Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
58 commits
Select commit Hold shift + click to select a range
00fbdcd
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 9, 2026
d54013a
feat(ci): use chunkah for rechunking (#2349)
renner0e Jun 9, 2026
65d3697
chore(ci): use ubuntu-slim for check jobs (#2358)
renner0e Jun 10, 2026
420c163
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 10, 2026
ebd531e
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 11, 2026
2cc0c8e
feat(ci): add retries for registry logins (#2369)
renner0e Jun 11, 2026
9fe72e7
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 12, 2026
64d487f
feat(just): add composefs-backend option to disk-image (#2370)
renner0e Jun 12, 2026
6bc17c3
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 12, 2026
957f637
fix(release): tag selection in changelogs.py (#2363)
ledif Jun 12, 2026
7fdf001
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 12, 2026
944b69c
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 13, 2026
e6d0774
chore: misc cleanup (#2382)
renner0e Jun 13, 2026
d029a02
chore(ci): remove docker compatibility + use buildah for build (#2380)
renner0e Jun 13, 2026
82105df
fix: build-chunked-oci --from image name (#2386)
renner0e Jun 13, 2026
5bb6dcd
feat(ci): print staging and production digest to summary (#2388)
renner0e Jun 14, 2026
e7ad461
chore(deps): update ghcr.io/ublue-os/brew:latest docker digest to 0b1…
ubot-7274[bot] Jun 14, 2026
64ac7b3
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 14, 2026
d65b74a
feat(ci): add more aggressive retries for pulling (#2394)
renner0e Jun 14, 2026
603d91d
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 15, 2026
66a3ad6
chore(backport-action): make the action fail if there is an error (#2…
inffy Jun 15, 2026
e1e718b
feat(ci): increase dnf timeout to combat network flakes (#2401)
renner0e Jun 15, 2026
9ec67a9
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 16, 2026
5ce4561
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 17, 2026
5fb31d1
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 17, 2026
fefad58
chore(ci): use container-storage-action again (#2408)
renner0e Jun 17, 2026
f7d006b
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 18, 2026
0cd962f
chore: make rpm-ostree status mandatory in issue template (#2418)
renner0e Jun 19, 2026
2c4c0fa
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 19, 2026
653027b
fix(ci): properly retry registry logins (#2417)
renner0e Jun 19, 2026
9a53444
chore(deps): update actions/checkout action to v7 (#2414)
ubot-7274[bot] Jun 19, 2026
f3515ea
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 19, 2026
946811e
chore(deps): update softprops/action-gh-release digest to 718ea10 (#2…
ubot-7274[bot] Jun 19, 2026
25c65a7
chore: Revert "chore: delete bootc install config (#2426)
renner0e Jun 20, 2026
9058cfd
chore(ci): set pull=newer for build command (#2427)
renner0e Jun 20, 2026
6797a05
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 20, 2026
70716b4
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 20, 2026
02f1790
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 20, 2026
670b339
chore(deps): update ghcr.io/ublue-os/brew:latest docker digest to 2fb…
ubot-7274[bot] Jun 21, 2026
f4165b8
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 21, 2026
4e0f34a
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 22, 2026
1637928
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 23, 2026
0aff61b
chore(deps): update actions/cache action to v6 (#2445)
ubot-7274[bot] Jun 24, 2026
bc090b2
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 24, 2026
d04572b
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 25, 2026
a9b5ee5
chore(deps): update ghcr.io/get-aurora-dev/common:latest docker diges…
ubot-7274[bot] Jun 25, 2026
e98bd7a
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 26, 2026
d58f8f7
chore(deps): update actions/attest action to v4.1.1 (#2457)
ubot-7274[bot] Jun 26, 2026
8d8cbd1
chore(deps): update actions/cache action to v6.1.0 (#2459)
ubot-7274[bot] Jun 26, 2026
d267b04
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 27, 2026
cfd014f
refactor(ci): initial work for using flag/arg-based workflow (#2443)
renner0e Jun 27, 2026
fb87c2d
chore(deps): update ghcr.io/ublue-os/brew:latest docker digest to 2b3…
ubot-7274[bot] Jun 28, 2026
aa7bc4b
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 28, 2026
b8a87a8
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 29, 2026
4fdd297
fix(ci): add space in disk-image (#2469)
renner0e Jun 29, 2026
45aa956
chore(deps): update korthout/backport-action action to v4.6.0 (#2470)
ubot-7274[bot] Jun 29, 2026
c84cae4
chore(deps): update quay.io/fedora-ostree-desktops/kinoite:44 docker …
ubot-7274[bot] Jun 30, 2026
9160f94
Merge remote-tracking branch 'origin/main' into stable-f44
renner0e Jun 30, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 2 additions & 0 deletions .github/ISSUE_TEMPLATE/bug-report.yml
Original file line number Diff line number Diff line change
Expand Up @@ -29,6 +29,8 @@ body:
label: Output of `rpm-ostree status`
description: Please run `rpm-ostree status` and paste the output here, it is the only way we can verify the exact image you are on for debugging purposes.
render: shell
validations:
required: true
- type: textarea
id: groups
attributes:
Expand Down
10 changes: 0 additions & 10 deletions .github/workflows/build-image-latest-main.yml
Original file line number Diff line number Diff line change
Expand Up @@ -19,14 +19,6 @@ on:
- ".github/workflows/scorecard.yml"
workflow_call:
workflow_dispatch:
inputs:
previous_build:
description: 'Set to 0 to manually clear rechunking plan'
type: choice
default: '1'
options:
- '0'
- '1'

