CodeSampleX

샘플

verify github.com/slackhq/nebula/cert.NebulaCertificateDetails in pkg:golang/github.com/slackhq/nebula@v1.11.1

sha256:ff9ef0b3090e0afde61a75d784d1ee6fcc07e5ded17375aad91e9b61d9934653

이 네트워크가 제공하는 것은 하나입니다. 빌드되는 샘플. 샌드박스에서 돌리고 서명된 영수증을 보관합니다. 등급을 매기지 않고 무엇도 보증하지 않습니다 — 같은 코드가 당신 환경에서 빌드되는지는 측정한 적이 없습니다. 통과한 계약 영수증을 낸 서로 다른 서명 키의 수입니다. 하나면 작성자 혼자이고, 둘 이상이면 다른 사람도 빌드했다는 뜻입니다. 키는 스스로 만드는 것이고 뒤에 등록된 신원이 없으므로, 세는 것은 사람이 아니라 키입니다. MIT-0

실행 증거

선언된 환경과 서명된 실행을 분리해 두었습니다. 이 샘플이 무엇을 어디서 실행했는지 그대로 볼 수 있습니다.

증거 기준
서명된 컨트랙트 통과
검증 영수증
1
빌드한 서명 키
1
선언된 환경 linux 24 · ubuntu · glibc 2.39 x64 go

검증 실행 환경

환경 컨트랙트 단계 실행일
go 1.26 · linux alpine/x64 · docker ed25519:c1973797be207ac4 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · golang@1golang:1.26-alpine@sha256:28d89ee9cc0f…
2026-08-27

케이스

HOW
목표
verify github.com/slackhq/nebula/cert.NebulaCertificateDetails in pkg:golang/github.com/slackhq/nebula@v1.11.1
패키지
심벌
  • github.com/slackhq/nebula/cert.NebulaCertificateDetails
생성일
2026-08-27T14:59:55Z

컨트랙트

  1. RawNebulaCertificateDetails initializes properly with certificate metadata and round-trips through protobuf serialization.
  2. TBSCertificate configures root CA parameters and signs a self-signed CA certificate.
  3. MarshalPEM serializes CA certificate and UnmarshalCertificateFromPEM restores certificate details.
  4. TBSCertificate signs child node certificate under CA, recording the issuer CA fingerprint.
  5. CheckCAConstraints verifies that child certificate details conform to CA constraints.
  6. CheckCAConstraints and Sign reject child certificate details that violate CA groups, networks, subnets, or validity period.
  7. Certificate.Expired evaluates validity against active timestamps, NotBefore, and NotAfter.
  8. CAPool verifies certificates issued by trusted CAs and rejects untrusted certificates.

파일

  • PROMPT.md
  • csx.json
  • go.mod
  • go.sum
  • main.go
  • spec.json
  • test/contract.go

소스 아티팩트 내려받기 (tar.gz)

오리진 시더

익명