Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: automated PR to main 2024-11-10 #290

Open
wants to merge 518 commits into
base: main
Choose a base branch
from
Open
Changes from 1 commit
Commits
Show all changes
518 commits
Select commit Hold shift + click to select a range
182b567
docs: Archive ratify error handling scenario doc
binbin-li Jul 29, 2024
b0d8a2d
Merge pull request #1672 from ratify-project/dependabot/github_action…
binbin-li Jul 30, 2024
3578e05
chore: Bump github.com/docker/docker
dependabot[bot] Jul 30, 2024
bd87979
Merge pull request #1674 from ratify-project/dependabot/go_modules/gi…
binbin-li Jul 31, 2024
060c5a5
Merge branch 'dev' into ratify-err-doc
binbin-li Jul 31, 2024
bd97bc2
docs: add proposal for producing supply chain metadata for all ratify…
akashsinghal Jul 31, 2024
17f829a
build: add image signing for dev images and add release sbom (#1629)
akashsinghal Jul 31, 2024
7294999
fix: warning message is printed to stdout by CLI (#1650)
susanshi Aug 1, 2024
8549d91
Merge branch 'dev' into ratify-err-doc
susanshi Aug 1, 2024
90367de
Merge pull request #1668 from binbin-li/ratify-err-doc
binbin-li Aug 1, 2024
9d5acaf
fix: pass CODECOV_TOKEN to reusable workflow
binbin-li Aug 1, 2024
ba5638e
Merge pull request #1676 from binbin-li/fix-codecov
binbin-li Aug 1, 2024
f0cdcfe
fix: remove duplicate $
binbin-li Aug 1, 2024
18f071a
Merge branch 'dev' into fix-codecov
binbin-li Aug 1, 2024
a494009
update per comments
yizha1 Aug 1, 2024
b652e00
Merge pull request #1677 from binbin-li/fix-codecov
binbin-li Aug 2, 2024
05a8cbe
fix: fix typo in notation verifier (#1678)
junczhu Aug 2, 2024
b12b038
fix: bump-up docker dependency (#1679)
junczhu Aug 2, 2024
1401080
update per comments
yizha1 Aug 2, 2024
3bb4224
chore: Bump actions/upload-artifact from 4.3.4 to 4.3.5
dependabot[bot] Aug 5, 2024
e222c72
Merge pull request #1684 from ratify-project/dependabot/github_action…
binbin-li Aug 5, 2024
8b17053
feat: add verifierName, verifierType and errorReason fields to verifi…
binbin-li Jul 25, 2024
af1a0d8
feat: refactor error message format
binbin-li Jul 31, 2024
9eccff6
chore: remove unused code path
binbin-li Aug 6, 2024
aedb222
chore: Bump step-security/harden-runner from 2.9.0 to 2.9.1
dependabot[bot] Aug 6, 2024
300401c
Merge pull request #1689 from ratify-project/dependabot/github_action…
binbin-li Aug 6, 2024
e757310
Merge branch 'dev' into verification-response
binbin-li Aug 6, 2024
294a715
Merge pull request #1671 from binbin-li/verification-response
binbin-li Aug 6, 2024
451390b
Merge branch 'dev' into error-log-message
binbin-li Aug 6, 2024
92ce84f
chore: update scorecards action (#1687)
junczhu Aug 6, 2024
220dfce
Merge branch 'dev' into error-log-message
binbin-li Aug 6, 2024
51c5402
chore: rename WithLinkToDoc to WithRemediation
binbin-li Aug 6, 2024
46280e0
chore: Bump actions/upload-artifact from 4.3.5 to 4.3.6
dependabot[bot] Aug 7, 2024
f347f6a
chore: Bump github/codeql-action from 3.25.15 to 3.26.0
dependabot[bot] Aug 7, 2024
e6f031b
Merge pull request #1692 from ratify-project/dependabot/github_action…
