kfox1111
7687339420
Enable easy plugin loading ( #859 )
...
* Enable easy plugin loading
customPluings have to be loaded into the main container somehow. Extend
the existing cel plugin loader to allow users to easily specify an image
to load it from.
Signed-off-by: Kevin Fox <[email protected] >
* Add some missing bits
Signed-off-by: Kevin Fox <[email protected] >
* Incorperate feedback
Signed-off-by: Kevin Fox <[email protected] >
* Fix formatting
Signed-off-by: Kevin Fox <[email protected] >
* Fix formatting
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: Kevin Fox <[email protected] >
2026-06-25 22:49:42 -07:00
dependabot[bot]
a8a94544e2
Bump github.com/onsi/ginkgo/v2 from 2.31.0 to 2.32.0 in /tests
...
Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo ) from 2.31.0 to 2.32.0.
- [Release notes](https://github.com/onsi/ginkgo/releases )
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/ginkgo/compare/v2.31.0...v2.32.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/ginkgo/v2
dependency-version: 2.32.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-24 14:16:32 +02:00
dependabot[bot]
1012242394
Bump regclient/actions
...
Bumps [regclient/actions](https://github.com/regclient/actions ) from 14f9d37db17b5dc41fefd1ffdd1af4b9e2490560 to 4b4db1dcc7dad75ad67a788a380f75a20cc8a040.
- [Release notes](https://github.com/regclient/actions/releases )
- [Changelog](https://github.com/regclient/actions/blob/main/RELEASE.md )
- [Commits](https://github.com/regclient/actions/compare/14f9d37db17b5dc41fefd1ffdd1af4b9e2490560...4b4db1dcc7dad75ad67a788a380f75a20cc8a040 )
---
updated-dependencies:
- dependency-name: regclient/actions
dependency-version: 4b4db1dcc7dad75ad67a788a380f75a20cc8a040
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-24 14:16:16 +02:00
dependabot[bot]
4c47699e8a
Bump github.com/onsi/gomega from 1.42.0 to 1.42.1 in /tests
...
Bumps [github.com/onsi/gomega](https://github.com/onsi/gomega ) from 1.42.0 to 1.42.1.
- [Release notes](https://github.com/onsi/gomega/releases )
- [Changelog](https://github.com/onsi/gomega/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/gomega/compare/v1.42.0...v1.42.1 )
---
updated-dependencies:
- dependency-name: github.com/onsi/gomega
dependency-version: 1.42.1
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-24 10:57:11 +02:00
dependabot[bot]
517fdd5692
Bump actions/setup-go from 6.4.0 to 6.5.0
...
Bumps [actions/setup-go](https://github.com/actions/setup-go ) from 6.4.0 to 6.5.0.
- [Release notes](https://github.com/actions/setup-go/releases )
- [Commits](https://github.com/actions/setup-go/compare/v6.4.0...v6.5.0 )
---
updated-dependencies:
- dependency-name: actions/setup-go
dependency-version: 6.5.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-24 10:56:52 +02:00
dependabot[bot]
08fd19f272
Bump helm.sh/helm/v3 from 3.21.1 to 3.21.2 in /tests
...
Bumps [helm.sh/helm/v3](https://github.com/helm/helm ) from 3.21.1 to 3.21.2.
- [Release notes](https://github.com/helm/helm/releases )
- [Commits](https://github.com/helm/helm/compare/v3.21.1...v3.21.2 )
---
updated-dependencies:
- dependency-name: helm.sh/helm/v3
dependency-version: 3.21.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-22 10:53:19 +02:00
dependabot[bot]
7fc3cf4f8a
Bump actions/checkout from 6.0.3 to 7.0.0
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 6.0.3 to 7.0.0.
- [Release notes](https://github.com/actions/checkout/releases )
- [Commits](https://github.com/actions/checkout/compare/v6.0.3...v7 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: 7.0.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-19 09:21:02 +02:00
dependabot[bot]
d7d4f03265
Bump helm.sh/helm/v3 from 3.21.0 to 3.21.1 in /tests
...
