Merge pull request #729 from yuumasato/release-v1.7.1 #357
release-latest.yml
on: push
bundle-container-push-latest
/
container
45s
must-gather-latest
/
container
48s
openscap-container-push-latest
/
container
1m 54s
operator-container-push-latest
/
container
3h 4m
must-gather-latest
/
sign
10s
openscap-container-push-latest
/
sign
8s
catalog-container-push-pr
/
sign
7s
Annotations
1 warning and 15 notices
|
JSON arguments recommended for ENTRYPOINT/CMD to prevent unintended behavior related to OS signals:
images/must-gather/Dockerfile.ocp#L6
JSONArgsRecommended: JSON arguments recommended for ENTRYPOINT to prevent unintended behavior related to OS signals
More info: https://docs.docker.com/go/dockerfile/rule/json-args-recommended/
|
|
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:a2e0f204218f92dc0473aa104ee01923a868936b0e3782ff075a58d5f1a64ebb | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
|
|
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:a2e0f204218f92dc0473aa104ee01923a868936b0e3782ff075a58d5f1a64ebb | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
|
|
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:a2e0f204218f92dc0473aa104ee01923a868936b0e3782ff075a58d5f1a64ebb | jq '.[0]'
|
|
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/must-gather-ocp@sha256:85dfb21bd4bb940c515670fe09307764302600e042fe79ff62515fb68aa8ef5f | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
|
|
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/must-gather-ocp@sha256:85dfb21bd4bb940c515670fe09307764302600e042fe79ff62515fb68aa8ef5f | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
|
|
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/must-gather-ocp@sha256:85dfb21bd4bb940c515670fe09307764302600e042fe79ff62515fb68aa8ef5f | jq '.[0]'
|
|
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:c9ce5273ad4a313147b3c98da81797262fa58a975b4eec4604a9434993da151e | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
|
|
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:c9ce5273ad4a313147b3c98da81797262fa58a975b4eec4604a9434993da151e | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
|
|
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:c9ce5273ad4a313147b3c98da81797262fa58a975b4eec4604a9434993da151e | jq '.[0]'
|
|
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:a0e5182b6121b4a38fc13377af8c5bdeb0ee859c76087054a87c320e9dcc5c12 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
|
|
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:a0e5182b6121b4a38fc13377af8c5bdeb0ee859c76087054a87c320e9dcc5c12 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
|
|
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:a0e5182b6121b4a38fc13377af8c5bdeb0ee859c76087054a87c320e9dcc5c12 | jq '.[0]'
|
|
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:dc68dfb2f7ee3af5721f79dc8ba39ed3da078e5b000d85d71f1b93d1f042cacb | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
|
|
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:dc68dfb2f7ee3af5721f79dc8ba39ed3da078e5b000d85d71f1b93d1f042cacb | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
|
|
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:dc68dfb2f7ee3af5721f79dc8ba39ed3da078e5b000d85d71f1b93d1f042cacb | jq '.[0]'
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
ComplianceAsCode~compliance-operator~5WJKEN.dockerbuild
Expired
|
48.1 KB |
sha256:a426bebb1ed215deb6e827a78f32c30a0c21f29c7a66ae34e172896d61b042cb
|
|
|
ComplianceAsCode~compliance-operator~6HLQ0A.dockerbuild
Expired
|
106 KB |
sha256:9b8f0eab69c2ebd24192d2717a73695142c04bdbd7b0d5f92067a618c7ffb9a5
|
|
|
ComplianceAsCode~compliance-operator~L3OTMB.dockerbuild
Expired
|
135 KB |
sha256:3b5c6adf85779df1e41aa83dee91cd75faf5aa2a16cd7a3356d959f23c8f71f0
|
|
|
ComplianceAsCode~compliance-operator~MGO8MR.dockerbuild
Expired
|
41.6 KB |
sha256:67a8b856b1ce7ddb79e7d6d36badf3a85e1f8964844e3ee0c2c1151195e59bc6
|
|
|
ComplianceAsCode~compliance-operator~SLENFE.dockerbuild
Expired
|
104 KB |
sha256:cf5ed515dc449173af20482533d387dc292231c809535b7ea519c0a65d56fd47
|
|