binbin-li Aug 7, 2024
bb8d7f0
Merge branch 'dev' into dependabot/github_actions/actions/upload-arti…
binbin-li Aug 7, 2024
c83f3f8
Merge pull request #1691 from ratify-project/dependabot/github_action…
binbin-li Aug 7, 2024
4bbd9f1
Merge branch 'dev' into proposal_errorimprovements
binbin-li Aug 8, 2024
1ecd579
Merge pull request #1662 from yizha1/proposal_errorimprovements
binbin-li Aug 8, 2024
742ccc0
chore: Bump sigstore/cosign-installer from 3.5.0 to 3.6.0
dependabot[bot] Aug 8, 2024
8a8192d
Merge pull request #1695 from ratify-project/dependabot/github_action…
binbin-li Aug 8, 2024
5b7c4e0
Merge branch 'dev' into error-log-message
binbin-li Aug 9, 2024
e8f8000
Merge pull request #1675 from binbin-li/error-log-message
binbin-li Aug 9, 2024
f510dd9
Merge branch 'dev' into remove-autorest-adal
binbin-li Aug 9, 2024
23092c6
feat: add open ssf best practices badge (#1696)
susanshi Aug 9, 2024
518ad3d
Merge branch 'dev' into remove-autorest-adal
binbin-li Aug 9, 2024
56ffab4
Merge pull request #1688 from binbin-li/remove-autorest-adal
binbin-li Aug 9, 2024
c2f5c3a
chore: Bump github.com/sigstore/sigstore from 1.8.7 to 1.8.8
dependabot[bot] Aug 12, 2024
341c545
chore: Bump github.com/google/go-containerregistry from 0.20.1 to 0.20.2
dependabot[bot] Aug 12, 2024
2389aa6
chore: Bump vscode/devcontainers/go in /.devcontainer
dependabot[bot] Aug 12, 2024
730c48b
chore: Bump golang from `86a3c48` to `2bd56f0` in /httpserver
dependabot[bot] Aug 12, 2024
6ba1c32
Merge pull request #1706 from ratify-project/dependabot/docker/httpse…
binbin-li Aug 12, 2024
7e387db
Merge branch 'dev' into dependabot/docker/dot-devcontainer/vscode/dev…
binbin-li Aug 12, 2024
956109c
Merge pull request #1705 from ratify-project/dependabot/docker/dot-de…
binbin-li Aug 12, 2024
e353f38
Merge branch 'dev' into dependabot/go_modules/github.com/google/go-co…
binbin-li Aug 12, 2024
f78f69d
Merge pull request #1704 from ratify-project/dependabot/go_modules/gi…
binbin-li Aug 12, 2024
bb8516e
Merge branch 'dev' into dependabot/go_modules/github.com/sigstore/sig…
binbin-li Aug 12, 2024
9862c66
Update go.mod
binbin-li Aug 13, 2024
e1cf41e
Merge pull request #1703 from ratify-project/dependabot/go_modules/gi…
binbin-li Aug 13, 2024
9804ad7
chore: Bump github/codeql-action from 3.26.0 to 3.26.1
dependabot[bot] Aug 14, 2024
60a21cd
chore: Bump anchore/sbom-action from 0.17.0 to 0.17.1
dependabot[bot] Aug 14, 2024
c098e93
Merge pull request #1708 from ratify-project/dependabot/github_action…
binbin-li Aug 14, 2024
0447079
Merge branch 'dev' into dependabot/github_actions/anchore/sbom-action…
binbin-li Aug 14, 2024
2b270c3
Merge pull request #1709 from ratify-project/dependabot/github_action…
binbin-li Aug 14, 2024
365d843
chore: update helm charts (#1702)
junczhu Aug 15, 2024
3e04cb5
feat: add timestamp and traceId to verification response (#1697)
binbin-li Aug 15, 2024
486a308
chore: Bump github/codeql-action from 3.26.1 to 3.26.2
dependabot[bot] Aug 15, 2024
1ddf2f9
Merge pull request #1714 from ratify-project/dependabot/github_action…