Bumps [helm.sh/helm/v3](https://github.com/helm/helm ) from 3.21.0 to 3.21.1.
- [Release notes](https://github.com/helm/helm/releases )
- [Commits](https://github.com/helm/helm/compare/v3.21.0...v3.21.1 )
---
updated-dependencies:
- dependency-name: helm.sh/helm/v3
dependency-version: 3.21.1
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-15 11:37:35 +02:00
dependabot[bot]
0eaa756379
Bump github.com/onsi/ginkgo/v2 from 2.30.0 to 2.31.0 in /tests
...
Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo ) from 2.30.0 to 2.31.0.
- [Release notes](https://github.com/onsi/ginkgo/releases )
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/ginkgo/compare/v2.30.0...v2.31.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/ginkgo/v2
dependency-version: 2.31.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-15 11:35:19 +02:00
dependabot[bot]
96dcf10f8f
Bump github.com/onsi/gomega from 1.41.0 to 1.42.0 in /tests
...
Bumps [github.com/onsi/gomega](https://github.com/onsi/gomega ) from 1.41.0 to 1.42.0.
- [Release notes](https://github.com/onsi/gomega/releases )
- [Changelog](https://github.com/onsi/gomega/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/gomega/compare/v1.41.0...v1.42.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/gomega
dependency-version: 1.42.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-15 11:26:45 +02:00
Guillermo Gaston and kfox1111
4f8ac5af06
Configure jwt_issuer in SPIRE OIDC Provider ( #829 )
...
The SPIRE OIDC Discovery Provider binary supports a top-level
`jwt_issuer` configuration key. When set, the provider returns that
exact string as the `issuer` field in the OIDC discovery document
(`.well-known/openid-configuration`) regardless of how the request was
routed. When unset, it derives `issuer` from the inbound HTTP Host
header. This chart did not render that key into the OIDC provider
config, leaving the discovery document Host-derived even when the
operator had a fixed issuer in mind.
Why this matters
OpenID Connect Discovery requires the discovery doc's `issuer` to be
byte-equal to the JWT `iss` claim. Conformant verifiers reject the chain
when the two differ. Production OIDC consumers routinely reach the
discovery endpoint at a URL different from the canonical issuer:
- a load balancer, ingress, or NodePort exposes the provider on an
IP or host different from the canonical issuer name;
- TLS terminates at a hostname different from the one advertised to
clients;
- the discovery URL is fetched by an internal service (e.g. the API
server in a private cluster) over a different DNS view than
external clients use;
- a pinned issuer URL is contractually required and must survive
infrastructure changes that move the actual service endpoint.
In all of these the JWT's `iss` claim is a logical, stable URL; the
discovery doc must report that same value, or downstream verifiers
reject the tokens.
Current chart behavior
The chart already has `global.spire.jwtIssuer` (and a subchart-local
`jwtIssuer`), resolved by the `spire-lib.jwt-issuer` helper to
`global.spire.jwtIssuer` -> subchart-local `jwtIssuer` ->
`https://oidc-discovery .<trustDomain>`. The spire-server subchart writes
that helper's result unconditionally as `jwt_issuer:` into the server's
config -- this controls the `iss` claim of every JWT-SVID the server
mints. In the OIDC subchart, however, the same helper was only used for
two things:
1. as the strict-mode assertion gate (fails the render when the
resolved value is the `example.org` default);
2. as the default source for `config.jwtDomain` (the Host
allow-list).
It was never written into the rendered OIDC provider configuration file.
The asymmetry means the chart shipped a structurally invalid OIDC setup
by default: the spire-server signs JWTs with `iss = <resolved issuer>`,
while the OIDC discovery endpoint advertises whatever Host header was
used to reach it. The only way to correct that today is to patch the
rendered ConfigMap out of band (`kubectl patch`, a CMP, a kustomize
post-renderer), which defeats the purpose of the chart.
