From a6c91f2ed9f23d7e8ff71460bcb40db5bea47c1f Mon Sep 17 00:00:00 2001 From: "Frederick F. Kautz IV" Date: Sun, 6 Feb 2022 16:36:40 -0800 Subject: [PATCH 1/2] add fkautz as a maintainer Signed-off-by: Frederick F. Kautz IV --- maintainers/maintainer-list.nix | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/maintainers/maintainer-list.nix b/maintainers/maintainer-list.nix index f9a20ea83424..b9a6daabdcec 100644 --- a/maintainers/maintainer-list.nix +++ b/maintainers/maintainer-list.nix @@ -4010,6 +4010,12 @@ github = "fitzgibbon"; githubId = 617048; }; + fkautz = { + name = "Frederick F. Kautz IV"; + email = "fkautz@alumni.cmu.edu"; + github = "fkautz"; + githubId = 135706; + }; Flakebi = { email = "flakebi@t-online.de"; github = "Flakebi"; From 6df6f276a36d2cc18472e467f94226dd2795f6ba Mon Sep 17 00:00:00 2001 From: "Frederick F. Kautz IV" Date: Sun, 6 Feb 2022 16:15:14 -0800 Subject: [PATCH 2/2] witness: init at 0.1.1 Co-authored-by: zowoq <59103226+zowoq@users.noreply.github.com> Co-authored-by: Patrick Hilhorst Signed-off-by: Frederick F. Kautz IV --- pkgs/tools/security/witness/default.nix | 25 +++++++++++++++++++++++++ pkgs/top-level/all-packages.nix | 2 ++ 2 files changed, 27 insertions(+) create mode 100644 pkgs/tools/security/witness/default.nix diff --git a/pkgs/tools/security/witness/default.nix b/pkgs/tools/security/witness/default.nix new file mode 100644 index 000000000000..571685afb400 --- /dev/null +++ b/pkgs/tools/security/witness/default.nix @@ -0,0 +1,25 @@ +{ lib, buildGoModule, fetchFromGitHub }: + +buildGoModule rec { + pname = "witness"; + version = "0.1.1"; + + src = fetchFromGitHub { + owner = "testifysec"; + repo = pname; + rev = "v${version}"; + sha256 = "sha256-NnDsiDUTCdjsHVA/mHnB8WRnvwFTzETkWUOd7IgMIWE="; + }; + + vendorSha256 = "sha256-zkLparWJsuqrhOQxxV37dBqt6fwpSinTO+paJkbl+sM="; + + # We only want the witness binary, not the helper utilities for generating docs. + subPackages = [ "cmd/witness" ]; + + meta = with lib; { + description = "A pluggable framework for software supply chain security. Witness prevents tampering of build materials and verifies the integrity of the build process from source to target"; + homepage = "https://github.com/testifysec/witness"; + license = licenses.asl20; + maintainers = with maintainers; [ fkautz ]; + }; +} diff --git a/pkgs/top-level/all-packages.nix b/pkgs/top-level/all-packages.nix index 2e7134580a35..0f6b10754f1d 100644 --- a/pkgs/top-level/all-packages.nix +++ b/pkgs/top-level/all-packages.nix @@ -10851,6 +10851,8 @@ with pkgs; SDL = SDL_sixel; }; + witness = callPackage ../tools/security/witness { }; + openconnect = openconnect_gnutls; openconnect_openssl = callPackage ../tools/networking/openconnect {