fix(qemu): improve VM shutdown with graceful timeouts and PID safety #2479
+51
−8
Chainguard Enforce / Enforce - Commit Signing
succeeded
Apr 13, 2026 in 0s
Successfully verified commit signature.
| CLAIM | DESCRIPTION | |
|---|---|---|
| ✅ | Found Git signature | |
| ✅ | Validated Git signature | |
| ✅ | Validated Rekor entry | |
| ✅ | Allowed by policy |
Details
Certificate
Details
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 258534562549108947592036429307328848183677353006 (0x2d49173a6c065fdc577f1df2ca6a560bf82afc2e)
Signature Algorithm: ECDSA-SHA384
Issuer: O=sigstore.dev,CN=sigstore-intermediate
Validity
Not Before: Apr 13 20:43:29 2026 UTC
Not After : Apr 13 20:53:29 2026 UTC
Subject: Subject Public Key Info:
Public Key Algorithm: ECDSA
Public-Key: (256 bit)
X:
9b:65:2e:88:b7:50:e0:84:dd:ff:a4:1b:55:00:83:
12:35:42:7e:63:11:1c:f3:82:ab:3f:99:ae:f5:50:
3b:38
Y:
57:a5:ab:5e:40:32:a8:01:e0:1d:62:7e:f9:07:01:
80:59:43:2a:b2:02:2d:6f:94:83:bd:a7:69:71:d0:
74:cf
Curve: P-256
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature
X509v3 Extended Key Usage:
Code Signing
X509v3 Subject Key Identifier:
E5:5E:CB:D0:3B:12:46:25:25:63:13:EC:8E:FE:C7:A8:0C:98:B9:25
X509v3 Authority Key Identifier:
keyid:DF:D3:E9:CF:56:24:11:96:F9:A8:D8:E9:28:55:A2:C6:2E:18:64:3F
X509v3 Subject Alternative Name: critical
email:scott-moser-work-v2@chainguard-workstations.iam.gserviceaccount.com
oidcIssuer:
https://accounts.google.com
Unknown extension 1.3.6.1.4.1.57264.1.8
Signed Certificate Timestamp:
BHkAdwB1AN09MGrGxxEyYxkeHJlnNwKiSl643jyt/4eKcoAvKe6OAAABnYiVw/kAAAQDAEYwRAIgDmzuejvunPVXMqjOLKX2EV06sdjecqfvpPr8hB+XMDkCIHyu+1SVCgVbOE5KL2wR9K9+shUFxhcm3uqFfn74Z2/P
Signature Algorithm: ECDSA-SHA384
30:65:02:30:7a:fb:90:30:cd:da:42:af:e1:33:b9:a2:c0:b5:
62:6b:6c:06:4c:36:56:a1:23:b3:37:19:6e:29:75:81:30:b1:
7c:94:ae:a7:22:18:a4:95:48:c0:65:9b:4a:a9:50:21:02:31:
00:8d:58:5c:6a:80:a7:e1:84:37:fa:75:80:66:43:cc:67:f0:
28:09:ea:bd:c8:27:df:87:2f:4c:fb:0e:9d:a1:39:61:93:2d:
eb:15:19:19:f2:bd:50:13:6e:ed:45:aa:81
Rekor Entry
Details
{