Backward compatibility and behavior changes
Operators who set `global.spire.jwtIssuer` will see one additional
`jwt_issuer:` line in the rendered OIDC ConfigMap. The discovery doc's
`issuer` will start returning that pinned value instead of being
Host-derived, bringing the chain into spec compliance; this is a fix for
any spec-compliant verifier that previously rejected tokens. Operators
who only set the OIDC subchart-local `jwtIssuer` see the same fix
applied via the helper's fallback chain. Operators with nothing set will
see the new line default to `https://oidc-discovery .<trustDomain>`,
matching what the spire-server config already emits today.
Signed-off-by: Guillermo Gaston <[email protected] >
Co-authored-by: kfox1111 <[email protected] >
2026-06-14 01:25:43 +00:00
Marco Franssen
4c56498e59
Merge pull request #843 from spiffe/dependabot/github_actions/regclient/actions-14f9d37db17b5dc41fefd1ffdd1af4b9e2490560
2026-06-12 21:26:11 +02:00
dependabot[bot]
528cc89f99
Bump github.com/onsi/ginkgo/v2 from 2.29.0 to 2.30.0 in /tests ( #844 )
...
Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo ) from 2.29.0 to 2.30.0.
- [Release notes](https://github.com/onsi/ginkgo/releases )
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/ginkgo/compare/v2.29.0...v2.30.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/ginkgo/v2
dependency-version: 2.30.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-12 05:30:08 -07:00
Bronson Mirafuentes and dependabot[bot]
86c60b186f
feat(spire-server): add terminationGracePeriodSeconds ( #835 )
...
* feat(spire-server): add terminationGracePeriodSeconds and lifecycle support
Adds two new top-level values to the spire-server chart:
- `terminationGracePeriodSeconds` (nullable, pod-spec level): overrides the
default 30s termination grace period. Useful when the server is behind a
load balancer that needs time to deregister the target (e.g. AWS NLB with
a deregistration delay > 30s).
- `lifecycle` (object, container level): lifecycle hooks for the spire-server
container. The primary use case is a preStop hook to hold the pod alive
while the load balancer deregisters the target before SIGTERM is sent:
lifecycle:
preStop:
sleep:
seconds: 60
Both fields default to their absent/empty equivalents (null and {}) so
existing deployments are unaffected.
Signed-off-by: Bronson Mirafuentes <[email protected] >
* Bump docker/login-action from 4.1.0 to 4.2.0 (#836 )
Bumps [docker/login-action](https://github.com/docker/login-action ) from 4.1.0 to 4.2.0.
- [Release notes](https://github.com/docker/login-action/releases )
- [Commits](https://github.com/docker/login-action/compare/v4.1.0...v4.2.0 )
---
updated-dependencies:
- dependency-name: docker/login-action
dependency-version: 4.2.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Signed-off-by: Bronson Mirafuentes <[email protected] >
* feat(spire-server): remove lifecycle hook support
Lifecycle hooks are not needed for the terminationGracePeriodSeconds
use case; preStop semantics can be handled outside the chart.
Signed-off-by: Bronson Mirafuentes <[email protected] >
* update README
Signed-off-by: Bronson Mirafuentes <[email protected] >
* update README
Signed-off-by: Bronson Mirafuentes <[email protected] >
---------
Signed-off-by: Bronson Mirafuentes <[email protected] >
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-11 12:12:33 -07:00
dependabot[bot]
b68bdc38e2
Bump regclient/actions
...
Bumps [regclient/actions](https://github.com/regclient/actions ) from c70ad64367908075211b10dcd2ab9fad4bfa1816 to 14f9d37db17b5dc41fefd1ffdd1af4b9e2490560.
- [Release notes](https://github.com/regclient/actions/releases )
- [Changelog](https://github.com/regclient/actions/blob/main/RELEASE.md )
- [Commits](https://github.com/regclient/actions/compare/c70ad64367908075211b10dcd2ab9fad4bfa1816...14f9d37db17b5dc41fefd1ffdd1af4b9e2490560 )
---
updated-dependencies:
- dependency-name: regclient/actions
dependency-version: 14f9d37db17b5dc41fefd1ffdd1af4b9e2490560
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-06-11 03:52:41 +00:00
Faisal Memon
734aa653c2
Fix release workflow path trigger ( #842 )
...