permissions:
contents: read
Expand All @@ -48,8 +40,6 @@ jobs:
image_flavors: '["main", "nvidia-open"]'
brand_name: ${{ matrix.brand_name }}
stream_name: latest
#kernel_pin: 6.12.15-200.fc41.x86_64
previous_build: ${{ inputs.previous_build }}
# FIXME: MAIN has no arm builds in ublue-os/akmods yet
# https://github.com/ublue-os/akmods/pull/440
# architecture: '["aarch64","x86_64"]'
Expand Down
10 changes: 0 additions & 10 deletions .github/workflows/build-image-stable.yml
Original file line number Diff line number Diff line change
Expand Up @@ -13,14 +13,6 @@ on:
- ".github/workflows/scorecard.yml"
workflow_call:
workflow_dispatch:
inputs:
previous_build:
description: 'Set to 0 to manually clear rechunking plan'
type: choice
default: '1'
options:
- '0'
- '1'

permissions:
contents: read
Expand All @@ -39,10 +31,8 @@ jobs:
matrix:
brand_name: ["aurora"]
with:
#kernel_pin: 6.14.11-300.fc42.x86_64 ## This is where kernels get pinned.
brand_name: ${{ matrix.brand_name }}
stream_name: stable
previous_build: ${{ inputs.previous_build }}
# Enable ARM when it makes sense
# architecture: '["aarch64","x86_64"]'
architecture: '["x86_64"]'
Expand Down
11 changes: 1 addition & 10 deletions .github/workflows/build-image-testing.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,14 +10,6 @@ on:
- ".github/workflows/scorecard.yml"
workflow_call:
workflow_dispatch:
inputs:
previous_build:
description: 'Set to 0 to manually clear rechunking plan'
type: choice
default: '1'
options:
- '0'
- '1'

permissions:
contents: read
Expand All @@ -39,9 +31,8 @@ jobs:
image_flavors: '["main", "nvidia-open"]'
brand_name: ${{ matrix.brand_name }}
stream_name: testing
previous_build: ${{ inputs.previous_build }}
# FIXME: MAIN has no arm builds in ublue-os/akmods yet
# https://github.com/ublue-os/akmods/pull/440
# architecture: '["aarch64","x86_64"]'
architecture: '["x86_64"]'
publish: ${{ github.event_name != 'pull_request' }}
publish: ${{ github.event_name != 'pull_request' }}
2 changes: 1 addition & 1 deletion .github/workflows/cherry-pick-to-stable.yml
Original file line number Diff line number Diff line change
Expand Up @@ -37,7 +37,7 @@ jobs:

