return se.digest, nil
}

func SignedImage(ref name.Reference) (oci.SignedImage, error) {
	var err error
	d := v1.Hash{}
	base := empty.Image
	if digest, ok := ref.(name.Digest); ok {
		d, err = v1.NewHash(digest.DigestStr())
		if err != nil {
			return nil, err
		}
	}
	return &signedImage{
		Image:        base,
		digest:       d,
		signature:    Signatures(),
		attestations: Signatures(),
	}, nil
}