"body": "eyJhcGlWZXJzaW9uIjoiMC4wLjEiLCJraW5kIjoiaGFzaGVkcmVrb3JkIiwic3BlYyI6eyJkYXRhIjp7Imhhc2giOnsiYWxnb3JpdGhtIjoic2hhMjU2IiwidmFsdWUiOiI3NGQ0ZTAyNjE3NmI0OTRkYTk4NWNkOGQ3NDYzZWU3NTBiZTZhNmY5NDBiNjc4OGE2Y2RmMDY2YmVlMTRlZTQwIn19LCJzaWduYXR1cmUiOnsiY29udGVudCI6Ik1FVUNJRmUzZGo3RVNybmNKRE5SS1NRMnFsekNDMlMzanhRMHQ0MFEreU95YnRSdkFpRUEwWS85eWx4RUZxazFhbzF1SUZoNW9OYmpidWowR2QvL1Jqc2tvVUxnTDQ0PSIsInB1YmxpY0tleSI6eyJjb250ZW50IjoiTFMwdExTMUNSVWRKVGlCRFJWSlVTVVpKUTBGVVJTMHRMUzB0Q2sxSlNVTXJla05EUVc5SFowRjNTVUpCWjBsVlRGVnJXRTl0ZDBkWU9YaFlabmd6ZVhsdGNGZERMMmR4TDBNMGQwTm5XVWxMYjFwSmVtb3dSVUYzVFhjS1RucEZWazFDVFVkQk1WVkZRMmhOVFdNeWJHNWpNMUoyWTIxVmRWcEhWakpOVWpSM1NFRlpSRlpSVVVSRmVGWjZZVmRrZW1SSE9YbGFVekZ3WW01U2JBcGpiVEZzV2tkc2FHUkhWWGRJYUdOT1RXcFpkMDVFUlhwTmFrRXdUWHBKTlZkb1kwNU5hbGwzVGtSRmVrMXFRVEZOZWtrMVYycEJRVTFHYTNkRmQxbElDa3R2V2tsNmFqQkRRVkZaU1V0dldrbDZhakJFUVZGalJGRm5RVVZ0TWxWMWFVeGtVVFJKVkdRdk5sRmlWbEZEUkVWcVZrTm1iVTFTU0ZCUFEzRjZLMW9LY25aV1VVOTZhRmh3WVhSbFVVUkxiMEZsUVdSWmJqYzFRbmRIUVZkVlRYRnpaMGwwWWpWVFJIWmhaSEJqWkVJd2VqWlBRMEZoUVhkblowZGpUVUUwUndwQk1WVmtSSGRGUWk5M1VVVkJkMGxJWjBSQlZFSm5UbFpJVTFWRlJFUkJTMEpuWjNKQ1owVkdRbEZqUkVGNlFXUkNaMDVXU0ZFMFJVWm5VVlUxVmpkTUNqQkVjMU5TYVZWc1dYaFFjMnAyTjBoeFFYbFpkVk5WZDBoM1dVUldVakJxUWtKbmQwWnZRVlV6T1ZCd2VqRlphMFZhWWpWeFRtcHdTMFpYYVhocE5Ga0tXa1E0ZDFWUldVUldVakJTUVZGSUwwSkZZM2RTV1VaRVl6Sk9kbVJJVVhSaVZ6bDZXbGhKZEdReU9YbGhlVEV5VFd0Q2FtRkhSbkJpYldReFdWaEthd3BNV0dSMlkyMTBlbVJIUmpCaFZ6bDFZM2sxY0ZsWE1IVmFNMDVzWTI1YWNGa3lWbWhaTWs1MlpGYzFNRXh0VG5aaVZFRndRbWR2Y2tKblJVVkJXVTh2Q2sxQlJVSkNRblJ2WkVoU2QyTjZiM1pNTWtacVdUSTVNV0p1VW5wTWJXUjJZakprYzFwVE5XcGlNakIzUzNkWlMwdDNXVUpDUVVkRWRucEJRa05CVVdRS1JFSjBiMlJJVW5kamVtOTJUREpHYWxreU9URmlibEo2VEcxa2RtSXlaSE5hVXpWcVlqSXdkMmRaYTBkRGFYTkhRVkZSUWpGdWEwTkNRVWxGWlhkU05RcEJTR05CWkZGRVpGQlVRbkY0YzJOU1RXMU5Xa2hvZVZwYWVtTkRiMnR3WlhWT05EaHlaaXRJYVc1TFFVeDViblZxWjBGQlFWb3lTV3hqVURWQlFVRkZDa0YzUWtkTlJWRkRTVUUxY3pkdWJ6YzNjSG94Vm5wTGIzcHBlV3c1YUVaa1QzSklXVE51UzI0M05sUTJMMGxSWm14NlFUVkJhVUk0Y25aMFZXeFJiMFlLVjNwb1QxTnBPWE5GWmxOMlpuSkpWa0pqV1ZoS2REZHhhRmcxS3l0SFpIWjZla0ZMUW1kbmNXaHJhazlRVVZGRVFYZE9iMEZFUW14QmFrSTJLelZCZHdwNlpIQkRjaXRGZW5WaFRFRjBWMHB5WWtGYVRVNXNZV2hKTjAwelIxYzBjR1JaUlhkeldIbFZjbkZqYVVkTFUxWlRUVUpzYlRCeGNGVkRSVU5OVVVOT0NsZEdlSEZuUzJab2FFUm1ObVJaUW0xUk9IaHVPRU5uU2paeU0wbEtPU3RJVERCNk4wUndNbWhQVjBkVVRHVnpWa2RTYm5sMlZrRlVZblV4Um5GdlJUMEtMUzB0TFMxRlRrUWdRMFZTVkVsR1NVTkJWRVV0TFMwdExRbz0ifX19fQ==",
"integratedTime": 1776113010,
"logID": "c0d23d6ad406973f9559f3ba2d1ca01f84147d8ffc5b8445c224f98b9591801d",
"logIndex": 1288815853,
"verification": {
"inclusionProof": {
