✨ enable container signing#844
Conversation
This commit enables container signing for all images build from this repository via build-images-action.yml and release.yml, both reusing container-image-build.yml from project-infra. All container images will be built with keyless signing, utilizing short-lived Github Actions OIDC tokens (id-token: write) and the certificates and transparency logs are utilizing Sigstore's public Fulcio and Rekor services. Signed-off-by: Tuomo Tanskanen <tuomo.tanskanen@est.tech>
tuminoid
left a comment
There was a problem hiding this comment.
/retitle ✨ enable container signing
/override metal3-centos-e2e-integration-test-release-1-11 metal3-ubuntu-e2e-integration-test-release-1-11
/lgtm
/cc @elfosardo @dtantsur
|
@tuminoid: Overrode contexts on behalf of tuminoid: metal3-centos-e2e-integration-test-release-1-11, metal3-ubuntu-e2e-integration-test-release-1-11 DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
/approve |
|
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: elfosardo The full list of commands accepted by this bot can be found here. The pull request process is described here DetailsNeeds approval from an approver in each of these files:
Approvers can indicate their approval by writing |
This is an automated cherry-pick of #828
/assign tuminoid