<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Sigstore on 黄文卓 | DevOps Engineer</title>
    <link>https://socake.github.io/tags/sigstore/</link>
    <description>Recent content in Sigstore on 黄文卓 | DevOps Engineer</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>zh-CN</language>
    <managingEditor>17691281867@163.com (Wenzhuo Huang)</managingEditor>
    <webMaster>17691281867@163.com (Wenzhuo Huang)</webMaster>
    <copyright>© 2026 Wenzhuo Huang</copyright>
    <lastBuildDate>Fri, 17 Oct 2025 10:00:00 +0800</lastBuildDate><atom:link href="https://socake.github.io/tags/sigstore/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>Sigstore/Cosign 镜像签名实战：从 keyless 签名到准入策略验证</title>
      <link>https://socake.github.io/posts/sigstore-cosign-signing-workflow/</link>
      <pubDate>Fri, 17 Oct 2025 10:00:00 +0800</pubDate>
      <author>17691281867@163.com (Wenzhuo Huang)</author>
      <guid>https://socake.github.io/posts/sigstore-cosign-signing-workflow/</guid>
      <description>一份 Sigstore 生产化落地笔记：讲清楚 Fulcio/Rekor/Cosign 三件套的工作原理，演示 GitHub Actions 和 GitLab CI 下的 keyless 签名流水线，对接 Kyverno/Policy Controller 做准入验证，并分享签名验证性能、Rekor 不可用降级、多签策略等真实运维经验。</description>
      <media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://socake.github.io/posts/sigstore-cosign-signing-workflow/featured.jpg" />
    </item>
    
  </channel>
</rss>