Signed-off-by: Faisal Memon <[email protected] >
2026-06-06 12:22:35 -07:00
Faisal Memon
5f0f45c728
Add Smallstep repo to release workflow ( #841 )
...
Signed-off-by: Faisal Memon <[email protected] >
2026-06-06 12:05:46 -07:00
Faisal Memon and Kevin Fox
98ec4e680b
Bump spire-lib Helm Chart version from 0.1.0 to 0.2.0 ( #822 )
...
* Bump spire-lib and dependent Helm Chart versions (minor)
* 3c1dec30 fix casing of svidStore (#787 )
Signed-off-by: Faisal Memon <[email protected] >
* Add missing repo reference
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: Faisal Memon <[email protected] >
Signed-off-by: Kevin Fox <[email protected] >
Co-authored-by: Kevin Fox <[email protected] >
2026-06-06 10:33:41 -07:00
kfox1111
1afb4626f1
Update spire-controller-manager ( #840 )
...
Signed-off-by: Kevin Fox <[email protected] >
2026-06-04 18:11:03 +00:00
dependabot[bot] and kfox1111
ceece7cde3
Bump imjasonh/setup-crane from 0.5 to 0.6 ( #839 )
...
Bumps [imjasonh/setup-crane](https://github.com/imjasonh/setup-crane ) from 0.5 to 0.6.
- [Release notes](https://github.com/imjasonh/setup-crane/releases )
- [Commits](https://github.com/imjasonh/setup-crane/compare/v0.5...v0.6 )
---
updated-dependencies:
- dependency-name: imjasonh/setup-crane
dependency-version: '0.6'
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: kfox1111 <[email protected] >
2026-06-03 19:10:49 -07:00
dependabot[bot]
de4f4a0751
Bump actions/checkout from 6.0.2 to 6.0.3 ( #838 )
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 6.0.2 to 6.0.3.
- [Release notes](https://github.com/actions/checkout/releases )
- [Commits](https://github.com/actions/checkout/compare/v6.0.2...v6.0.3 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: 6.0.3
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-06-03 19:09:22 -07:00
kfox1111
1031167b84
Implement easy Bottom Turtle HA support in the charts ( #816 )
...
* Implement easy Bottom Turtle HA support in the charts
Signed-off-by: Kevin Fox <[email protected] >
* Add diagram
Signed-off-by: Kevin Fox <[email protected] >
* Update docs
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes and tightened defaults
Signed-off-by: Kevin Fox <[email protected] >
* More diagrams
Signed-off-by: Kevin Fox <[email protected] >
* More instructions
Signed-off-by: Kevin Fox <[email protected] >
* More instructions
Signed-off-by: Kevin Fox <[email protected] >
* More instructions
Signed-off-by: Kevin Fox <[email protected] >
* More instructions
Signed-off-by: Kevin Fox <[email protected] >
* More instructions
Signed-off-by: Kevin Fox <[email protected] >
* Install some bottom turtle spire bits
Signed-off-by: Kevin Fox <[email protected] >
* Trigger in github
Signed-off-by: Kevin Fox <[email protected] >
* Fix path
Signed-off-by: Kevin Fox <[email protected] >
* Fix path
Signed-off-by: Kevin Fox <[email protected] >
* Fix path
Signed-off-by: Kevin Fox <[email protected] >
* Fix path
Signed-off-by: Kevin Fox <[email protected] >
* Fix path
Signed-off-by: Kevin Fox <[email protected] >
* Fix path
Signed-off-by: Kevin Fox <[email protected] >
* Fix shell code
Signed-off-by: Kevin Fox <[email protected] >
* Add some more testing
Signed-off-by: Kevin Fox <[email protected] >
* Add some more testing
Signed-off-by: Kevin Fox <[email protected] >
* Add some more testing
Signed-off-by: Kevin Fox <[email protected] >
* Add some more debug logging
Signed-off-by: Kevin Fox <[email protected] >
* More logging
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* Some fixes
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* Add x509POP support and more testing
Signed-off-by: Kevin Fox <[email protected] >
