tree fe267f8daf6008acf67bb0143dcdfda5bb7e63d2
parent 06ed59941769f55b7d54158a0be85a16a7475fa7
author asraa <asraa@google.com> 1662581129 -0500
committer GitHub <noreply@github.com> 1662581129 -0500
gpgsig -----BEGIN PGP SIGNATURE-----
 
 wsBcBAABCAAQBQJjGPmJCRBK7hj4Ov3rIwAAgGMIABgIsutJ5RCXY4TCzM3srd+Y
 JBODVoY2qvf1lv1WvVIn6sS2aLlVvNvzTrc5IONNX5QcKgK1jrSKyFvuoUxxW9WW
 ylnG6iMjsKK4aRxk85yR/agVNiVA5EhEJMpXsjvwzjpa/fQ4xeQ68WMvGV3q3NNc
 Dyl+Ct74WYHEMQJ/8yJbtMYGcj3ajblY48F50v5SOSUYlbEVHUxI547WsJuuL1ZZ
 +BChfGGLZU29hsQFDQP0XmHi3M6lLlFeINdutu4QkwYvcbWI1amUerqCjbZj+Rue
 RZGbHK6ZHmp0C6b0h16V77o2GA6O0xFge1Y2cnz6mVYUOGNIE7TMtHAQ3SQIu0o=
 =GKR9
 -----END PGP SIGNATURE-----
 

feat: Support ecdsa and RSA keys (#270 with backwards compatibility) (#357)

* * fix!: ECDSA verifiers now expect PEM-encoded public keys per TUF specification
* feat: ECDSA signers are now implemented
* feat: RSA verifiers and signers are implemented

BREAKING CHANGE: ECDSA verifiers expect PEM-encoded public keys. If you rely
on previous behavior of hex-encoded public keys for verifiers, then you must
import pkg/deprecated/set_ecdsa that will allow a fallback for hex-encoded
ECDSA keys.

Co-authored-by: Asra Ali <asraa@google.com>
Co-authored-by: Toby Bristow <toby.bristow@qush.com>
Signed-off-by: Asra Ali <asraa@google.com>

* add comment

Signed-off-by: Asra Ali <asraa@google.com>

Signed-off-by: Asra Ali <asraa@google.com>
Co-authored-by: Toby Bristow <toby.bristow@qush.com>