Skip to content

Merge pull request #613 from Vincent056/metric_token #287

Merge pull request #613 from Vincent056/metric_token

Merge pull request #613 from Vincent056/metric_token #287

Triggered via push September 12, 2024 12:13
Status Success
Total duration 1h 49m 32s
Artifacts 5
bundle-container-push-latest  /  container
40s
bundle-container-push-latest / container
must-gather-latest  /  container
47s
must-gather-latest / container
openscap-container-push-latest  /  container
1m 25s
openscap-container-push-latest / container
operator-container-push-latest  /  container
1h 47m
operator-container-push-latest / container
bundle-container-push-latest  /  sign
10s
bundle-container-push-latest / sign
must-gather-latest  /  sign
6s
must-gather-latest / sign
openscap-container-push-latest  /  sign
7s
openscap-container-push-latest / sign
operator-container-push-latest  /  sign
6s
operator-container-push-latest / sign
catalog-container-push-pr  /  container
1m 19s
catalog-container-push-pr / container
catalog-container-push-pr  /  sign
7s
catalog-container-push-pr / sign
Fit to window
Zoom out
Zoom in

Annotations

1 warning and 15 notices
JSON arguments recommended for ENTRYPOINT/CMD to prevent unintended behavior related to OS signals: images/must-gather/Dockerfile.ocp#L6
JSONArgsRecommended: JSON arguments recommended for ENTRYPOINT to prevent unintended behavior related to OS signals More info: https://docs.docker.com/go/dockerfile/rule/json-args-recommended/
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:1217403234b8a332210d6d384e66301b61fa75d9b752ee6d21e94809519cf978 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:1217403234b8a332210d6d384e66301b61fa75d9b752ee6d21e94809519cf978 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-bundle@sha256:1217403234b8a332210d6d384e66301b61fa75d9b752ee6d21e94809519cf978 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/must-gather-ocp@sha256:8217fe5acb964ed82bd1b72bb953f1837df6aee39907c3ef498eba85f5d174f7 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/must-gather-ocp@sha256:8217fe5acb964ed82bd1b72bb953f1837df6aee39907c3ef498eba85f5d174f7 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/must-gather-ocp@sha256:8217fe5acb964ed82bd1b72bb953f1837df6aee39907c3ef498eba85f5d174f7 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:c19848db1e0407f538b0dc55e218b237296a7b90c6070cd02b89f3bdb0f426e9 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:c19848db1e0407f538b0dc55e218b237296a7b90c6070cd02b89f3bdb0f426e9 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/openscap-ocp@sha256:c19848db1e0407f538b0dc55e218b237296a7b90c6070cd02b89f3bdb0f426e9 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:7d81fdab39bfe14cd5373299bb3aa262f62882b2c5322408f2afb6c4628c0fe0 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:7d81fdab39bfe14cd5373299bb3aa262f62882b2c5322408f2afb6c4628c0fe0 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator@sha256:7d81fdab39bfe14cd5373299bb3aa262f62882b2c5322408f2afb6c4628c0fe0 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text
Verify signature
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:5a7483a5142812166da37e453d5090311066c47a101d3dfa0dda77ae7ffde292 | jq '.[0]'
Inspect signature bundle
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:5a7483a5142812166da37e453d5090311066c47a101d3dfa0dda77ae7ffde292 | jq '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson'
Inspect certificate
COSIGN_EXPERIMENTAL=1 cosign verify ghcr.io/complianceascode/compliance-operator-catalog@sha256:5a7483a5142812166da37e453d5090311066c47a101d3dfa0dda77ae7ffde292 | jq -r '.[0].optional.Bundle.Payload.body |= @base64d | .[0].optional.Bundle.Payload.body | fromjson | .spec.signature.publicKey.content |= @base64d | .spec.signature.publicKey.content' | openssl x509 -text

Artifacts

Produced during runtime
Name Size
ComplianceAsCode~compliance-operator~5VRDLX.dockerbuild
26.1 KB
ComplianceAsCode~compliance-operator~FIDYS7.dockerbuild
8.84 KB
ComplianceAsCode~compliance-operator~RTIJ8W.dockerbuild
11.7 KB
ComplianceAsCode~compliance-operator~SLWOXU.dockerbuild
37.6 KB
ComplianceAsCode~compliance-operator~WUX6Z6.dockerbuild
40 KB