Skip to content

Commit f87ab73

Browse files
committed
pkg/verify: load default Verifier given a public key
Signed-off-by: Riccardo Schirone <[email protected]>
1 parent 1703142 commit f87ab73

File tree

1 file changed

+1
-2
lines changed

1 file changed

+1
-2
lines changed

pkg/verify/signature.go

+1-2
Original file line numberDiff line numberDiff line change
@@ -97,8 +97,7 @@ func VerifySignatureWithArtifactDigest(sigContent SignatureContent, verification
9797

9898
func getSignatureVerifier(verificationContent VerificationContent, tm root.TrustedMaterial) (signature.Verifier, error) {
9999
if leafCert := verificationContent.Certificate(); leafCert != nil {
100-
// TODO: Inspect certificate's SignatureAlgorithm to determine hash function
101-
return signature.LoadVerifier(leafCert.PublicKey, crypto.SHA256)
100+
return signature.LoadVerifierFromPublicKey(leafCert.PublicKey)
102101
} else if pk := verificationContent.PublicKey(); pk != nil {
103102
return tm.PublicKeyVerifier(pk.Hint())
104103
}

0 commit comments

Comments
 (0)