4613 Commits

Author SHA1 Message Date
miampf
d480781576
Remove test error 2025-02-20 17:23:45 +01:00
miampf
5c55142e31
Please shellcheck 2025-02-20 17:10:44 +01:00
miampf
1a3ccb01d2
Collect all errors before exiting 2025-02-20 16:38:30 +01:00
miampf
72a3c9089f
Only select required field 2025-02-20 15:53:32 +01:00
miampf
bc58333c37
Set extglob at correct step 2025-02-20 14:42:44 +01:00
miampf
730a532cf7
set -euo pipefail & use github outputs 2025-02-20 14:05:09 +01:00
miampf
b384971232
split workflow into multiple steps 2025-02-20 12:03:27 +01:00
miampf
4c94dfb1b0
fix shellcheck issues 2025-02-20 11:51:37 +01:00
miampf
df04e7b9cb
split jq command into multiple lines 2025-02-20 11:51:37 +01:00
miampf
8bc12b0887
Call workflow in release 2025-02-20 11:51:37 +01:00
miampf
8d73e31cbc
Make workflow workflow_call 2025-02-20 11:51:37 +01:00
miampf
785e54926c
use correct ternary syntax 2025-02-20 11:51:36 +01:00
miampf
4482c383e3
Rename env var to RELEASETAG 2025-02-20 11:51:36 +01:00
miampf
a1541824c8
reference selection 2025-02-20 11:51:36 +01:00
miampf
f3cf8bedc4
Add some comments that explain the jq filters 2025-02-20 11:51:36 +01:00
miampf
a0b9963a3d
delete expected zeroes from own measurements as well 2025-02-20 11:51:36 +01:00
miampf
48b1e82f0b
improve jq filter 2025-02-20 11:51:35 +01:00
miampf
bda16786ab
Delete warnOnly fields + debug logs 2025-02-20 11:51:35 +01:00
miampf
3549a1558e
Actually only compare measurements 2025-02-20 11:51:35 +01:00
miampf
04ea3c76e1
Explicitly install jq over nix 2025-02-20 11:51:35 +01:00
miampf
dbb758e396
pipefail + extglob 2025-02-20 11:51:35 +01:00
miampf
827f29010e
Add info echo 2025-02-20 11:51:34 +01:00
miampf
f440427343
Compare all measurements against respective targets 2025-02-20 11:51:34 +01:00
miampf
5377d81026
Download v2.20.0 release measurements and check 2025-02-20 11:51:34 +01:00
miampf
c209d44377
fix typo 2025-02-20 11:51:34 +01:00
miampf
20c78af900
Carry over PATH explicitly using env 2025-02-20 11:51:34 +01:00
miampf
253a9ae29a
use sudo -E and add a check if systemd-dissect is in PATH 2025-02-20 11:51:33 +01:00
miampf
66155cb00c
install systemdUkify tools 2025-02-20 11:51:33 +01:00
miampf
206850609b
compute measurements for single image 2025-02-20 11:51:33 +01:00
miampf
1feaccdc55
fix workflow 2025-02-20 11:51:33 +01:00
miampf
3303b079e7
only build measured boot cmd 2025-02-20 11:51:33 +01:00
miampf
d00ad8cc9a
started implementation 2025-02-20 11:51:32 +01:00
3u13r
99a81cd246
versionsapi: canonicalize ref in version constructors (#3652)
* versionsapi: canonicalize ref in version constructors

Co-authored-by: 3u13r <lc@edgeless.systems>
Signed-off-by: Paul Meyer <katexochen0@gmail.com>

* hack/cli-k8s-compat: canonicalize ref

---------

Signed-off-by: Paul Meyer <katexochen0@gmail.com>
Co-authored-by: Paul Meyer <katexochen0@gmail.com>
2025-02-19 11:41:10 +01:00
edgelessci
f8a95de174
image: update measurements and image version (#3655)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-19 08:28:08 +01:00
Markus Rudy
758191ad42
operator: bump controller-gen version (#3653)
* operator: bump controller-gen version

This bump the controller gen version and also adjusts the generate commands (back to the original ones). This allows correct generation of CRDs and go code.

---------

Co-authored-by: Leonard Cohnen <lc@edgeless.systems>
2025-02-18 11:06:56 +01:00
Moritz Sanft
28ae7de4ea
ci: supply STACKIT credentials to cleanup job (#3651) 2025-02-17 15:27:51 +01:00
edgelessci
d208251df1
image: update locked rpms (#3650)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-17 08:28:12 +01:00
renovate[bot]
0abd06053c
deps: update module k8s.io/kubernetes to v1.32.2 [SECURITY] (#3648)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-02-14 09:16:50 +01:00
edgelessci
b204b3c59b
image: update measurements and image version (#3649)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-14 08:35:50 +01:00
edgelessci
df2383ab09
chore: update CI for v2.20.1 (#3647)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-13 20:04:58 +01:00
renovate[bot]
28e92b9732
deps: update dependency rules_cc to v0.1.1 (#3643)
* deps: update dependency rules_cc to v0.1.1

* deps: tidy all modules

---------

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-13 10:23:24 +01:00
Thomas Tendyck
1551f8884e attestation: update go-azguestattestation to fix MAA PCR11 bug 2025-02-12 10:42:50 +01:00
edgelessci
c39ecc8a82
image: update measurements and image version (#3645)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-12 09:42:02 +01:00
edgelessci
571c81cfd5
image: update measurements and image version (#3641)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-07 13:38:12 +01:00
Daniel Weiße
4d79ce2773
deps: bump Go to v1.23.6 (#3642)
Signed-off-by: Daniel Weiße <dw@edgeless.systems>
2025-02-07 10:15:14 +01:00
renovate[bot]
cb77e7bb0d
deps: update dependency asciinema-player to v3.9.0 (#3635)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-02-06 12:40:38 +01:00
renovate[bot]
3fa29a5ee8
deps: update Go dependencies (#3631)
* deps: update Go dependencies
* deps: fix dependency for go-control-plane/envoy
* Accept AGPL-3.0 for edgelesssys/go-tdx-qpl

---------

Signed-off-by: Daniel Weiße <dw@edgeless.systems>
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: Daniel Weiße <dw@edgeless.systems>
2025-02-06 11:07:06 +01:00
renovate[bot]
f81c357f51
deps: update Constellation containers (#3638)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-02-06 08:03:14 +01:00
edgelessci
6d42d9b40e
image: update measurements and image version (#3636)
Co-authored-by: edgelessci <edgelessci@users.noreply.github.com>
2025-02-05 08:29:26 +01:00
renovate[bot]
f41c7619e1
deps: update ubuntu:24.04 Docker digest to 7229784 (#3634)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2025-02-04 10:02:41 +01:00