Public certificates and trust material used to verify software and releases published by me.
root
└── issuing
└── coalaura Trust anchor for this PKI.
Intermediate CA signed by the root.
Certificate used to sign software and release artifacts.
Verify the signing certificate against the chain:
openssl verify -CAfile root.pem -untrusted issuing.pem coalaura.pem Inspect the signing certificate and its SHA-256 fingerprint:
openssl x509 -in coalaura.pem -noout -subject -issuer -serial -dates -fingerprint -sha256