diff --git a/.github/actions/tagged_release/docker/codesign/action.yml b/.github/actions/tagged_release/docker/codesign/action.yml index d6de416d..4ff74579 100644 --- a/.github/actions/tagged_release/docker/codesign/action.yml +++ b/.github/actions/tagged_release/docker/codesign/action.yml @@ -53,21 +53,21 @@ runs: password: ${{ inputs.docker_hub_access_token }} ########################### Sign built Docker image using cosign ########################### - - name: Sign the published Docker image - shell: bash - env: - COSIGN_PASSWORD: "${{ inputs.codesign_password }}" - run: | - IMAGE_NAME="${{ inputs.docker_hub_org }}/osctrl-${{ inputs.osctrl_component }}:${{ inputs.docker_tag }}" - echo "${{ inputs.codesign_private_key }}" > cosign.key - cosign sign --key cosign.key docker.io/$IMAGE_NAME@${{ inputs.docker_image_digest }} - rm -f cosign.key + # - name: Sign the published Docker image + # shell: bash + # env: + # COSIGN_PASSWORD: "${{ inputs.codesign_password }}" + # run: | + # IMAGE_NAME="${{ inputs.docker_hub_org }}/osctrl-${{ inputs.osctrl_component }}:${{ inputs.docker_tag }}" + # echo "${{ inputs.codesign_private_key }}" > cosign.key + # cosign sign --key cosign.key docker.io/$IMAGE_NAME@${{ inputs.docker_image_digest }} + # rm -f cosign.key - ########################### Verify signed image using cosign ########################### - - name: Verify the signed published Docker image - shell: bash - run: | - IMAGE_NAME="${{ inputs.docker_hub_org }}/osctrl-${{ inputs.osctrl_component }}:${{ inputs.docker_tag }}" - echo "${{ inputs.codesign_public_cert }}" > cosign.key - cosign verify --key cosign.key docker.io/$IMAGE_NAME@${{ inputs.docker_image_digest }} - rm -f cosign.key + # ########################### Verify signed image using cosign ########################### + # - name: Verify the signed published Docker image + # shell: bash + # run: | + # IMAGE_NAME="${{ inputs.docker_hub_org }}/osctrl-${{ inputs.osctrl_component }}:${{ inputs.docker_tag }}" + # echo "${{ inputs.codesign_public_cert }}" > cosign.key + # cosign verify --key cosign.key docker.io/$IMAGE_NAME@${{ inputs.docker_image_digest }} + # rm -f cosign.key diff --git a/.github/workflows/create_tagged_releases.yml b/.github/workflows/create_tagged_releases.yml index e4d43c6a..7beb5895 100644 --- a/.github/workflows/create_tagged_releases.yml +++ b/.github/workflows/create_tagged_releases.yml @@ -104,7 +104,7 @@ jobs: matrix: components: ['tls', 'admin', 'api', 'cli'] goos: ['linux'] - goarch: ['amd64'] + goarch: ['amd64', 'arm64'] steps: ########################### Checkout code ########################### - name: Checkout code