binbin-li Aug 15, 2024
f2ed26e
chore: add the governance doc link to readme.md (#1713)
yizha1 Aug 15, 2024
a5f6f59
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.27 to 1.27.…
dependabot[bot] Aug 19, 2024
4e02c39
chore: Bump k8s.io/client-go from 0.28.12 to 0.28.13 (#1722)
dependabot[bot] Aug 19, 2024
2b08e26
chore: Bump golang from `2bd56f0` to `367bb52` in /httpserver (#1725)
dependabot[bot] Aug 19, 2024
f495934
feat: KMP periodic retrieval with k8s requeue (#1727)
duffney Aug 20, 2024
be3adc1
chore: stop printing out error stack trace (#1711)
binbin-li Aug 20, 2024
d0c04e4
chore: Bump github/codeql-action from 3.26.2 to 3.26.3 (#1728)
dependabot[bot] Aug 20, 2024
0b6aa67
feat: fill ErrorReason and Remediation during verifierReport generati…
binbin-li Aug 21, 2024
7500f96
test: add tests to akv provider (#1729)
binbin-li Aug 21, 2024
796c8c3
docs: update the contributing guide for a successful cli debugging (#…
shahramk64 Aug 21, 2024
9afbbf9
fix: Enforce validation on notation signature blob number (#1726)
binbin-li Aug 22, 2024
d83a7de
chore: Bump github/codeql-action from 3.26.3 to 3.26.4 (#1736)
dependabot[bot] Aug 22, 2024
c8c9c0e
chore: Bump anchore/sbom-action from 0.17.1 to 0.17.2 (#1737)
dependabot[bot] Aug 22, 2024
494bcf3
docs: update contributing guide for enhancement (#1715)
susanshi Aug 22, 2024
9b96175
feat: save reconcile error for KMP/CertStore (#1710)
binbin-li Aug 23, 2024
fb5692e
chore: Bump vscode/devcontainers/go from `8cb4ef6` to `fdc107c` in /.…
dependabot[bot] Aug 26, 2024
f9569e4
chore: Bump github.com/docker/cli from 27.1.1+incompatible to 27.1.2+…
dependabot[bot] Aug 26, 2024
6c2fb71
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.28 to …
dependabot[bot] Aug 26, 2024
c62c142
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.28 to 1.27.…
dependabot[bot] Aug 26, 2024
5199eae
chore: Bump github/codeql-action from 3.26.4 to 3.26.5 (#1748)
dependabot[bot] Aug 26, 2024
d1e810b
chore: update local dev charts to the latest version (#1749)
junczhu Aug 27, 2024
8632ea5
fix: remove nonexistent KMP from verifier sample (#1753)
binbin-li Aug 27, 2024
269d176
fix: remove critical cache failure in oras `GetBlobContent` (#1740)
binbin-li Aug 28, 2024
6474b4d
fix: make notation verifier installation optional on ratify installat…
shahramk64 Aug 29, 2024
b2e5bfa
chore: Bump github/codeql-action from 3.26.5 to 3.26.6 (#1763)
dependabot[bot] Aug 30, 2024
e7655fe
feat: enhance CR status with clearer brief error message (#1734)
binbin-li Sep 2, 2024
64d5f33
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.30 to 1.27.…
dependabot[bot] Sep 2, 2024
f204e9d
chore: update aks version (#1768)
junczhu Sep 2, 2024
2b1c461
chore: Bump actions/upload-artifact from 4.3.6 to 4.4.0 (#1771)
dependabot[bot] Sep 2, 2024
0cae6c7
feat: timestamping feature (#1758)
junczhu Sep 3, 2024
4a44d3a
feat: Add refreshInterval to the helm chart Values (#1773)
shahramk64 Sep 3, 2024
1c52df8
test: e2e tests for kmp refresh logic (#1742)
duffney Sep 4, 2024
f548082
chore: add description for notation.enabled in the helm charts readme…
shahramk64 Sep 4, 2024
7519519
chore: add codecov badge (#1777)
binbin-li Sep 4, 2024
6487002
chore: update default templates (#1776)
junczhu Sep 5, 2024
7208f98
chore: update err-msg with notation (#1775)
junczhu Sep 5, 2024
23f6ac8
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.31 to 1.27.…
dependabot[bot] Sep 9, 2024
2534b33
chore: Bump github.com/sigstore/sigstore from 1.8.8 to 1.8.9 (#1782)
dependabot[bot] Sep 9, 2024
1a8f598
chore: Bump github.com/notaryproject/notation-go from 1.2.0 to 1.2.1 …
dependabot[bot] Sep 9, 2024
f6743d0
chore: Bump alpine from `0a4eaa0` to `beefdbd` (#1786)
dependabot[bot] Sep 9, 2024
ab77d70
chore: Bump distroless/static from `8dd8d3c` to `42d15c6` in /httpser…
dependabot[bot] Sep 9, 2024
a73822c
chore: Bump golang from `367bb52` to `192683d` in /httpserver (#1788)
dependabot[bot] Sep 9, 2024
d89400e
fix: remove unused trust store from sample verifier config (#1790)
binbin-li Sep 9, 2024
ab8d001
chore: Refactor error messages for Notation signature verification (#…
binbin-li Sep 9, 2024
4d4d00c
feat: refactor cosign verification error messages (#1750)
binbin-li Sep 10, 2024
7657a3f
chore: update CRD and related code to enable `type` field (#1779)
junczhu Sep 10, 2024
acf60d1
chore: Bump step-security/harden-runner from 2.9.1 to 2.10.0 (#1794)
dependabot[bot] Sep 11, 2024
5381e0c
fix: showing verifier config parse detail in err log (#1791)
junczhu Sep 11, 2024
b7cab88
chore: update error messages for cosign validation (#1792)
binbin-li Sep 11, 2024
4b04c08
chore: bump support GK version matrix to include v3.17.0 (#1795)
akashsinghal Sep 12, 2024
630a2bd
chore: Bump step-security/harden-runner from 2.10.0 to 2.10.1 (#1796)
dependabot[bot] Sep 12, 2024
b32db85
fix: missing status update in KMP controller (#1761)
duffney Sep 12, 2024
482aee7
chore: update helm charts for v1.3.0 (#1805)
junczhu Sep 13, 2024
ff3d824
docs: add config path arg to launch.json, update instructions (#1800)
shahramk64 Sep 14, 2024
95e6c4e
chore: update go reference badge to the new path (#1806)
binbin-li Sep 14, 2024
ae0a9f9
chore: Bump golang from `192683d` to `4594271` in /httpserver (#1808)
dependabot[bot] Sep 16, 2024
8cb5343
chore: Bump vscode/devcontainers/go from `fdc107c` to `44c273a` in /.…
dependabot[bot] Sep 16, 2024
0542598
chore: Bump github/codeql-action from 3.26.6 to 3.26.7 (#1810)
dependabot[bot] Sep 16, 2024
161fd6b
chore: Bump k8s.io/client-go from 0.28.13 to 0.28.14 (#1813)
dependabot[bot] Sep 17, 2024
9100119
chore: Bump github.com/open-policy-agent/opa from 0.63.0 to 0.68.0 (#…
dependabot[bot] Sep 19, 2024
a08976e
chore: Bump azure/login from 2.1.1 to 2.2.0 (#1816)
dependabot[bot] Sep 20, 2024
fb69af0
chore: Bump github/codeql-action from 3.26.7 to 3.26.8 (#1820)
dependabot[bot] Sep 20, 2024
79aac85
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.32 to …
dependabot[bot] Sep 23, 2024
4cd6ba2
chore: Bump distroless/static from `42d15c6` to `dcd3f1f` in /httpser…
dependabot[bot] Sep 23, 2024
aa28620
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.33 to 1.27.…
dependabot[bot] Sep 23, 2024
4032cc1
chore: Bump github.com/prometheus/client_golang from 1.20.2 to 1.20.4…
dependabot[bot] Sep 23, 2024
f1ca1c1
chore: Bump google.golang.org/grpc from 1.66.0 to 1.66.2 (#1825)
dependabot[bot] Sep 24, 2024
ac85e25
docs: some improvement in release instructions (#1815)
junczhu Sep 24, 2024
d3e49d2
chore: update the roadmap after v1.3.0 release (#1817)
yizha1 Sep 25, 2024
77fbbaf
chore: Bump github/codeql-action from 3.26.8 to 3.26.9 (#1828)
dependabot[bot] Sep 25, 2024
8d72736
chore: Bump vscode/devcontainers/go from `44c273a` to `68e6bd3` in /.…
dependabot[bot] Sep 25, 2024
2a7ec4d
chore: Bump actions/checkout from 4.1.7 to 4.2.0 (#1830)
dependabot[bot] Sep 27, 2024
aea7688
chore: Bump notaryproject/notation-action from 1.1.0 to 1.2.0 (#1832)
dependabot[bot] Sep 30, 2024
c260f3b
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.34 to …
dependabot[bot] Sep 30, 2024
70e4744
chore: Bump vscode/devcontainers/go from `68e6bd3` to `d638d11` in /.…
dependabot[bot] Sep 30, 2024
d72b0d7
chore: Bump golang from `4594271` to `ddad330` in /httpserver (#1837)
dependabot[bot] Oct 1, 2024
8786419
chore: Bump distroless/static from `dcd3f1f` to `26f9b99` in /httpser…
dependabot[bot] Oct 1, 2024
036beb9
chore: Bump github/codeql-action from 3.26.9 to 3.26.10 (#1840)
dependabot[bot] Oct 1, 2024
6bf96b0
chore: Bump golang/govulncheck-action from 1.0.3 to 1.0.4 (#1841)
dependabot[bot] Oct 2, 2024
ad5cdcf
chore: Bump codecov/codecov-action from 4.5.0 to 4.6.0 (#1842)
dependabot[bot] Oct 2, 2024
b94c067
chore: Bump golangci/golangci-lint-action from 6.1.0 to 6.1.1 (#1845)
dependabot[bot] Oct 3, 2024
5327afe
docs: add commits doc to contributing guide (#1844)
susanshi Oct 7, 2024
6fd804f
chore: Bump github/codeql-action from 3.26.10 to 3.26.11 (#1846)
dependabot[bot] Oct 7, 2024
8162d6a
chore: Bump golang from `ddad330` to `628529a` in /httpserver (#1847)
dependabot[bot] Oct 7, 2024
1af7001
chore: Bump vscode/devcontainers/go from `d638d11` to `bdecb4c` in /.…
dependabot[bot] Oct 7, 2024
b41acf8
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.36 to 1.27.…
dependabot[bot] Oct 7, 2024
96fb63d
chore: Bump google.golang.org/grpc from 1.66.2 to 1.66.3 (#1850)
dependabot[bot] Oct 7, 2024
7ce62b7
chore: Bump sigstore/cosign-installer from 3.6.0 to 3.7.0 (#1851)
dependabot[bot] Oct 7, 2024
2b1890b
chore: Bump actions/upload-artifact from 4.4.0 to 4.4.1 (#1855)
dependabot[bot] Oct 8, 2024
f6fae7e
chore: Bump actions/checkout from 4.2.0 to 4.2.1 (#1857)
dependabot[bot] Oct 8, 2024
1ecd21f
chore: Bump github/codeql-action from 3.26.11 to 3.26.12 (#1856)
dependabot[bot] Oct 9, 2024
957207b
chore: Bump github/codeql-action from 3.26.12 to 3.26.13 (#1869)
dependabot[bot] Oct 15, 2024
6f96ebc
chore: Bump golang from `628529a` to `b274ff1` in /httpserver (#1865)
dependabot[bot] Oct 15, 2024
4ed4425
chore: Bump actions/upload-artifact from 4.4.1 to 4.4.3 (#1859)
dependabot[bot] Oct 15, 2024
85781cc
feat: additional env vars for ratify container via helm chart (#1854)
mannbiher Oct 16, 2024
6376762
