doc: notation Inspect Command line Spec#500
Conversation
4a5f366 to
12a77ab
Compare
|
@vaninrao10 What's the difference between this PR and #490? BTW, could you revise the PR title to conform the conventional commit style? |
@shizhMSFT - No change. 490 was abandoned as there was an unexpected error with committing its change. Vani just moved the same files/edits into this new PR. Could you remind me the "conventional commit style". I could perhaps make the changes for Vani, so you can approve and she can merge the PR in the morning. |
Basically, changing the PR title to |
FeynmanZhou
left a comment
There was a problem hiding this comment.
Only a couple of comments left above
Codecov Report
@@ Coverage Diff @@
## main #500 +/- ##
=======================================
Coverage 29.57% 29.57%
=======================================
Files 26 26
Lines 1515 1515
=======================================
Hits 448 448
Misses 1050 1050
Partials 17 17 📣 We’re building smart automated test selection to slash your CI/CD build times. Learn more |
646da2f to
3f6528b
Compare
8c07c19 to
1c7f94a
Compare
priteshbandi
left a comment
There was a problem hiding this comment.
LGTM with following feedback
74aa57d to
d797f5c
Compare
aa9f007 to
d71c6f9
Compare
25c03c7 to
83c18f5
Compare
For Shiwei's comment - With "notation inspect < repo/individual-signature-digest >" how do we know whether it is a manifest of a signature or a signed artifact? Since there is an ambiguity, will need the right customer experience approach.
|
Maybe it is more intuitive to introduce a flag later for single signature
|
Added the comment in the new issue so we dont lose this comment. |
fe259dd to
9c02e43
Compare
Changes to the review - Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
to the new branch - Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
…azon.com>and Feynman Update the comments from Shiwei. Signed-off-by: Vani Rao <vaninrao@amazon.com>and Feynman Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
Cert Chain added - Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
Vertical lines added - Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
….com> Vertical lines format change Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
…igned artifact passed in the inspect command - Signed-off-by: Vani Rao <vaninrao@amazon.com> Resolved the ambiguity whether it is a manifest of a signature or a signed artifact passed in the inspect command - Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
…@amazon.com> Shiweis small changes w.r.t space - Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
Caption change Signed-off-by: Vani Rao <vaninrao@amazon.com> Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
4142bd8 to
a7901f1
Compare
yizha1
left a comment
There was a problem hiding this comment.
LGTM, a little bit later, but I want to share my opinions. @vaninrao10 Thanks Vani, you did a great job.
Use Case / Scenarios: - Troubleshooting - Auditing - If verification of the image digest / signature digest fails due towrong certificate configuration, user will execute the inspect commandto extract the certificate thumb print, a hash of a certificate which is a unique identifier for certificates. Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
Use Case / Scenarios: - Troubleshooting - Auditing - If verification of the image digest / signature digest fails due towrong certificate configuration, user will execute the inspect commandto extract the certificate thumb print, a hash of a certificate which is a unique identifier for certificates. Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
Use Case / Scenarios: - Troubleshooting - Auditing - If verification of the image digest / signature digest fails due towrong certificate configuration, user will execute the inspect commandto extract the certificate thumb print, a hash of a certificate which is a unique identifier for certificates. Signed-off-by: vaninrao10 <111005862+vaninrao10@users.noreply.github.com>
Use Case / Scenarios: