Diff of the two buildlogs:

--
--- b1/build.log	2025-01-30 14:56:00.243461628 +0000
+++ b2/build.log	2025-01-30 15:04:38.991950668 +0000
@@ -1,6 +1,6 @@
 I: pbuilder: network access will be disabled during build
-I: Current time: Thu Jan 30 02:53:13 -12 2025
-I: pbuilder-time-stamp: 1738248793
+I: Current time: Fri Jan 31 04:56:22 +14 2025
+I: pbuilder-time-stamp: 1738248982
 I: Building the build Environment
 I: extracting base tarball [/var/cache/pbuilder/trixie-reproducible-base.tgz]
 I: copying local configuration
@@ -22,52 +22,84 @@
 dpkg-source: info: unpacking sigsum-go_0.10.1-1.debian.tar.xz
 I: Not using root during the build.
 I: Installing the build-deps
-I: user script /srv/workspace/pbuilder/11201/tmp/hooks/D02_print_environment starting
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/D01_modify_environment starting
+debug: Running on ff64a.
+I: Changing host+domainname to test build reproducibility
+I: Adding a custom variable just for the fun of it...
+I: Changing /bin/sh to bash
+'/bin/sh' -> '/bin/bash'
+lrwxrwxrwx 1 root root 9 Jan 30 14:57 /bin/sh -> /bin/bash
+I: Setting pbuilder2's login shell to /bin/bash
+I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/D01_modify_environment finished
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/D02_print_environment starting
 I: set
-  BUILDDIR='/build/reproducible-path'
-  BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other'
-  BUILDUSERNAME='pbuilder1'
-  BUILD_ARCH='armhf'
-  DEBIAN_FRONTEND='noninteractive'
-  DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=3 '
-  DISTRIBUTION='trixie'
-  HOME='/root'
-  HOST_ARCH='armhf'
+  BASH=/bin/sh
+  BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath
+  BASH_ALIASES=()
+  BASH_ARGC=()
+  BASH_ARGV=()
+  BASH_CMDS=()
+  BASH_LINENO=([0]="12" [1]="0")
+  BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:.
+  BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment")
+  BASH_VERSINFO=([0]="5" [1]="2" [2]="37" [3]="1" [4]="release" [5]="arm-unknown-linux-gnueabihf")
+  BASH_VERSION='5.2.37(1)-release'
+  BUILDDIR=/build/reproducible-path
+  BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other'
+  BUILDUSERNAME=pbuilder2
+  BUILD_ARCH=armhf
+  DEBIAN_FRONTEND=noninteractive
+  DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=6 '
+  DIRSTACK=()
+  DISTRIBUTION=trixie
+  EUID=0
+  FUNCNAME=([0]="Echo" [1]="main")
+  GROUPS=()
+  HOME=/root
+  HOSTNAME=i-capture-the-hostname
+  HOSTTYPE=arm
+  HOST_ARCH=armhf
   IFS=' 	
   '
-  INVOCATION_ID='8516adecd9df448c8ae36e25312f575f'
-  LANG='C'
-  LANGUAGE='en_US:en'
-  LC_ALL='C'
-  MAIL='/var/mail/root'
-  OPTIND='1'
-  PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games'
-  PBCURRENTCOMMANDLINEOPERATION='build'
-  PBUILDER_OPERATION='build'
-  PBUILDER_PKGDATADIR='/usr/share/pbuilder'
-  PBUILDER_PKGLIBDIR='/usr/lib/pbuilder'
-  PBUILDER_SYSCONFDIR='/etc'
-  PPID='11201'
-  PS1='# '
-  PS2='> '
+  INVOCATION_ID=dc86f5e3399843e78c8c51916b2102e2
+  LANG=C
+  LANGUAGE=it_CH:it
+  LC_ALL=C
+  MACHTYPE=arm-unknown-linux-gnueabihf
+  MAIL=/var/mail/root
+  OPTERR=1
+  OPTIND=1
+  OSTYPE=linux-gnueabihf
+  PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path
+  PBCURRENTCOMMANDLINEOPERATION=build
+  PBUILDER_OPERATION=build
+  PBUILDER_PKGDATADIR=/usr/share/pbuilder
+  PBUILDER_PKGLIBDIR=/usr/lib/pbuilder
+  PBUILDER_SYSCONFDIR=/etc
+  PIPESTATUS=([0]="0")
+  POSIXLY_CORRECT=y
+  PPID=15902
   PS4='+ '
-  PWD='/'
-  SHELL='/bin/bash'
-  SHLVL='2'
-  SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.N603lR7g/pbuilderrc_wWZS --distribution trixie --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/trixie-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.N603lR7g/b1 --logfile b1/build.log sigsum-go_0.10.1-1.dsc'
-  SUDO_GID='110'
-  SUDO_UID='103'
-  SUDO_USER='jenkins'
-  TERM='unknown'
-  TZ='/usr/share/zoneinfo/Etc/GMT+12'
-  USER='root'
-  _='/usr/bin/systemd-run'
-  http_proxy='http://10.0.0.15:3142/'
+  PWD=/
+  SHELL=/bin/bash
+  SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix
+  SHLVL=3
+  SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.N603lR7g/pbuilderrc_mJqQ --distribution trixie --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/trixie-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.N603lR7g/b2 --logfile b2/build.log sigsum-go_0.10.1-1.dsc'
+  SUDO_GID=114
+  SUDO_UID=109
+  SUDO_USER=jenkins
+  TERM=unknown
+  TZ=/usr/share/zoneinfo/Etc/GMT-14
+  UID=0
+  USER=root
+  _='I: set'
+  http_proxy=http://10.0.0.15:3142/
 I: uname -a
-  Linux virt32z 6.1.0-30-armmp-lpae #1 SMP Debian 6.1.124-1 (2025-01-12) armv7l GNU/Linux
+  Linux i-capture-the-hostname 6.1.0-30-arm64 #1 SMP Debian 6.1.124-1 (2025-01-12) aarch64 GNU/Linux
 I: ls -l /bin
   lrwxrwxrwx 1 root root 7 Nov 22 14:40 /bin -> usr/bin
-I: user script /srv/workspace/pbuilder/11201/tmp/hooks/D02_print_environment finished
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/D02_print_environment finished
  -> Attempting to satisfy build-dependencies
  -> Creating pbuilder-satisfydepends-dummy package
 Package: pbuilder-satisfydepends-dummy
@@ -163,7 +195,7 @@
 Get: 44 http://deb.debian.org/debian trixie/main armhf golang-golang-x-crypto-dev all 1:0.25.0-1 [1682 kB]
 Get: 45 http://deb.debian.org/debian trixie/main armhf golang-golang-x-net-dev all 1:0.27.0-1 [898 kB]
 Get: 46 http://deb.debian.org/debian trixie/main armhf help2man armhf 1.49.3 [198 kB]
-Fetched 69.9 MB in 6s (11.4 MB/s)
+Fetched 69.9 MB in 2s (32.1 MB/s)
 Preconfiguring packages ...
 Selecting previously unselected package liblocale-gettext-perl.
 (Reading database ... 
(Reading database ... 5%
(Reading database ... 10%
(Reading database ... 15%
(Reading database ... 20%
(Reading database ... 25%
(Reading database ... 30%
(Reading database ... 35%
(Reading database ... 40%
(Reading database ... 45%
(Reading database ... 50%
(Reading database ... 55%
(Reading database ... 60%
(Reading database ... 65%
(Reading database ... 70%
(Reading database ... 75%
(Reading database ... 80%
(Reading database ... 85%
(Reading database ... 90%
(Reading database ... 95%
(Reading database ... 100%
(Reading database ... 19575 files and directories currently installed.)
@@ -362,7 +394,11 @@
 Building tag database...
  -> Finished parsing the build-deps
 I: Building the package
-I: Running cd /build/reproducible-path/sigsum-go-0.10.1/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S  > ../sigsum-go_0.10.1-1_source.changes
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/A99_set_merged_usr starting
+Not re-configuring usrmerge for trixie
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/A99_set_merged_usr finished
+hostname: Name or service not known
+I: Running cd /build/reproducible-path/sigsum-go-0.10.1/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S  > ../sigsum-go_0.10.1-1_source.changes
 dpkg-buildpackage: info: source package sigsum-go
 dpkg-buildpackage: info: source version 0.10.1-1
 dpkg-buildpackage: info: source distribution unstable
@@ -380,34 +416,31 @@
    dh_autoreconf -O--builddirectory=_build -O--buildsystem=golang
    dh_auto_configure -O--builddirectory=_build -O--buildsystem=golang
    dh_auto_build -O--builddirectory=_build -O--buildsystem=golang
-	cd _build && go install -trimpath -v -p 3 sigsum.org/sigsum-go/cmd/sigsum-key sigsum.org/sigsum-go/cmd/sigsum-monitor sigsum.org/sigsum-go/cmd/sigsum-submit sigsum.org/sigsum-go/cmd/sigsum-token sigsum.org/sigsum-go/cmd/sigsum-verify sigsum.org/sigsum-go/cmd/sigsum-witness sigsum.org/sigsum-go/internal/mocks/signer sigsum.org/sigsum-go/internal/ssh sigsum.org/sigsum-go/internal/version sigsum.org/sigsum-go/pkg/api sigsum.org/sigsum-go/pkg/ascii sigsum.org/sigsum-go/pkg/checkpoint sigsum.org/sigsum-go/pkg/client sigsum.org/sigsum-go/pkg/crypto sigsum.org/sigsum-go/pkg/key sigsum.org/sigsum-go/pkg/log sigsum.org/sigsum-go/pkg/merkle sigsum.org/sigsum-go/pkg/mocks sigsum.org/sigsum-go/pkg/monitor sigsum.org/sigsum-go/pkg/policy sigsum.org/sigsum-go/pkg/proof sigsum.org/sigsum-go/pkg/requests sigsum.org/sigsum-go/pkg/server sigsum.org/sigsum-go/pkg/submit sigsum.org/sigsum-go/pkg/submit-token sigsum.org/sigsum-go/pkg/types sigsum.org/sigsum-go/tests/mk-add-checkpoint-request sigsum.org/sigsum-go/tests/sha256-n sigsum.org/sigsum-go/tests/use-agent
+	cd _build && go install -trimpath -v -p 6 sigsum.org/sigsum-go/cmd/sigsum-key sigsum.org/sigsum-go/cmd/sigsum-monitor sigsum.org/sigsum-go/cmd/sigsum-submit sigsum.org/sigsum-go/cmd/sigsum-token sigsum.org/sigsum-go/cmd/sigsum-verify sigsum.org/sigsum-go/cmd/sigsum-witness sigsum.org/sigsum-go/internal/mocks/signer sigsum.org/sigsum-go/internal/ssh sigsum.org/sigsum-go/internal/version sigsum.org/sigsum-go/pkg/api sigsum.org/sigsum-go/pkg/ascii sigsum.org/sigsum-go/pkg/checkpoint sigsum.org/sigsum-go/pkg/client sigsum.org/sigsum-go/pkg/crypto sigsum.org/sigsum-go/pkg/key sigsum.org/sigsum-go/pkg/log sigsum.org/sigsum-go/pkg/merkle sigsum.org/sigsum-go/pkg/mocks sigsum.org/sigsum-go/pkg/monitor sigsum.org/sigsum-go/pkg/policy sigsum.org/sigsum-go/pkg/proof sigsum.org/sigsum-go/pkg/requests sigsum.org/sigsum-go/pkg/server sigsum.org/sigsum-go/pkg/submit sigsum.org/sigsum-go/pkg/submit-token sigsum.org/sigsum-go/pkg/types sigsum.org/sigsum-go/tests/mk-add-checkpoint-request sigsum.org/sigsum-go/tests/sha256-n sigsum.org/sigsum-go/tests/use-agent
 internal/goarch
 internal/unsafeheader
-internal/cpu
+internal/godebugs
 internal/byteorder
-internal/abi
-internal/chacha8rand
-internal/bytealg
 internal/coverage/rtcov
-internal/godebugs
+internal/cpu
+internal/abi
 internal/goexperiment
 internal/goos
 internal/profilerecord
-internal/runtime/atomic
 internal/runtime/syscall
-internal/stringslite
+internal/chacha8rand
 runtime/internal/math
 runtime/internal/sys
-internal/runtime/exithook
 internal/race
 sync/atomic
-unicode
-runtime
 unicode/utf8
+internal/bytealg
+unicode
+internal/runtime/atomic
 cmp
 internal/itoa
+internal/stringslite
 math/bits
-math
 internal/asan
 internal/msan
 log/internal
@@ -416,158 +449,161 @@
 internal/nettrace
 container/list
 unicode/utf16
+internal/runtime/exithook
+math
 vendor/golang.org/x/crypto/cryptobyte/asn1
 vendor/golang.org/x/crypto/internal/alias
-internal/reflectlite
-sync
-iter
-slices
+runtime
 crypto/subtle
 internal/weak
+iter
+internal/reflectlite
+sync
 maps
-internal/bisect
+slices
 internal/testlog
 internal/singleflight
+internal/bisect
+runtime/cgo
+internal/godebug
 errors
 sort
 io
-strconv
-bytes
 internal/oserror
 path
-internal/godebug
-reflect
+strconv
 syscall
+math/rand
+vendor/golang.org/x/net/dns/dnsmessage
+bytes
 strings
 hash
-crypto
 crypto/cipher
-crypto/internal/boring
 crypto/internal/randutil
-math/rand
-vendor/golang.org/x/net/dns/dnsmessage
-time
-internal/syscall/unix
-internal/syscall/execenv
-internal/fmtsort
-encoding/binary
-io/fs
-internal/poll
-internal/filepathlite
-encoding/base64
-context
-encoding/pem
-os
+reflect
+crypto
 math/rand/v2
-runtime/cgo
-internal/concurrent
-unique
-net/netip
-fmt
+crypto/internal/boring
 crypto/internal/edwards25519/field
-github.com/pborman/getopt/v2
-log
-math/big
-crypto/internal/edwards25519
 crypto/sha512
+internal/concurrent
+crypto/internal/edwards25519
 crypto/sha256
-net
-encoding/hex
-runtime/debug
-sigsum.org/sigsum-go/internal/version
-crypto/rand
+unique
 bufio
-crypto/ed25519
-sigsum.org/sigsum-go/pkg/crypto
-os/signal
-sigsum.org/sigsum-go/pkg/ascii
-sigsum.org/sigsum-go/pkg/merkle
-sigsum.org/sigsum-go/pkg/log
-compress/flate
+net/netip
+time
+internal/syscall/unix
+internal/syscall/execenv
