diff --git a/.gitlab-ci.yml b/.gitlab-ci.yml index 68869ff..b9b6976 100644 --- a/.gitlab-ci.yml +++ b/.gitlab-ci.yml @@ -69,3 +69,4 @@ build: done - IMAGE_DIGEST=$(skopeo inspect --format='{{.Digest}}' docker://$FULL_IMAGE_NAME:$TAGS) - cosign sign $FULL_IMAGE_NAME@$IMAGE_DIGEST + - cosign verify $FULL_IMAGE_NAME:$TAGS --certificate-identity "$CI_PROJECT_URL/.gitlab-ci.yml@refs/heads/$CI_DEFAULT_BRANCH" --certificate-oidc-issuer "$CI_SERVER_PROTOCOL://$CI_SERVER_HOST"