* x509pop attestor support and more tests
Signed-off-by: Kevin Fox <[email protected] >
* More updates
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Update docs
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Fix pages artifact upload
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Test some more bits
Signed-off-by: Kevin Fox <[email protected] >
* Initial stab at dynamic registration
Signed-off-by: Kevin Fox <[email protected] >
* Dynamic registration working but not integrated with test
Signed-off-by: Kevin Fox <[email protected] >
* Wire in dynamic registration into the test
Signed-off-by: Kevin Fox <[email protected] >
* Fix missing props
Signed-off-by: Kevin Fox <[email protected] >
* Update the svids to align
Signed-off-by: Kevin Fox <[email protected] >
* Update the svids to align
Signed-off-by: Kevin Fox <[email protected] >
* Fix service name
Signed-off-by: Kevin Fox <[email protected] >
* Look at data
Signed-off-by: Kevin Fox <[email protected] >
* Look at data
Signed-off-by: Kevin Fox <[email protected] >
* Look at data
Signed-off-by: Kevin Fox <[email protected] >
* Fix ca type
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Test out new packages
Signed-off-by: Kevin Fox <[email protected] >
* Update ports
Signed-off-by: Kevin Fox <[email protected] >
* Update ports
Signed-off-by: Kevin Fox <[email protected] >
* Work on debugging dynamic registration some more
Signed-off-by: Kevin Fox <[email protected] >
* Fix service account name
Signed-off-by: Kevin Fox <[email protected] >
* Fix service account name
Signed-off-by: Kevin Fox <[email protected] >
* Working... Cleanup.
Signed-off-by: Kevin Fox <[email protected] >
* Working... Cleanup.
Signed-off-by: Kevin Fox <[email protected] >
* Fix broken ssh test
Signed-off-by: Kevin Fox <[email protected] >
* Fix broken ssh test
Signed-off-by: Kevin Fox <[email protected] >
* Simplify a bit
Signed-off-by: Kevin Fox <[email protected] >
* Update to use the released images
Signed-off-by: Kevin Fox <[email protected] >
* Allow x509POP cluster name adding
Signed-off-by: Kevin Fox <[email protected] >
* Restrict cluster registration
Signed-off-by: Kevin Fox <[email protected] >
* Fix var name
Signed-off-by: Kevin Fox <[email protected] >
* Fix missing slash
Signed-off-by: Kevin Fox <[email protected] >
* Make defaults work better
Signed-off-by: Kevin Fox <[email protected] >
* Make defaults work better
Signed-off-by: Kevin Fox <[email protected] >
* Fix readme
Signed-off-by: Kevin Fox <[email protected] >
* updated diagram
Signed-off-by: Kevin Fox <[email protected] >
* Regenerate image
Signed-off-by: Kevin Fox <[email protected] >
* Bump spire versions
Signed-off-by: Kevin Fox <[email protected] >
* Fix issues identified during review
Signed-off-by: Kevin Fox <[email protected] >
* Update docs
Signed-off-by: Kevin Fox <[email protected] >
---------
Signed-off-by: Kevin Fox <[email protected] >
Signed-off-by: kfox1111 <[email protected] >
2026-06-03 12:15:28 -07:00
Faisal Memon
a40409ec53
Automate release bumps from the current branch ( #831 )
...
* Automate dependent chart release bumps
Signed-off-by: Faisal Memon <[email protected] >
* Use ruamel for chart dependency parsing
Signed-off-by: Faisal Memon <[email protected] >
* Simplify dependent chart graph helper
Signed-off-by: Faisal Memon <[email protected] >
* Add current-branch mode to release automation
Signed-off-by: Faisal Memon <[email protected] >
* Polish chart dependency helper
Signed-off-by: Faisal Memon <[email protected] >
---------
Signed-off-by: Faisal Memon <[email protected] >
2026-05-31 05:29:55 -07:00
dependabot[bot]
ab3164d48e
Bump docker/login-action from 4.1.0 to 4.2.0 ( #836 )
...
