File tree Expand file tree Collapse file tree 1 file changed +7
-4
lines changed
Expand file tree Collapse file tree 1 file changed +7
-4
lines changed Original file line number Diff line number Diff line change @@ -50,10 +50,10 @@ jobs:
5050 --tag ${REPO_URL}/example-project-app:${{ github.run_number }} \
5151 --output=type=image --platform linux/amd64 --metadata-file=build-metadata --push
5252 jfrog rt build-docker-create ${REPO_NAME} --image-file build-metadata --build-name ${{ vars.BUILD_NAME }} --build-number ${{ github.run_number }}
53- echo "debug section"
5453 DIGEST=$(docker buildx imagetools inspect --raw ${REPO_URL}/example-project-app:${{ github.run_number }} | jq '.manifests[0].digest')
55- echo $DIGEST
5654 echo "digest=$DIGEST\n" >> $GITHUB_OUTPUT
55+ echo "image_name=${REPO_URL}/example-project-app\n" >> $GITHUB_OUTPUT
56+
5757 - name : Sign docker image
5858 env :
5959 TAGS : ${{ steps.docker_meta.outputs.tags }}
7373 --predicate ./sign.json --predicate-type https://jfrog.com/evidence/signature/v1
7474 echo '🔎 Evidence attached: `signature` 🔏 '
7575 - name : Build Attestation Generation
76- run : |
77- echo "digest found: ${{ steps.docker-build.outputs.digest }}"
76+ uses : actions/attest-build-provenance@v2
77+ id : attest
78+ with :
79+ subject-name : ${{ steps.docker-build.outputs.image_name }}
80+ subject-digest : ${{ steps.docker-build.outputs.digest }}
7881 - name : Upload readme file
7982 run : |
8083 jf rt upload ./README.md evidence-demo-generic-dev-local/readme/${{ github.run_number }}/ --build-name ${{ vars.BUILD_NAME }} --build-number ${{ github.run_number }}
You can’t perform that action at this time.
0 commit comments