ci: replace trivy with trivy-action (#1871)
binbin-li Oct 16, 2024
130194f
chore: Bump anchore/sbom-action from 0.17.2 to 0.17.4 (#1872)
dependabot[bot] Oct 16, 2024
1757d2a
chore: Bump aquasecurity/trivy-action from 0.27.0 to 0.28.0 (#1873)
dependabot[bot] Oct 16, 2024
deafb4a
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.27.41 to 1.27.…
dependabot[bot] Oct 16, 2024
7213fed
chore: Bump golang from `b274ff1` to `0ca97f4` in /httpserver (#1876)
dependabot[bot] Oct 21, 2024
c8e8e00
chore: Bump github.com/prometheus/client_golang from 1.20.4 to 1.20.5…
dependabot[bot] Oct 21, 2024
a9ee776
chore: Bump vscode/devcontainers/go from `bdecb4c` to `46f85d1` in /.…
dependabot[bot] Oct 21, 2024
9c40fba
chore: bump up go version to 1.22.8 (#1880)
binbin-li Oct 21, 2024
ea3cee5
chore: Bump github.com/sigstore/sigstore from 1.8.9 to 1.8.10 (#1878)
dependabot[bot] Oct 21, 2024
12b4446
docs: design proposal for tag and digest co-existing [ISSUE 1657] (#1…
emalprokt Oct 22, 2024
5083cd4
docs: add CRL Design (#1789)
junczhu Oct 22, 2024
cc80ff8
docs: Create proposal for verifying 'last-n' artifacts only. (#1797)
asafalgawi Oct 22, 2024
f578982
docs: nVersionCount support for KMP design doc (#1831)
duffney Oct 22, 2024
44abd8b
ci: retry trivy db update upon failure (#1881)
binbin-li Oct 22, 2024
75ed5ba
chore: Bump anchore/sbom-action from 0.17.4 to 0.17.5 (#1882)
dependabot[bot] Oct 22, 2024
df7fdff
ci: fix tagging in publish-ghcr workflow (#1884)
binbin-li Oct 23, 2024
c4adde7
ci: retry trivy download-db on failure (#1883)
binbin-li Oct 23, 2024
7c58a9a
chore: migrate azure-sdk-for-go/containerregistry to the latest relea…
shahramk64 Oct 23, 2024
8ea916e
chore: Bump github/codeql-action from 3.26.13 to 3.27.0 (#1887)
dependabot[bot] Oct 23, 2024
6d7ce9e
chore: update charts (#1892)
junczhu Oct 23, 2024
2796321
chore: Bump actions/checkout from 4.2.1 to 4.2.2 (#1893)
dependabot[bot] Oct 24, 2024
e9152c9
chore: Bump actions/setup-go from 5.0.2 to 5.1.0 (#1894)
dependabot[bot] Oct 25, 2024
33064b0
chore: Bump k8s.io/apimachinery from 0.28.14 to 0.28.15 (#1896)
dependabot[bot] Oct 29, 2024
4ffcf5e
chore: Bump distroless/static from `26f9b99` to `3a03fc0` in /httpser…
dependabot[bot] Oct 29, 2024
3e80c13
chore: Bump k8s.io/client-go from 0.28.14 to 0.28.15 (#1897)
dependabot[bot] Oct 29, 2024
36a9b6e
chore: Bump anchore/sbom-action from 0.17.5 to 0.17.6 (#1903)
dependabot[bot] Oct 30, 2024
10c4310
feat: allow service account annotations (#1907)
mannbiher Nov 4, 2024
31f63a5
chore: Bump github.com/aws/aws-sdk-go-v2 from 1.32.2 to 1.32.3 (#1912)
dependabot[bot] Nov 4, 2024
6edc911
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.41 to …
dependabot[bot] Nov 4, 2024
b82b60d
chore: Bump github.com/AzureAD/microsoft-authentication-library-for-g…
dependabot[bot] Nov 4, 2024
4f8dc7c
chore: Bump anchore/sbom-action from 0.17.6 to 0.17.7 (#1915)
dependabot[bot] Nov 6, 2024
716fb8a
chore: Bump github.com/golang-jwt/jwt/v4 from 4.5.0 to 4.5.1 (#1916)
dependabot[bot] Nov 6, 2024
98f5581
feat: support enabled status for kmp keys/certs (#1874)