"checkpoint": "rekor.sigstore.dev - 1193050959916656506\n1168303502\nwUhmAedN4X7/Cm5jIo23Hzp+fd28N3fiozonrzzNXlw=\n\n— rekor.sigstore.dev wNI9ajBFAiADUyy1VsjWUPSQfJiqyRb5TncQVlNJxgJK1te9ffcRPwIhAPy5J9zrRrQ7MQYs19JjT2PbHNNBVIZtQKvVUrNUBbFD\n",
"hashes": [
"e919b260825a5f36e101cd1e06abf337729eeec35c33963aff2cb704a7daeeff",
"e26b4e21d46e27a4a49d0115aa72645a867d952ac54c5ee370dc53824ec496b1",
"28b1e1584b3493a0491d45466e17e70328236523e7e8aa4b02008ea0acdfe06f",
"90edb66c6b895a76565c0287daf4ca115e8412d2a586ece6ad5877d51564bfc3",
"4602cd8c5d50a3d7c76b522ef43ebfd1da2949a3a176da2e9f45c2d446b9d0ac",
"e7ea1ec8a50e09eadb947d367b20e57d161149f55e7d8f1aa30d6ee576ad3263",
"c5dc27fa3c452375fa2efa0380350b03047d0c7bbe1d57cacfa6de2e04103d1c",
"2a32ad854969fb285fc65bf56aad53ccbc1c159c24a2b119e9d8bb8bf150ad43",
"db50347501183bc81636c9bea91b24fd9ec9090776db3aa9a18c89b32c9948a1",
"7ef857d910f9217a5f5c490df3134a3f473f258ef9369e9bc18af2bc701978e6",
"447fa0aaa1dcefdfb7f802e79092dd38cd1960a4772a561c303f3be29171cc41",
"c38c930a15d9d65a363d6a5524d493ca15d25632e097b78b8be7752e997ea930",
"2266835fb8663891e9879264d2e3b1c4ca34fd84f7812ddcd26874718d91822b",
"d7e9602e5d4dd8890e69830f02f504cf01508d275fee2314cdd9fa482ad6fdc1",
"7efedf414c87946639c41d4462a50b78ba98074584c19688e6af8558df7986e3",
"d40a5256a3322459ccc3cfa42be2bf7c557d5d37cbe4d75a93ec081c6d1c3253",
"1d38be6c8372beb00a6d47bc0f26eb585ee1986d2f376c789b7a20103fb2eb48",
"aab3eec2e87c5d782af477073e6450a735035373fc7bc6dff3d8871a852b76da",
"de60e1cf196a39f091a570383665af344f97fc2be005d53abdc096274bbd7af2",
"40e333bd06ec27dddfdbaa609bdc595dafe1b1831774d7ad8513c5879be365f5",
"eabaaa4b30e184b71067ff61b5c68771611d2bfa83ef6e51cf2c400f8e0471bc",
"e7d269fd9b1ccb6cc1ae0a192cbb0abb2d1f8750ad354d64873380cdedb1a858",
"db84e5f0bbdc3bb76c1924533c2c7560bd4cb0dc7f1c959fe3f0599cc5a4f057",
"a71e2167a2aa73b50ee07c4521c649854f0b39a71f0461078733baf84d56c21d",
"41b2f63bc6f44111243c481a2d998cae486164e3bf2ef76fcd80e6302479e1c6",
"0ce09ea12328bc8bcb13192122f8aca30f40b8d5e0796b3810293247a11ca985"
],
"logIndex": 1166911591,
"rootHash": "c1486601e74de17eff0a6e63228db71f3a7e7dddbc3777e2a33a27af3ccd5e5c",
"treeSize": 1168303502
},
"signedEntryTimestamp": "MEQCICnVmxtGb6poHDSqfy/RO2dLFqs/mYAH4Lpz2o2gh/hLAiBVv/gUPhl0+PVqYsh+grKPawqsWvzSlegz4+vsqngFvg=="
}
}
Loading