Skip to content

Commit d35d2af

Browse files
authored
Update build-and-deploy.yml
1 parent 0677535 commit d35d2af

File tree

1 file changed

+7
-4
lines changed

1 file changed

+7
-4
lines changed

.github/workflows/build-and-deploy.yml

Lines changed: 7 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -50,10 +50,10 @@ jobs:
5050
--tag ${REPO_URL}/example-project-app:${{ github.run_number }} \
5151
--output=type=image --platform linux/amd64 --metadata-file=build-metadata --push
5252
jfrog rt build-docker-create ${REPO_NAME} --image-file build-metadata --build-name ${{ vars.BUILD_NAME }} --build-number ${{ github.run_number }}
53-
echo "debug section"
5453
DIGEST=$(docker buildx imagetools inspect --raw ${REPO_URL}/example-project-app:${{ github.run_number }} | jq '.manifests[0].digest')
55-
echo $DIGEST
5654
echo "digest=$DIGEST\n" >> $GITHUB_OUTPUT
55+
echo "image_name=${REPO_URL}/example-project-app\n" >> $GITHUB_OUTPUT
56+
5757
- name: Sign docker image
5858
env:
5959
TAGS: ${{ steps.docker_meta.outputs.tags }}
@@ -73,8 +73,11 @@ jobs:
7373
--predicate ./sign.json --predicate-type https://jfrog.com/evidence/signature/v1
7474
echo '🔎 Evidence attached: `signature` 🔏 '
7575
- name: Build Attestation Generation
76-
run: |
77-
echo "digest found: ${{ steps.docker-build.outputs.digest }}"
76+
uses: actions/attest-build-provenance@v2
77+
id: attest
78+
with:
79+
subject-name: ${{ steps.docker-build.outputs.image_name }}
80+
subject-digest: ${{ steps.docker-build.outputs.digest }}
7881
- name: Upload readme file
7982
run: |
8083
jf rt upload ./README.md evidence-demo-generic-dev-local/readme/${{ github.run_number }}/ --build-name ${{ vars.BUILD_NAME }} --build-number ${{ github.run_number }}

0 commit comments

Comments
 (0)