duffney Nov 6, 2024
4ab047b
ci: add cron job to cache trivy db (#1918)
binbin-li Nov 8, 2024
18a8878
fix: fix the conditional check on update-trivy-cache job (#1919)
binbin-li Nov 8, 2024
4510dd8
feat: add support for crl basic functionality with built-in cache (#1…
junczhu Nov 8, 2024
8647de2
chore: Bump goreleaser/goreleaser-action from 6.0.0 to 6.1.0 (#1920)
dependabot[bot] Nov 11, 2024
511751f
chore: Bump github/codeql-action from 3.27.0 to 3.27.1 (#1922)
dependabot[bot] Nov 11, 2024
b673586
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.42 to …
dependabot[bot] Nov 11, 2024
ddc3853
chore: Bump golang from `0ca97f4` to `4cfe4a9` in /httpserver (#1925)
dependabot[bot] Nov 11, 2024
e73d4f5
chore: Bump github/codeql-action from 3.27.1 to 3.27.3 (#1926)
dependabot[bot] Nov 13, 2024
0837c02
feat: support alibaba cloud rrsa store auth provider (#1909)
DahuK Nov 14, 2024
14f75c9
chore: Bump github/codeql-action from 3.27.3 to 3.27.4 (#1929)
dependabot[bot] Nov 18, 2024
7e6e96c
chore: Bump alpine from `beefdbd` to `1e42bbe` (#1937)
dependabot[bot] Nov 18, 2024
2b789f3
chore: Bump golang from `4cfe4a9` to `147f428` in /httpserver (#1936)
dependabot[bot] Nov 18, 2024
d350f5c
chore: Bump distroless/static from `3a03fc0` to `d71f4b2` in /httpser…
dependabot[bot] Nov 18, 2024
0948848
chore: Bump github.com/aliyun/credentials-go from 1.3.10 to 1.3.11 (#…
dependabot[bot] Nov 18, 2024
4ae49e0
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.44 to …
dependabot[bot] Nov 18, 2024
a3b5d53
chore: Bump codecov/codecov-action from 4.6.0 to 5.0.2 (#1932)
dependabot[bot] Nov 19, 2024
281ca40
chore: Replace deprecated autorest SDK with azidentity (#1904)
shahramk64 Nov 19, 2024
9b5d31b
chore: Bump step-security/harden-runner from 2.10.1 to 2.10.2 (#1938)
dependabot[bot] Nov 19, 2024
04d1de7
chore: Bump codecov/codecov-action from 5.0.2 to 5.0.4 (#1939)
dependabot[bot] Nov 20, 2024
675a5d6
chore: Bump codecov/codecov-action from 5.0.4 to 5.0.7 (#1946)
dependabot[bot] Nov 21, 2024
6c5604b
chore: Bump github/codeql-action from 3.27.4 to 3.27.5 (#1945)
dependabot[bot] Nov 21, 2024
b31e250
chore: Bump anchore/sbom-action from 0.17.7 to 0.17.8 (#1948)
dependabot[bot] Nov 22, 2024
67cd411
chore: Bump github.com/aws/aws-sdk-go-v2/credentials from 1.17.45 to …
dependabot[bot] Nov 25, 2024
aae1aa6
fix: add missing pod annotations and labels to deployment spec (#1949)
akashsinghal Nov 26, 2024
6a719c9
chore: Bump github.com/sigstore/rekor from 1.3.6 to 1.3.7 (#1952)
dependabot[bot] Nov 29, 2024
d8dfa60
chore: bump up golangci-lint version (#1961)
binbin-li Dec 3, 2024
666849a
fix(tls): allowing TLS when crd-manager disabled (#1954)
JoupainMD Dec 3, 2024
527004b
chore: Bump github.com/aws/aws-sdk-go-v2/config from 1.28.3 to 1.28.6…
dependabot[bot] Dec 3, 2024
ca88b62
chore: Bump distroless/static from `d71f4b2` to `6cd937e` in /httpser…
dependabot[bot] Dec 3, 2024
fa9be71
chore: Bump github/codeql-action from 3.27.5 to 3.27.6 (#1963)
dependabot[bot] Dec 5, 2024
a2efeb7
build: add image signing for all release images (#1947)
