- sign-windows.sh: jsign wrapper using Trusted Signing service principal via OAuth client_credentials flow. Reads SP creds from /etc/gururmm-signing.env (root-only). Uses RFC3161 timestamping (jsign's default Authenticode mode fails against Microsoft ACS). - build-agents.sh: now signs the Windows binary in-place after cargo build and computes sha256 AFTER signing so consumers get correct hashes. - Updated -latest symlinks for both Linux + Windows in the build script. Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
2 lines
104 B
Plaintext
2 lines
104 B
Plaintext
528d87fb07b5e995445336eeb009a8636b9cf7838e4ef6bb4bd39c87d798af4b gururmm-agent-windows-amd64-0.6.0.exe
|