 hash/crc32
 crypto/aes
 crypto/des
 crypto/internal/nistec/fiat
-compress/gzip
-crypto/internal/bigmod
-crypto/internal/boring/bbig
-encoding/asn1
-vendor/golang.org/x/crypto/cryptobyte
 crypto/hmac
+vendor/golang.org/x/crypto/hkdf
+crypto/md5
+crypto/rc4
+crypto/sha1
+vendor/golang.org/x/text/transform
+net/http/internal/ascii
+golang.org/x/text/transform
+encoding/base32
+io/fs
+context
+internal/poll
+internal/fmtsort
+encoding/binary
+internal/filepathlite
+os
+encoding/base64
 vendor/golang.org/x/crypto/chacha20
 vendor/golang.org/x/crypto/internal/poly1305
 vendor/golang.org/x/crypto/chacha20poly1305
-vendor/golang.org/x/crypto/hkdf
-vendor/golang.org/x/sys/cpu
+encoding/pem
 crypto/internal/nistec
+os/signal
+vendor/golang.org/x/sys/cpu
+fmt
+path/filepath
+net
 vendor/golang.org/x/crypto/sha3
-crypto/internal/mlkem768
-crypto/md5
 crypto/ecdh
-crypto/elliptic
-crypto/internal/hpke
-crypto/rc4
-crypto/ecdsa
-crypto/rsa
-crypto/sha1
-crypto/dsa
-crypto/x509/pkix
+encoding/hex
+github.com/pborman/getopt/v2
+log
+runtime/debug
+math/big
+compress/flate
+sigsum.org/sigsum-go/pkg/log
+sigsum.org/sigsum-go/internal/version
 net/url
-path/filepath
-vendor/golang.org/x/text/transform
 vendor/golang.org/x/text/unicode/bidi
 vendor/golang.org/x/text/unicode/norm
-sigsum.org/sigsum-go/internal/ssh
-sigsum.org/sigsum-go/pkg/types
-sigsum.org/sigsum-go/pkg/key
-crypto/x509
-sigsum.org/sigsum-go/pkg/checkpoint
-sigsum.org/sigsum-go/cmd/sigsum-key
-vendor/golang.org/x/text/secure/bidirule
-vendor/golang.org/x/net/idna
-net/textproto
-vendor/golang.org/x/net/http/httpproxy
-crypto/tls
+compress/gzip
 vendor/golang.org/x/net/http2/hpack
-vendor/golang.org/x/net/http/httpguts
 mime
+vendor/golang.org/x/text/secure/bidirule
 mime/quotedprintable
 net/http/internal
-net/http/internal/ascii
-sigsum.org/sigsum-go/pkg/requests
-mime/multipart
-golang.org/x/text/transform
 golang.org/x/text/unicode/bidi
 golang.org/x/text/unicode/norm
+github.com/golang/mock/gomock
+crypto/rand
+crypto/elliptic
+crypto/internal/bigmod
+crypto/ed25519
+sigsum.org/sigsum-go/pkg/crypto
+crypto/internal/boring/bbig
+sigsum.org/sigsum-go/pkg/ascii
+sigsum.org/sigsum-go/pkg/merkle
+encoding/asn1
+crypto/internal/hpke
+crypto/internal/mlkem768
+crypto/rsa
+crypto/dsa
+vendor/golang.org/x/net/idna
 golang.org/x/text/secure/bidirule
-sigsum.org/sigsum-go/pkg/policy
-encoding/base32
 github.com/dchest/safefile
-sigsum.org/sigsum-go/pkg/proof
 golang.org/x/net/idna
-sigsum.org/sigsum-go/cmd/sigsum-verify
-net/http/httptrace
+sigsum.org/sigsum-go/internal/mocks/signer
+sigsum.org/sigsum-go/tests/sha256-n
+crypto/x509/pkix
+vendor/golang.org/x/crypto/cryptobyte
+crypto/ecdsa
+sigsum.org/sigsum-go/internal/ssh
 sigsum.org/sigsum-go/pkg/submit-token
+vendor/golang.org/x/net/http/httpproxy
+net/textproto
+crypto/x509
+sigsum.org/sigsum-go/pkg/key
+sigsum.org/sigsum-go/pkg/types
+vendor/golang.org/x/net/http/httpguts
+mime/multipart
 sigsum.org/sigsum-go/cmd/sigsum-token
-net/http
-sigsum.org/sigsum-go/internal/mocks/signer
-github.com/golang/mock/gomock
+sigsum.org/sigsum-go/tests/use-agent
+sigsum.org/sigsum-go/pkg/policy
+sigsum.org/sigsum-go/pkg/checkpoint
+sigsum.org/sigsum-go/cmd/sigsum-key
+sigsum.org/sigsum-go/pkg/requests
+sigsum.org/sigsum-go/pkg/proof
 sigsum.org/sigsum-go/pkg/mocks
+sigsum.org/sigsum-go/cmd/sigsum-verify
 sigsum.org/sigsum-go/tests/mk-add-checkpoint-request
-sigsum.org/sigsum-go/tests/sha256-n
-sigsum.org/sigsum-go/tests/use-agent
+crypto/tls
+net/http/httptrace
+net/http
 sigsum.org/sigsum-go/pkg/api
 sigsum.org/sigsum-go/pkg/client
 sigsum.org/sigsum-go/pkg/server
 sigsum.org/sigsum-go/pkg/submit
 sigsum.org/sigsum-go/pkg/monitor
 sigsum.org/sigsum-go/cmd/sigsum-witness
-sigsum.org/sigsum-go/cmd/sigsum-submit
 sigsum.org/sigsum-go/cmd/sigsum-monitor
+sigsum.org/sigsum-go/cmd/sigsum-submit
    debian/rules override_dh_auto_test