Bumps [docker/login-action](https://github.com/docker/login-action ) from 4.1.0 to 4.2.0.
- [Release notes](https://github.com/docker/login-action/releases )
- [Commits](https://github.com/docker/login-action/compare/v4.1.0...v4.2.0 )
---
updated-dependencies:
- dependency-name: docker/login-action
dependency-version: 4.2.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-25 12:08:23 -07:00
Bronson Mirafuentes
7c532f10bb
feat(spire-server): add maxAttestedNodeInfoStaleness config option ( #828 )
...
* feat(spire-server): add maxAttestedNodeInfoStaleness configuration option
Wire max_attested_node_info_staleness into the spire-server ConfigMap.
When unset (default ""), the SPIRE server uses its built-in default of 0s.
Signed-off-by: Bronson Mirafuentes <[email protected] >
* docs: regenerate spire-server README via helm-docs.sh
Fixes trailing whitespace in the maxAttestedNodeInfoStaleness table row.
Signed-off-by: Bronson Mirafuentes <[email protected] >
---------
Signed-off-by: Bronson Mirafuentes <[email protected] >
2026-05-19 08:00:53 -07:00
dependabot[bot]
7f4377f4b0
Bump github.com/onsi/gomega from 1.40.0 to 1.41.0 in /tests
...
Bumps [github.com/onsi/gomega](https://github.com/onsi/gomega ) from 1.40.0 to 1.41.0.
- [Release notes](https://github.com/onsi/gomega/releases )
- [Changelog](https://github.com/onsi/gomega/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/gomega/compare/v1.40.0...v1.41.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/gomega
dependency-version: 1.41.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-05-18 19:25:39 +02:00
dependabot[bot]
3f339664b1
Bump github.com/onsi/ginkgo/v2 from 2.28.3 to 2.29.0 in /tests
...
Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo ) from 2.28.3 to 2.29.0.
- [Release notes](https://github.com/onsi/ginkgo/releases )
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/ginkgo/compare/v2.28.3...v2.29.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/ginkgo/v2
dependency-version: 2.29.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-05-18 19:11:01 +02:00
dependabot[bot]
75bf39f853
Bump helm.sh/helm/v3 from 3.20.2 to 3.21.0 in /tests ( #827 )
...
Bumps [helm.sh/helm/v3](https://github.com/helm/helm ) from 3.20.2 to 3.21.0.
- [Release notes](https://github.com/helm/helm/releases )
- [Commits](https://github.com/helm/helm/compare/v3.20.2...v3.21.0 )
---
updated-dependencies:
- dependency-name: helm.sh/helm/v3
dependency-version: 3.21.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-15 21:21:59 +02:00
Bronson Mirafuentes and kfox1111
9bdfc10ffe
wire ratelimit configuration option in spire-server configMap ( #826 )
...
* feat(spire-server): add ratelimit.attestation and ratelimit.signing values
Signed-off-by: Bronson Mirafuentes <[email protected] >
* feat(spire-server): render ratelimit block in server config from values
Signed-off-by: Bronson Mirafuentes <[email protected] >
* chore: bump spire-server and spire chart versions for ratelimit feature
Signed-off-by: Bronson Mirafuentes <[email protected] >
* revert version bumps, use camelcase for rateLimit
Signed-off-by: Bronson Mirafuentes <[email protected] >
* update readme
Signed-off-by: Bronson Mirafuentes <[email protected] >
---------
Signed-off-by: Bronson Mirafuentes <[email protected] >
Co-authored-by: kfox1111 <[email protected] >
2026-05-14 13:18:56 -07:00
Pratik Lotia
806c6ae59e
aws node attester: add org verification support ( #825 )
...
* add verify org support for aws node attester
Signed-off-by: pratik-lotia <[email protected] >
* refactor with suggested changes
Signed-off-by: pratik-lotia <[email protected] >
---------
Signed-off-by: pratik-lotia <[email protected] >
2026-05-12 12:25:07 -07:00
dependabot[bot]
f9a2c443a6
Bump sigstore/cosign-installer from 4.1.1 to 4.1.2 ( #821 )
...
