Skip to content

Commit 4371c3e

Browse files
committed
pkg/verify: load default Verifier given a public key
Signed-off-by: Riccardo Schirone <[email protected]>
1 parent 733e0f5 commit 4371c3e

File tree

1 file changed

+1
-2
lines changed

1 file changed

+1
-2
lines changed

pkg/verify/signature.go

+1-2
Original file line numberDiff line numberDiff line change
@@ -96,8 +96,7 @@ func VerifySignatureWithArtifactDigest(sigContent SignatureContent, verification
9696

9797
func getSignatureVerifier(verificationContent VerificationContent, tm root.TrustedMaterial) (signature.Verifier, error) {
9898
if leafCert := verificationContent.Certificate(); leafCert != nil {
99-
// TODO: Inspect certificate's SignatureAlgorithm to determine hash function
100-
return signature.LoadVerifier(leafCert.PublicKey, crypto.SHA256)
99+
return signature.LoadVerifierFromPublicKey(leafCert.PublicKey)
101100
} else if pk := verificationContent.PublicKey(); pk != nil {
102101
return tm.PublicKeyVerifier(pk.Hint())
103102
}

0 commit comments

Comments
 (0)