akashsinghal Dec 6, 2024
78b2eba
chore: Bump golang from `73f06be` to `574185e` in /httpserver (#1973)
dependabot[bot] Dec 9, 2024
d176ea0
docs: update dev image release guidance (#1974)
akashsinghal Dec 10, 2024
59240ad
feat: Implementation of KMP CRL revocation factory with cache (#1900)
junczhu Dec 10, 2024
bb71ae7
chore: Bump alpine from `1e42bbe` to `21dc606` (#1972)
dependabot[bot] Dec 10, 2024
dd3a6b0
chore: Bump google.golang.org/grpc from 1.68.0 to 1.68.1 (#1971)
dependabot[bot] Dec 10, 2024
0c39265
chore: Bump actions/cache from 4.1.2 to 4.2.0 (#1967)
dependabot[bot] Dec 10, 2024
9db18d3
chore: Bump codecov/codecov-action from 5.0.7 to 5.1.1 (#1966)
dependabot[bot] Dec 10, 2024
77419d5
chore: Bump github.com/notaryproject/notation-core-go from 1.2.0-rc.1…
dependabot[bot] Dec 10, 2024
303c52e
chore: Bump actions/setup-go from 5.1.0 to 5.2.0 (#1979)
dependabot[bot] Dec 11, 2024
ffddcda
chore: Bump github/codeql-action from 3.27.6 to 3.27.7 (#1978)
dependabot[bot] Dec 11, 2024
dea367e
chore: bump K8s versions (#1975)
akashsinghal Dec 11, 2024
9233abb
chore: bump makefile tool dependency version (#1976)
akashsinghal Dec 11, 2024
252afd8
chore: bump up golang.org/x/crypto pkg to fix vuln (#1981)
junczhu Dec 12, 2024
1044456
chore: Bump github/codeql-action from 3.27.7 to 3.27.9 (#1983)
dependabot[bot] Dec 13, 2024
c6b3dae
chore: Bump anchore/sbom-action from 0.17.8 to 0.17.9 (#1988)
dependabot[bot] Dec 16, 2024
55c8328
chore: Bump github.com/sigstore/sigstore from 1.8.10 to 1.8.11 (#1986)
dependabot[bot] Dec 16, 2024
3c109f7
chore: Bump github.com/notaryproject/notation-go from 1.3.0-rc.1 to 1…
dependabot[bot] Dec 16, 2024
bd97cb1
chore: bump GK support to 3.18 (#1980)
akashsinghal Dec 16, 2024
a8e2ada
build: add manual package installation for pass to support new GH run…
akashsinghal Dec 17, 2024
426b919
chore: Bump golang from `574185e` to `7003184` in /httpserver (#1985)
dependabot[bot] Dec 17, 2024
42392fd
chore: Bump vscode/devcontainers/go from `46f85d1` to `5625272` in /.…
dependabot[bot] Dec 17, 2024
6c1274f
chore: Bump actions/upload-artifact from 4.4.3 to 4.5.0 (#1991)
dependabot[bot] Dec 18, 2024
1bdc47c
test: test permission (#322)
binbin-li Dec 19, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Prev Previous commit
Next Next commit
chore: Bump golang from b274ff1 to 0ca97f4 in /httpserver (ratify…
…-project#1876)

Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
  • Loading branch information
dependabot[bot] authored Oct 21, 2024
commit 7213fed17448ae8bcffaaeeae3d422668674d340
2 changes: 1 addition & 1 deletion httpserver/Dockerfile
Original file line number Diff line number Diff line change
@@ -11,7 +11,7 @@
# See the License for the specific language governing permissions and
# limitations under the License.

FROM --platform=$BUILDPLATFORM golang:1.22@sha256:b274ff14d8eb9309b61b1a45333bf0559a554ebcf6732fa2012dbed9b01ea56f as builder
FROM --platform=$BUILDPLATFORM golang:1.22@sha256:0ca97f4ab335f4b284a5b8190980c7cdc21d320d529f2b643e8a8733a69bfb6b as builder

ARG TARGETPLATFORM
ARG TARGETOS