 make[1]: Entering directory '/build/reproducible-path/sigsum-go-0.10.1'
 env DH_GOLANG_EXCLUDES=sigsum.org/sigsum-go/pkg/server dh_auto_test 
-	cd _build && go test -vet=off -v -p 3 sigsum.org/sigsum-go/cmd/sigsum-key sigsum.org/sigsum-go/cmd/sigsum-monitor sigsum.org/sigsum-go/cmd/sigsum-submit sigsum.org/sigsum-go/cmd/sigsum-token sigsum.org/sigsum-go/cmd/sigsum-verify sigsum.org/sigsum-go/cmd/sigsum-witness sigsum.org/sigsum-go/internal/mocks/signer sigsum.org/sigsum-go/internal/ssh sigsum.org/sigsum-go/internal/version sigsum.org/sigsum-go/pkg/api sigsum.org/sigsum-go/pkg/ascii sigsum.org/sigsum-go/pkg/checkpoint sigsum.org/sigsum-go/pkg/client sigsum.org/sigsum-go/pkg/crypto sigsum.org/sigsum-go/pkg/key sigsum.org/sigsum-go/pkg/log sigsum.org/sigsum-go/pkg/merkle sigsum.org/sigsum-go/pkg/mocks sigsum.org/sigsum-go/pkg/monitor sigsum.org/sigsum-go/pkg/policy sigsum.org/sigsum-go/pkg/proof sigsum.org/sigsum-go/pkg/requests sigsum.org/sigsum-go/pkg/submit sigsum.org/sigsum-go/pkg/submit-token sigsum.org/sigsum-go/pkg/types sigsum.org/sigsum-go/tests/mk-add-checkpoint-request sigsum.org/sigsum-go/tests/sha256-n sigsum.org/sigsum-go/tests/use-agent
+	cd _build && go test -vet=off -v -p 6 sigsum.org/sigsum-go/cmd/sigsum-key sigsum.org/sigsum-go/cmd/sigsum-monitor sigsum.org/sigsum-go/cmd/sigsum-submit sigsum.org/sigsum-go/cmd/sigsum-token sigsum.org/sigsum-go/cmd/sigsum-verify sigsum.org/sigsum-go/cmd/sigsum-witness sigsum.org/sigsum-go/internal/mocks/signer sigsum.org/sigsum-go/internal/ssh sigsum.org/sigsum-go/internal/version sigsum.org/sigsum-go/pkg/api sigsum.org/sigsum-go/pkg/ascii sigsum.org/sigsum-go/pkg/checkpoint sigsum.org/sigsum-go/pkg/client sigsum.org/sigsum-go/pkg/crypto sigsum.org/sigsum-go/pkg/key sigsum.org/sigsum-go/pkg/log sigsum.org/sigsum-go/pkg/merkle sigsum.org/sigsum-go/pkg/mocks sigsum.org/sigsum-go/pkg/monitor sigsum.org/sigsum-go/pkg/policy sigsum.org/sigsum-go/pkg/proof sigsum.org/sigsum-go/pkg/requests sigsum.org/sigsum-go/pkg/submit sigsum.org/sigsum-go/pkg/submit-token sigsum.org/sigsum-go/pkg/types sigsum.org/sigsum-go/tests/mk-add-checkpoint-request sigsum.org/sigsum-go/tests/sha256-n sigsum.org/sigsum-go/tests/use-agent
 ?   	sigsum.org/sigsum-go/cmd/sigsum-key	[no test files]
 ?   	sigsum.org/sigsum-go/cmd/sigsum-monitor	[no test files]
 ?   	sigsum.org/sigsum-go/cmd/sigsum-submit	[no test files]
@@ -580,7 +616,7 @@
 === RUN   TestRequest
 --- PASS: TestRequest (0.00s)
 === RUN   TestSignEd25519
---- PASS: TestSignEd25519 (0.03s)
+--- PASS: TestSignEd25519 (0.18s)
 === RUN   TestSignEd25519Fail
 --- PASS: TestSignEd25519Fail (0.00s)
 === RUN   TestParsePrivateKeyFile
@@ -594,7 +630,7 @@
 === RUN   TestSignedData
 --- PASS: TestSignedData (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/internal/ssh	0.053s
+ok  	sigsum.org/sigsum-go/internal/ssh	0.219s
 === RUN   TestLineReaderGetLine
 --- PASS: TestLineReaderGetLine (0.00s)
 === RUN   TestLineReaderGetEOF
@@ -616,25 +652,25 @@
 === RUN   TestParserEOFGarbage
 --- PASS: TestParserEOFGarbage (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/ascii	0.013s
+ok  	sigsum.org/sigsum-go/pkg/ascii	0.022s
 === RUN   TestCheckpointToASCII
 --- PASS: TestCheckpointToASCII (0.00s)
 === RUN   TestCheckpointFromASCII
 --- PASS: TestCheckpointFromASCII (0.00s)
 === RUN   TestCheckpointSigned
---- PASS: TestCheckpointSigned (0.03s)
+--- PASS: TestCheckpointSigned (0.13s)
 === RUN   TestCheckpointVerify
---- PASS: TestCheckpointVerify (0.01s)
+--- PASS: TestCheckpointVerify (0.04s)
 === RUN   TestCheckpointVerifyIgnoreExtraSignature
---- PASS: TestCheckpointVerifyIgnoreExtraSignature (0.01s)
+--- PASS: TestCheckpointVerifyIgnoreExtraSignature (0.02s)
 === RUN   TestCheckpointCosignVerify
     checkpoint_test.go:200: — example.org/witness ys8uUAAAAAAAAATSftMzceM8zssdZ9jin9SjwIxzx9iADMf63VqirX2hafol9RsqNqbofIz0LVRqHXI2kpEBSki5RTXFtxz1vo9+Cg==
         
