Skip to content

Merge pull request #414 from ComplianceAsCode/renovate/docker-setup-b… #237

Merge pull request #414 from ComplianceAsCode/renovate/docker-setup-b…

Merge pull request #414 from ComplianceAsCode/renovate/docker-setup-b… #237

Triggered via push July 22, 2024 21:45
Status Success
Total duration 1h 38m 30s
Artifacts 4
bundle-container-push-latest  /  container
36s
bundle-container-push-latest / container
openscap-container-push-latest  /  container
1m 23s
openscap-container-push-latest / container
operator-container-push-latest  /  container
1h 36m
operator-container-push-latest / container
bundle-container-push-latest  /  sign
10s
bundle-container-push-latest / sign
openscap-container-push-latest  /  sign
10s
openscap-container-push-latest / sign
operator-container-push-latest  /  sign
10s
operator-container-push-latest / sign
catalog-container-push-pr  /  container
56s
catalog-container-push-pr / container
catalog-container-push-pr  /  sign
10s
catalog-container-push-pr / sign
Fit to window
Zoom out
Zoom in

Annotations

12 notices
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:ef81944494be5523d365374d32fa0cac79262922fede246577027b4cdfb37995 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:ef81944494be5523d365374d32fa0cac79262922fede246577027b4cdfb37995 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:ef81944494be5523d365374d32fa0cac79262922fede246577027b4cdfb37995 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:d5374c9973b035a408d2808e9f079825fefcb974d1b8dd7f8fbc06ef74b8963e | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:d5374c9973b035a408d2808e9f079825fefcb974d1b8dd7f8fbc06ef74b8963e | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:d5374c9973b035a408d2808e9f079825fefcb974d1b8dd7f8fbc06ef74b8963e | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:6251e1182730c3c547d6041e2236a73231c1518c3ad7cb69522a4ee6a6ebcbed | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:6251e1182730c3c547d6041e2236a73231c1518c3ad7cb69522a4ee6a6ebcbed | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:6251e1182730c3c547d6041e2236a73231c1518c3ad7cb69522a4ee6a6ebcbed | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:927bbc2d5ec0ef3d944842b1df3af91b99eea8b63390b236d12d7a2c6ac0b9ec | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:927bbc2d5ec0ef3d944842b1df3af91b99eea8b63390b236d12d7a2c6ac0b9ec | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:927bbc2d5ec0ef3d944842b1df3af91b99eea8b63390b236d12d7a2c6ac0b9ec | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text

Artifacts

Produced during runtime
Name Size
ComplianceAsCode~compliance-operator~AJDFOF.dockerbuild Expired
11.4 KB
ComplianceAsCode~compliance-operator~OVH6JT.dockerbuild Expired
39.8 KB
ComplianceAsCode~compliance-operator~RHFUXS.dockerbuild Expired
20.3 KB
ComplianceAsCode~compliance-operator~SW9E5S.dockerbuild Expired
37 KB