Skip to content

chore(deps): update sigstore/community digest to d7264e2 #3106

chore(deps): update sigstore/community digest to d7264e2

chore(deps): update sigstore/community digest to d7264e2 #3106

Workflow file for this run

name: Conformance Tests
permissions:
contents: read
on:
push:
branches: [main]
pull_request: {}
# TODO: add cron
jobs:
conformance:
strategy:
max-parallel: 1
matrix:
java-version: [11, 17]
sigstore-env: [production, staging]
fail-fast: false
concurrency:
# On main/release, we don't want any jobs cancelled
# On PR branches, we cancel the job if new commits are pushed
# More info: https://stackoverflow.com/a/70972844/1261287
group: ${{ github.workflow }}-${{ github.head_ref || github.ref_name }}-${{ matrix.java-version }}-${{ matrix.sigstore-env }}
cancel-in-progress: ${{ github.ref != 'refs/heads/main' }}
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false
- name: Set up JDK 17
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
with:
java-version: 17
distribution: 'temurin'
- name: Setup Gradle
uses: gradle/actions/setup-gradle@ac638b010cf58a27ee6c972d7336334ccaf61c96 # v4.4.1
- name: Build sigstore-java cli and server jar
run: ./gradlew :sigstore-cli:serverShadowJar
- name: Start test server in background
run: java -jar ${{ github.workspace }}/sigstore-cli/build/libs/sigstore-cli-server-all.jar &
- name: Wait for server to be ready
run: curl --retry-connrefused --retry 10 --retry-delay 1 --fail http://localhost:8080/
- name: Set up JDK ${{ matrix.java-version }}
uses: actions/setup-java@c5195efecf7bdfc987ee8bae7a71cb8b11521c00 # v4.7.1
with:
java-version: ${{ matrix.java-version }}
distribution: 'temurin'
- uses: sigstore/sigstore-conformance@a7ac671d8e55553de127c8b1ad96d8d416315e83 # v0.0.19
with:
entrypoint: ${{ github.workspace }}/sigstore-cli/sigstore-cli-server
environment: ${{ matrix.sigstore-env }}
xfail: "test_verify*intoto-with-custom-trust-root]"