- name: Create Backport Pull Requests
id: backport
uses: korthout/backport-action@66065406958f46e82238fd59546f5a99e69e22aa # v4.5.2
uses: korthout/backport-action@2e830a1d0b8269505846ddd407a70876913ad1f8 # v4.6.0
with:
# Use the dynamically generated GitHub App token here too
github_token: ${{ steps.generate-token.outputs.token }}
Expand Down
137 changes: 72 additions & 65 deletions .github/workflows/reusable-build.yml
Original file line number Diff line number Diff line change
Expand Up @@ -15,12 +15,6 @@ on:
description: "The Fedora Version: stable, or latest"
required: true
type: string
kernel_pin:
description: "The full kernel version to pin"
type: string
previous_build:
description: 'Set a reference to a previous build to make updates smaller'
type: string
architecture:
description: "JSON string of architectures to build, '[aarch64, x86_64]'"
default: "['x86_64']"
Expand Down Expand Up @@ -137,7 +131,11 @@ jobs:
MATRIX_STREAM_NAME: ${{ matrix.stream_name }}
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
run: |
IMAGE_NAME="$(just image_name ${MATRIX_BASE_NAME} ${MATRIX_STREAM_NAME} ${MATRIX_IMAGE_FLAVOR})"
IMAGE_NAME="$(just image_name \
--image ${MATRIX_BASE_NAME} \
--tag ${MATRIX_STREAM_NAME} \
--flavor ${MATRIX_IMAGE_FLAVOR})"

echo "IMAGE_NAME=${IMAGE_NAME}" >> $GITHUB_ENV

- name: DNF Package Cache Setup
Expand All @@ -149,11 +147,12 @@ jobs:
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
GITHUB_EVENT_NAME: ${{ github.event_name }}
run: |
CACHE="$(just setup-cache "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"1" \
"${GITHUB_EVENT_NAME}")"
CACHE="$(just setup-cache \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
--ghcr \
--github-event "${GITHUB_EVENT_NAME}")"

CACHE_NAME="$(echo "${CACHE}" | cut -d' ' -f 1)"
ALLOW_CACHE_WRITE="$(echo "${CACHE}" | cut -d' ' -f 2)"
Expand All @@ -176,17 +175,18 @@ jobs:
id: build-image
shell: bash
env:
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} # ghcurl
MATRIX_BASE_NAME: ${{ matrix.base_name }}
MATRIX_STREAM_NAME: ${{ matrix.stream_name }}
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
INPUTS_KERNEL_PIN: ${{ inputs.kernel_pin }}
run: |
sudo -E $(command -v just) repo_organization="${{ github.repository_owner }}" \
build-ghcr "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"${INPUTS_KERNEL_PIN}"
sudo -E $(command -v just) \
repo_organization="${{ github.repository_owner }}" \
build \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
--ghcr

# https://github.com/actions/cache/issues/1533
- name: Hack around permission issue caching
Expand All @@ -204,20 +204,17 @@ jobs:
path: /var/tmp/buildah-cache-*
key: ${{ runner.os }}-${{ matrix.architecture }}-buildah-${{ env.CACHE_NAME }}-${{ github.run_id }}

- name: Rechunk Image with rpm-ostree
- name: Rechunk Image with Chunkah
id: rechunker
env:
MATRIX_BASE_NAME: ${{ matrix.base_name }}
MATRIX_STREAM_NAME: ${{ matrix.stream_name }}
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
PREVIOUS_BUILD: ${{ github.event_name == 'pull_request' && '0' || (github.event.inputs.previous_build || '1') }}
run: |
sudo -E $(command -v just) rechunk "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"1" \
"0" \
"${PREVIOUS_BUILD}"
sudo -E $(command -v just) rechunk \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}"

- name: Setup Syft
id: setup-syft
Expand All @@ -233,10 +230,11 @@ jobs:
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
SYFT_CMD: ${{ steps.setup-syft.outputs.cmd }}
run: |
sudo -E $(command -v just) gen-sbom "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"${SYFT_CMD}"
sudo -E $(command -v just) gen-sbom \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
"${SYFT_CMD}"

- name: Secureboot Check
id: secureboot
Expand All @@ -246,9 +244,10 @@ jobs:
MATRIX_STREAM_NAME: ${{ matrix.stream_name }}
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
run: |
sudo -E $(command -v just) secureboot "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}"
sudo -E $(command -v just) secureboot \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}"

