Branch: refs/heads/master
Home: https://github.com/openSUSE/open-build-service
Commit: f8010f2439eb5eca8aeaedc6758bcd1ae2de9a7e
https://github.com/openSUSE/open-build-service/commit/f8010f2439eb5eca8aeaed...
Author: Michael Schroeder
Date: 2022-10-04 (Tue, 04 Oct 2022)
Changed paths:
M src/backend/bs_repserver
Log Message:
-----------
[backend] bs_repserver: all builds with a slsa provenance need to be signed
Commit: 5ddcdb56aba219f85da5bffbf9fb013c11d2b612
https://github.com/openSUSE/open-build-service/commit/5ddcdb56aba219f85da5bf...
Author: Michael Schroeder
Date: 2022-10-04 (Tue, 04 Oct 2022)
Changed paths:
M src/backend/bs_signer
Log Message:
-----------
[backend] fix provenance file signing
The DSSE standard says that we must sign the raw data and not
the base64 encoded data.
Also refactor dsse signing into a new function.
Commit: e056f2bc299c6f4fbff2c5f4ef8b5d5af5ffdd13
https://github.com/openSUSE/open-build-service/commit/e056f2bc299c6f4fbff2c5...
Author: Michael Schroeder
Date: 2022-10-04 (Tue, 04 Oct 2022)
Changed paths:
M src/backend/BSRepServer/Containertar.pm
M src/backend/BSRepServer/SLSA.pm
M src/backend/bs_worker
Log Message:
-----------
[backend] implement provenance file generation for container builds
Add the rpms of the build environment and the rpms that were used
when building the container to the provenance file.
Commit: 7733126a5c4f3a975357cf5f7ba2a2f843ef871b
https://github.com/openSUSE/open-build-service/commit/7733126a5c4f3a975357cf...
Author: Michael Schroeder
Date: 2022-10-04 (Tue, 04 Oct 2022)
Changed paths:
M src/backend/BSConSign.pm
M src/backend/BSPublisher/Registry.pm
M src/backend/BSRekor.pm
M src/backend/BSSched/PublishRepo.pm
M src/backend/bs_publish
M src/backend/bs_repserver
Log Message:
-----------
[backend] implement container attestation publishing
We currently only publish to the internal registry. Support
for external registries will be added in another commit.
Commit: e7796f1dd33fdef9e4969c7e5493fa846ca6366c
https://github.com/openSUSE/open-build-service/commit/e7796f1dd33fdef9e4969c...
Author: Michael Schroeder
Date: 2022-10-05 (Wed, 05 Oct 2022)
Changed paths:
M src/backend/BSConSign.pm
M src/backend/BSPublisher/Registry.pm
M src/backend/BSRekor.pm
M src/backend/BSRepServer/Containertar.pm
M src/backend/BSRepServer/SLSA.pm
M src/backend/BSSched/PublishRepo.pm
M src/backend/bs_publish
M src/backend/bs_repserver
M src/backend/bs_signer
M src/backend/bs_worker
Log Message:
-----------
Merge pull request #13168 from mlschroe/master
[backend] implement container attestation generation and publishing
Compare: https://github.com/openSUSE/open-build-service/compare/6161511b7086...e7796f...