---- PASS: TestCheckpointCosignVerify (0.00s)
+--- PASS: TestCheckpointCosignVerify (0.01s)
 === RUN   TestCheckpointVerifyCosignatureByKey
---- PASS: TestCheckpointVerifyCosignatureByKey (0.00s)
+--- PASS: TestCheckpointVerifyCosignatureByKey (0.01s)
 === RUN   TestGoSumDBCheckpoint
---- PASS: TestGoSumDBCheckpoint (0.00s)
+--- PASS: TestGoSumDBCheckpoint (0.01s)
 === RUN   TestCosignatureLineToASCII
 --- PASS: TestCosignatureLineToASCII (0.00s)
 === RUN   TestCosignatureLinesFromASCII
@@ -654,11 +690,11 @@
 === RUN   TestGoSumDBVerifier
 --- PASS: TestGoSumDBVerifier (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/checkpoint	0.082s
+ok  	sigsum.org/sigsum-go/pkg/checkpoint	0.271s
 === RUN   TestProcessConflictResponse
 --- PASS: TestProcessConflictResponse (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/client	0.013s
+ok  	sigsum.org/sigsum-go/pkg/client	0.034s
 === RUN   TestValidHashFromHex
 --- PASS: TestValidHashFromHex (0.00s)
 === RUN   TestInvalidHashFromHex
@@ -674,19 +710,19 @@
 === RUN   TestHash
 --- PASS: TestHash (0.00s)
 === RUN   TestSign
---- PASS: TestSign (0.04s)
+--- PASS: TestSign (0.20s)
 === RUN   TestVerify
---- PASS: TestVerify (0.01s)
+--- PASS: TestVerify (0.02s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/crypto	0.053s
+ok  	sigsum.org/sigsum-go/pkg/crypto	0.239s
 === RUN   TestParsePublicKeysFile
 --- PASS: TestParsePublicKeysFile (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/key	0.017s
+ok  	sigsum.org/sigsum-go/pkg/key	0.019s
 === RUN   Example
 --- PASS: Example (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/log	0.010s
+ok  	sigsum.org/sigsum-go/pkg/log	0.017s
 ?   	sigsum.org/sigsum-go/pkg/mocks	[no test files]
 ?   	sigsum.org/sigsum-go/tests/mk-add-checkpoint-request	[no test files]
 ?   	sigsum.org/sigsum-go/tests/sha256-n	[no test files]
@@ -702,26 +738,26 @@
 === RUN   TestInclusion
 --- PASS: TestInclusion (0.00s)
 === RUN   TestInclusionValid
---- PASS: TestInclusionValid (1.19s)
+--- PASS: TestInclusionValid (6.28s)
 === RUN   TestInclusionBatchValid
---- PASS: TestInclusionBatchValid (2.62s)
+--- PASS: TestInclusionBatchValid (12.63s)
 === RUN   TestInclusionTailValid
---- PASS: TestInclusionTailValid (2.37s)
+--- PASS: TestInclusionTailValid (7.41s)
 === RUN   TestConsistency
 --- PASS: TestConsistency (0.00s)
 === RUN   TestConsistencyValid
---- PASS: TestConsistencyValid (1.12s)
+--- PASS: TestConsistencyValid (3.82s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/merkle	7.315s
+ok  	sigsum.org/sigsum-go/pkg/merkle	30.167s
 === RUN   TestGetTreeHead
---- PASS: TestGetTreeHead (4.85s)
+--- PASS: TestGetTreeHead (17.64s)
 === RUN   TestGetTreeHeadErrors
     client_test.go:171: bad signature: (expected) failure: monitoring alert: Invalid log signature: log signature invalid
     client_test.go:171: bad signature (hash): (expected) failure: monitoring alert: Invalid log signature: log signature invalid
     client_test.go:171: bad consistency: (expected) failure: monitoring alert: Log tree head not consistent: consistency proof not valid: invalid proof: old root mismatch
---- PASS: TestGetTreeHeadErrors (0.12s)
+--- PASS: TestGetTreeHeadErrors (0.32s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/monitor	4.981s
+ok  	sigsum.org/sigsum-go/pkg/monitor	17.987s
 === RUN   TestValidConfig
 --- PASS: TestValidConfig (0.00s)
 === RUN   TestNumericThreshold
@@ -729,21 +765,21 @@
 === RUN   TestInvalidConfig
 --- PASS: TestInvalidConfig (0.00s)
 === RUN   TestLogPolicy
---- PASS: TestLogPolicy (0.04s)
+--- PASS: TestLogPolicy (0.26s)
 === RUN   TestWitnessPolicy
---- PASS: TestWitnessPolicy (0.05s)
+--- PASS: TestWitnessPolicy (0.19s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/policy	0.112s
+ok  	sigsum.org/sigsum-go/pkg/policy	0.563s
 === RUN   TestASCII