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer ) from 4.1.1 to 4.1.2.
- [Release notes](https://github.com/sigstore/cosign-installer/releases )
- [Commits](https://github.com/sigstore/cosign-installer/compare/v4.1.1...v4.1.2 )
---
updated-dependencies:
- dependency-name: sigstore/cosign-installer
dependency-version: 4.1.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-05-11 06:42:03 +00:00
dependabot[bot]
dcbb10cbc0
Bump regclient/actions
...
Bumps [regclient/actions](https://github.com/regclient/actions ) from f3c6d87835906c175eb6ccfc18b348b69bb447e7 to c70ad64367908075211b10dcd2ab9fad4bfa1816.
- [Release notes](https://github.com/regclient/actions/releases )
- [Changelog](https://github.com/regclient/actions/blob/main/RELEASE.md )
- [Commits](https://github.com/regclient/actions/compare/f3c6d87835906c175eb6ccfc18b348b69bb447e7...c70ad64367908075211b10dcd2ab9fad4bfa1816 )
---
updated-dependencies:
- dependency-name: regclient/actions
dependency-version: c70ad64367908075211b10dcd2ab9fad4bfa1816
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-05-11 08:40:48 +02:00
Faisal Memon and kfox1111
574fa87d57
Bump spire Helm Chart version from 0.28.4 to 0.28.5 ( #817 )
...
* c489dfc4 Update helper images in spiffe-csi-driver (#815 )
* f537f770 allow unsupported built-in key manager plugins to be used (#798 )
* c5ba8213 Bump test chart dependencies (#797 )
* dfe80891 feat: add gcp_iit node attestor configuration options (#796 )
* 21969d20 Bump test chart dependencies (#795 )
Signed-off-by: Faisal Memon <[email protected] >
Co-authored-by: kfox1111 <[email protected] >
2026-05-07 05:04:38 -07:00
Faisal Memon
146cf1add6
Bump spire-nested Helm Chart version from 0.28.4 to 0.28.5 ( #818 )
...
Signed-off-by: Faisal Memon <[email protected] >
2026-05-03 05:52:41 -07:00
Daniel Schlatter
c489dfc4db
Update helper images in spiffe-csi-driver ( #815 )
...
csi-node-driver-registrar -> 2.15.0
ubi9 -> ubi10/ubi-minimal:10.1-1776834797
Signed-off-by: Daniel Schlatter <[email protected] >
2026-05-02 00:25:29 -07:00
dependabot[bot]
9226e4f147
Bump github.com/onsi/ginkgo/v2 from 2.28.2 to 2.28.3 in /tests
...
Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo ) from 2.28.2 to 2.28.3.
- [Release notes](https://github.com/onsi/ginkgo/releases )
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/ginkgo/compare/v2.28.2...v2.28.3 )
---
updated-dependencies:
- dependency-name: github.com/onsi/ginkgo/v2
dependency-version: 2.28.3
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-29 11:08:16 +02:00
dependabot[bot]
53889562c4
Bump github.com/onsi/gomega from 1.39.1 to 1.40.0 in /tests
...
Bumps [github.com/onsi/gomega](https://github.com/onsi/gomega ) from 1.39.1 to 1.40.0.
- [Release notes](https://github.com/onsi/gomega/releases )
- [Changelog](https://github.com/onsi/gomega/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/gomega/compare/v1.39.1...v1.40.0 )
---
updated-dependencies:
- dependency-name: github.com/onsi/gomega
dependency-version: 1.40.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-29 10:56:22 +02:00
dependabot[bot]
ad41ac1fa2
Bump docker/login-action from 3.1.0 to 4.1.0
...
Bumps [docker/login-action](https://github.com/docker/login-action ) from 3.1.0 to 4.1.0.
