Skip to content

Merge pull request #550 from ComplianceAsCode/renovate/github.com-go-… #238

Merge pull request #550 from ComplianceAsCode/renovate/github.com-go-…

Merge pull request #550 from ComplianceAsCode/renovate/github.com-go-… #238

Triggered via push July 24, 2024 13:57
Status Success
Total duration 1h 38m 11s
Artifacts 4
bundle-container-push-latest  /  container
31s
bundle-container-push-latest / container
openscap-container-push-latest  /  container
1m 43s
openscap-container-push-latest / container
operator-container-push-latest  /  container
1h 36m
operator-container-push-latest / container
bundle-container-push-latest  /  sign
7s
bundle-container-push-latest / sign
openscap-container-push-latest  /  sign
11s
openscap-container-push-latest / sign
operator-container-push-latest  /  sign
9s
operator-container-push-latest / sign
catalog-container-push-pr  /  container
1m 3s
catalog-container-push-pr / container
catalog-container-push-pr  /  sign
11s
catalog-container-push-pr / sign
Fit to window
Zoom out
Zoom in

Annotations

12 notices
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:9d6c1ca4fdc4fed927e0ba3166898e746edc085e71c0c7be7e2bb17839a435a1 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:9d6c1ca4fdc4fed927e0ba3166898e746edc085e71c0c7be7e2bb17839a435a1 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:9d6c1ca4fdc4fed927e0ba3166898e746edc085e71c0c7be7e2bb17839a435a1 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:2e620986d655c4494c95ae42952832711bdedfbf9b931d6457118402e075f93e | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:2e620986d655c4494c95ae42952832711bdedfbf9b931d6457118402e075f93e | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:2e620986d655c4494c95ae42952832711bdedfbf9b931d6457118402e075f93e | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:2d8ee22516f1ec039b5b28552d9e8b48294cb605ce1d4d3247d289a65e0eff23 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:2d8ee22516f1ec039b5b28552d9e8b48294cb605ce1d4d3247d289a65e0eff23 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:2d8ee22516f1ec039b5b28552d9e8b48294cb605ce1d4d3247d289a65e0eff23 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:9d25cea8356cae7ea17ccb9a3d199b405231eeb21b217599125cca5ceb628af9 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:9d25cea8356cae7ea17ccb9a3d199b405231eeb21b217599125cca5ceb628af9 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:9d25cea8356cae7ea17ccb9a3d199b405231eeb21b217599125cca5ceb628af9 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text

Artifacts

Produced during runtime
Name Size
ComplianceAsCode~compliance-operator~49NAIY.dockerbuild Expired
38.5 KB
ComplianceAsCode~compliance-operator~HBXJWG.dockerbuild Expired
11.3 KB
ComplianceAsCode~compliance-operator~QVDLSC.dockerbuild Expired
22.7 KB
ComplianceAsCode~compliance-operator~YA088W.dockerbuild Expired
40.4 KB