 --- PASS: TestASCII (0.00s)
 === RUN   TestASCIIV1
 --- PASS: TestASCIIV1 (0.00s)
 === RUN   TestVerifyNoCosignatures
---- PASS: TestVerifyNoCosignatures (0.01s)
+--- PASS: TestVerifyNoCosignatures (0.06s)
 === RUN   TestVerify
---- PASS: TestVerify (0.00s)
+--- PASS: TestVerify (0.03s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/proof	0.029s
+ok  	sigsum.org/sigsum-go/pkg/proof	0.119s
 === RUN   TestLeafToASCII
 --- PASS: TestLeafToASCII (0.00s)
 === RUN   TestLeavesToURL
@@ -776,16 +812,16 @@
 === RUN   TestSubmitSuccess/leaf_7
 === RUN   TestSubmitSuccess/leaf_8
 === RUN   TestSubmitSuccess/leaf_9
---- PASS: TestSubmitSuccess (0.11s)
-    --- PASS: TestSubmitSuccess/leaf_1 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_2 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_3 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_4 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_5 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_6 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_7 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_8 (0.01s)
-    --- PASS: TestSubmitSuccess/leaf_9 (0.01s)
+--- PASS: TestSubmitSuccess (0.62s)
+    --- PASS: TestSubmitSuccess/leaf_1 (0.09s)
+    --- PASS: TestSubmitSuccess/leaf_2 (0.05s)
+    --- PASS: TestSubmitSuccess/leaf_3 (0.05s)
+    --- PASS: TestSubmitSuccess/leaf_4 (0.05s)
+    --- PASS: TestSubmitSuccess/leaf_5 (0.05s)
+    --- PASS: TestSubmitSuccess/leaf_6 (0.05s)
+    --- PASS: TestSubmitSuccess/leaf_7 (0.05s)
+    --- PASS: TestSubmitSuccess/leaf_8 (0.04s)
+    --- PASS: TestSubmitSuccess/leaf_9 (0.03s)
 === RUN   TestSubmitFailure
 === RUN   TestSubmitFailure/leaf_1
 === RUN   TestSubmitFailure/leaf_2
@@ -794,16 +830,16 @@
 === RUN   TestSubmitFailure/leaf_5
 === RUN   TestSubmitFailure/leaf_6
 === RUN   TestSubmitFailure/leaf_7
---- PASS: TestSubmitFailure (0.03s)
-    --- PASS: TestSubmitFailure/leaf_1 (0.01s)
-    --- PASS: TestSubmitFailure/leaf_2 (0.00s)
-    --- PASS: TestSubmitFailure/leaf_3 (0.00s)
-    --- PASS: TestSubmitFailure/leaf_4 (0.00s)
-    --- PASS: TestSubmitFailure/leaf_5 (0.00s)
-    --- PASS: TestSubmitFailure/leaf_6 (0.00s)
-    --- PASS: TestSubmitFailure/leaf_7 (0.00s)
+--- PASS: TestSubmitFailure (0.11s)
+    --- PASS: TestSubmitFailure/leaf_1 (0.02s)
+    --- PASS: TestSubmitFailure/leaf_2 (0.01s)
+    --- PASS: TestSubmitFailure/leaf_3 (0.02s)
+    --- PASS: TestSubmitFailure/leaf_4 (0.02s)
+    --- PASS: TestSubmitFailure/leaf_5 (0.01s)
+    --- PASS: TestSubmitFailure/leaf_6 (0.01s)
+    --- PASS: TestSubmitFailure/leaf_7 (0.02s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/submit	0.155s
+ok  	sigsum.org/sigsum-go/pkg/submit	0.767s
 === RUN   TestNormalize
 --- PASS: TestNormalize (0.00s)
 === RUN   TestNormalizeReject
@@ -818,15 +854,15 @@
 === RUN   TestSubmitHeaderToHeader
 --- PASS: TestSubmitHeaderToHeader (0.00s)
 === RUN   TestVerify
---- PASS: TestVerify (0.06s)
+--- PASS: TestVerify (0.31s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/submit-token	0.075s
+ok  	sigsum.org/sigsum-go/pkg/submit-token	0.332s
 === RUN   TestLeafSignedData
 --- PASS: TestLeafSignedData (0.00s)
 === RUN   TestSignLeaf
 --- PASS: TestSignLeaf (0.00s)
 === RUN   TestLeafVerify
---- PASS: TestLeafVerify (0.04s)
+--- PASS: TestLeafVerify (0.14s)
 === RUN   TestLeafToBinary
 --- PASS: TestLeafToBinary (0.00s)
 === RUN   TestLeafFromBinary
@@ -848,7 +884,7 @@
 === RUN   TestConsistencyProofToBase64
 --- PASS: TestConsistencyProofToBase64 (0.00s)
 === RUN   TestConsistencyProofParseBase64
---- PASS: TestConsistencyProofParseBase64 (0.01s)
+--- PASS: TestConsistencyProofParseBase64 (0.02s)
 === RUN   TestTreeHeadFormatCheckpoint
 --- PASS: TestTreeHeadFormatCheckpoint (0.00s)
 === RUN   TestTreeHeadToCosignedData
@@ -860,25 +896,25 @@
 === RUN   TestSignedTreeHeadFromASCII
 --- PASS: TestSignedTreeHeadFromASCII (0.00s)