- name: Export to OCI Archive
if: github.event_name == 'pull_request'
Expand All @@ -258,9 +257,10 @@ jobs:
MATRIX_STREAM_NAME: ${{ matrix.stream_name }}
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
run: |
sudo -E $(command -v just) export-oci "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}"
sudo -E $(command -v just) export-oci \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}"

- name: Upload OCI Archive as Artifact
if: github.event_name == 'pull_request'
Expand All @@ -283,10 +283,11 @@ jobs:
MATRIX_STREAM_NAME: ${{ matrix.stream_name }}
MATRIX_IMAGE_FLAVOR: ${{ matrix.image_flavor }}
run: |
sudo -E $(command -v just) disk-image "${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
1
sudo -E $(command -v just) disk-image \
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
--ghcr

- name: PR Testing Instructions
if: github.event_name == 'pull_request'
Expand All @@ -306,20 +307,17 @@ jobs:
MATRIX_BASE_NAME: "${{ matrix.base_name }}"
MATRIX_STREAM_NAME: "${{ matrix.stream_name }}"
MATRIX_IMAGE_FLAVOR: "${{ matrix.image_flavor }}"
INPUTS_KERNEL_PIN: "${{ inputs.kernel_pin }}"
IMAGE_NAME: ${{ env.IMAGE_NAME }}
GITHUB_EVENT_NAME: ${{ github.event_name }}
GITHUB_EVENT_NUMBER: ${{ github.event.number }}
run: |
alias_tags="$(just generate-build-tags \
"${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"${INPUTS_KERNEL_PIN}" \
"1" \
"$(podman inspect ${IMAGE_NAME}:${MATRIX_STREAM_NAME} | jq -r '.[].Config.Labels["org.opencontainers.image.version"]')" \
"${GITHUB_EVENT_NAME}" \
"${GITHUB_EVENT_NUMBER}")"
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
--ghcr \
--github-event "${GITHUB_EVENT_NAME}" \
--github-number "${GITHUB_EVENT_NUMBER}")"

echo "Tags for this Action..."
echo "$alias_tags"
Expand All @@ -334,9 +332,10 @@ jobs:
ALIAS_TAGS: ${{ steps.generate-tags.outputs.alias_tags }}
run: |
set -eoux pipefail
sudo -E $(command -v just) tag-images "${IMAGE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${ALIAS_TAGS}"
sudo -E $(command -v just) tag-images \
--image "${IMAGE_NAME}" \
--default-tag "${MATRIX_STREAM_NAME}" \
--tags "${ALIAS_TAGS}"

- name: Login to GitHub Container Registry
if: inputs.publish
Expand Down Expand Up @@ -371,13 +370,13 @@ jobs:
set -euox pipefail

sudo -E $(command -v just) push-image \
"${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"1" \
"${IMAGE_REGISTRY}" \
"1" \
"${TEMP_PUSH_TAG}"
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
--ghcr \
--registry "${IMAGE_REGISTRY}" \
--temp-push \
--temp-push-tag "${TEMP_PUSH_TAG}"

digest=$(< /tmp/digestfile)
echo "digest=${digest}" >> $GITHUB_OUTPUT
Expand Down Expand Up @@ -411,11 +410,19 @@ jobs:
set -euox pipefail

sudo -E $(command -v just) push-image \
"${MATRIX_BASE_NAME}" \
"${MATRIX_STREAM_NAME}" \
"${MATRIX_IMAGE_FLAVOR}" \
"1" \
"${IMAGE_REGISTRY}"
--image "${MATRIX_BASE_NAME}" \
--tag "${MATRIX_STREAM_NAME}" \
--flavor "${MATRIX_IMAGE_FLAVOR}" \
--ghcr \
--registry "${IMAGE_REGISTRY}"

digest=$(< /tmp/digestfile)
echo "digest=${digest}" >> $GITHUB_OUTPUT

echo '## Production digest'>> "$GITHUB_STEP_SUMMARY"
echo '```' >> "$GITHUB_STEP_SUMMARY"
echo "${digest}" >> "$GITHUB_STEP_SUMMARY"
echo '```' >> "$GITHUB_STEP_SUMMARY"

digest=$(< /tmp/digestfile)
echo "digest=${digest}" >> $GITHUB_OUTPUT
Expand Down
Loading
Loading