You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Commit f963d2a
Browse filesBrowse the repository at this point in the historyBrowse files
fix(oidc): rebase on main, fix test/lint regressions after ES256 migration
- Replace TestAzureSigner_ExponentRange (RSA exponent tests) with
TestAzureSigner_ECKeyCompleteness: the azure_factory_test.go added on
main (#1044) tested RSA exponent validation removed by this PR; new
test covers EC key nil-field rejection to keep coverage parity.
- Apply fieldalignment ordering (govet) to aws_signer.go, azure_signer.go,
gcp_signer.go, and the updated azure_factory_test.go struct literals.
- Suppress staticcheck SA1019 on elliptic.Marshal in ComputeKeyID with an
inline nolint; elliptic.Marshal is the only stdlib path from *ecdsa.PublicKey
to the uncompressed point without converting through crypto/ecdh.
- Fix staticcheck QF1008 (remove unnecessary .PublicKey embed selector) in
aws_signer_test.go and backend_jws_test.go.
- Fix shadow declarations in signer_test.go (json.Unmarshal err vars).
- Replace deprecated ecdsa.Sign with ecdsa.SignASN1 + derToRawECDSASignature
in the fakeAzureKVClient test stub (backend_jws_test.go).
- Fix gofmt import ordering in backend_jws_test.go (cloud.google.com before
github.com).
return"", fmt.Errorf("oidc: nil ecdsa public key")
206
206
}
207
-
uncompressed:=elliptic.Marshal(k.Curve, k.X, k.Y)
207
+
uncompressed:=elliptic.Marshal(k.Curve, k.X, k.Y)//nolint:staticcheck // elliptic.Marshal is the only Go stdlib way to get the uncompressed point from *ecdsa.PublicKey without converting to crypto/ecdh first.
0 commit comments