 === RUN   TestTreeHeadSignAndVerify
---- PASS: TestTreeHeadSignAndVerify (0.00s)
+--- PASS: TestTreeHeadSignAndVerify (0.01s)
 === RUN   TestSignedTreeHeadVerify
---- PASS: TestSignedTreeHeadVerify (0.00s)
+--- PASS: TestSignedTreeHeadVerify (0.01s)
 === RUN   TestSignedTreeHeadVerifyVersion0
---- PASS: TestSignedTreeHeadVerifyVersion0 (0.01s)
+--- PASS: TestSignedTreeHeadVerifyVersion0 (0.02s)
 === RUN   TestCosignatureToASCII
 --- PASS: TestCosignatureToASCII (0.00s)
 === RUN   TestCosignatureFromASCII
 --- PASS: TestCosignatureFromASCII (0.00s)
 === RUN   TestCosignAndVerify
---- PASS: TestCosignAndVerify (0.01s)
+--- PASS: TestCosignAndVerify (0.03s)
 === RUN   TestCosignedTreeHeadToASCII
 --- PASS: TestCosignedTreeHeadToASCII (0.00s)
 === RUN   TestCosignedTreeHeadFromASCII
 --- PASS: TestCosignedTreeHeadFromASCII (0.00s)
 PASS
-ok  	sigsum.org/sigsum-go/pkg/types	0.088s
+ok  	sigsum.org/sigsum-go/pkg/types	0.269s
 env DH_GOLANG_BUILDPKG=sigsum.org/sigsum-go/pkg/server dh_auto_test 
-	cd _build && go test -vet=off -v -p 3 sigsum.org/sigsum-go/pkg/server
+	cd _build && go test -vet=off -v -p 6 sigsum.org/sigsum-go/pkg/server
 === RUN   TestGetTreeHead
     log_test.go:48: Unexpected status code, got 404, want 200
     controller.go:269: missing call(s) to *mocks.MockLog.GetTreeHead(is anything) /build/reproducible-path/sigsum-go-0.10.1/_build/src/sigsum.org/sigsum-go/pkg/server/log_test.go:44
@@ -957,9 +993,9 @@
     controller.go:269: aborting test due to missing call(s)
 --- FAIL: TestAddCheckpoint (0.00s)
 FAIL
-FAIL	sigsum.org/sigsum-go/pkg/server	0.017s
+FAIL	sigsum.org/sigsum-go/pkg/server	0.034s
 FAIL
-dh_auto_test: error: cd _build && go test -vet=off -v -p 3 sigsum.org/sigsum-go/pkg/server returned exit code 1
+dh_auto_test: error: cd _build && go test -vet=off -v -p 6 sigsum.org/sigsum-go/pkg/server returned exit code 1
 make[1]: [debian/rules:10: override_dh_auto_test] Error 25 (ignored)
 make[1]: Leaving directory '/build/reproducible-path/sigsum-go-0.10.1'
    create-stamp debian/debhelper-build-stamp
@@ -996,12 +1032,12 @@
    dh_fixperms -O--builddirectory=_build -O--buildsystem=golang
    dh_missing -O--builddirectory=_build -O--buildsystem=golang
    dh_strip -a -O--builddirectory=_build -O--buildsystem=golang
-dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-verify
-dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-token
 dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-monitor
 dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-witness
 dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-key
 dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-submit
+dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-token
+dh_strip: warning: Could not find the BuildID in debian/sigsum-go/usr/bin/sigsum-verify
    dh_makeshlibs -a -O--builddirectory=_build -O--buildsystem=golang
    dh_shlibdeps -a -O--builddirectory=_build -O--buildsystem=golang
    dh_installdeb -O--builddirectory=_build -O--buildsystem=golang
@@ -1019,12 +1055,14 @@
 dpkg-buildpackage: info: binary-only upload (no source included)
 dpkg-genchanges: info: including full source code in upload
 I: copying local configuration
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/B01_cleanup starting
+I: user script /srv/workspace/pbuilder/15902/tmp/hooks/B01_cleanup finished
 I: unmounting dev/ptmx filesystem
 I: unmounting dev/pts filesystem
 I: unmounting dev/shm filesystem
 I: unmounting proc filesystem
 I: unmounting sys filesystem
 I: cleaning the build env 
-I: removing directory /srv/workspace/pbuilder/11201 and its subdirectories
-I: Current time: Thu Jan 30 02:55:56 -12 2025
-I: pbuilder-time-stamp: 1738248956
+I: removing directory /srv/workspace/pbuilder/15902 and its subdirectories
+I: Current time: Fri Jan 31 05:04:34 +14 2025
+I: pbuilder-time-stamp: 1738249474