- [Release notes](https://github.com/docker/login-action/releases )
- [Commits](https://github.com/docker/login-action/compare/v3.1.0...v4.1.0 )
---
updated-dependencies:
- dependency-name: docker/login-action
dependency-version: 4.1.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-28 14:38:20 +02:00
dependabot[bot]
7f311dcd5e
Bump github.com/onsi/ginkgo/v2 from 2.28.1 to 2.28.2 in /tests
...
Bumps [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo ) from 2.28.1 to 2.28.2.
- [Release notes](https://github.com/onsi/ginkgo/releases )
- [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md )
- [Commits](https://github.com/onsi/ginkgo/compare/v2.28.1...v2.28.2 )
---
updated-dependencies:
- dependency-name: github.com/onsi/ginkgo/v2
dependency-version: 2.28.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-28 14:13:02 +02:00
dependabot[bot]
f17e024a66
Bump azure/setup-helm from 3.5 to 5
...
Bumps [azure/setup-helm](https://github.com/azure/setup-helm ) from 3.5 to 5.
- [Release notes](https://github.com/azure/setup-helm/releases )
- [Changelog](https://github.com/Azure/setup-helm/blob/main/CHANGELOG.md )
- [Commits](https://github.com/azure/setup-helm/compare/v3.5...v5 )
---
updated-dependencies:
- dependency-name: azure/setup-helm
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-28 14:03:36 +02:00
dependabot[bot]
5d4c0438c2
Bump helm/kind-action from 1.9.0 to 1.14.0 ( #810 )
...
Bumps [helm/kind-action](https://github.com/helm/kind-action ) from 1.9.0 to 1.14.0.
- [Release notes](https://github.com/helm/kind-action/releases )
- [Commits](https://github.com/helm/kind-action/compare/v1.9.0...v1.14.0 )
---
updated-dependencies:
- dependency-name: helm/kind-action
dependency-version: 1.14.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-27 14:56:27 +00:00
dependabot[bot]
bd9fc402e5
Bump helm/chart-releaser-action from 1.6.0 to 1.7.0 ( #806 )
...
Bumps [helm/chart-releaser-action](https://github.com/helm/chart-releaser-action ) from 1.6.0 to 1.7.0.
- [Release notes](https://github.com/helm/chart-releaser-action/releases )
- [Commits](https://github.com/helm/chart-releaser-action/compare/v1.6.0...v1.7.0 )
---
updated-dependencies:
- dependency-name: helm/chart-releaser-action
dependency-version: 1.7.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-27 14:47:19 +00:00
dependabot[bot]
4d4f2490f5
Bump peter-evans/create-pull-request from 6.0.2 to 8.1.1 ( #805 )
...
Bumps [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request ) from 6.0.2 to 8.1.1.
- [Release notes](https://github.com/peter-evans/create-pull-request/releases )
- [Commits](https://github.com/peter-evans/create-pull-request/compare/v6.0.2...v8.1.1 )
---
updated-dependencies:
- dependency-name: peter-evans/create-pull-request
dependency-version: 8.1.1
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-27 14:45:07 +00:00
dependabot[bot]
2dd8efae28
Bump actions/setup-go from 5.0.0 to 6.4.0 ( #809 )
...
Bumps [actions/setup-go](https://github.com/actions/setup-go ) from 5.0.0 to 6.4.0.
- [Release notes](https://github.com/actions/setup-go/releases )
- [Commits](https://github.com/actions/setup-go/compare/v5.0.0...v6.4.0 )
---
updated-dependencies:
- dependency-name: actions/setup-go
dependency-version: 6.4.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-27 16:44:04 +02:00
dependabot[bot]
72f15a87f3
Bump helm/chart-testing-action from 2.6.1 to 2.8.0 ( #807 )
...
Bumps [helm/chart-testing-action](https://github.com/helm/chart-testing-action ) from 2.6.1 to 2.8.0.
- [Release notes](https://github.com/helm/chart-testing-action/releases )
- [Commits](https://github.com/helm/chart-testing-action/compare/v2.6.1...v2.8.0 )
---
updated-dependencies:
- dependency-name: helm/chart-testing-action
dependency-version: 2.8.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-04-27 16:43:39 +02:00
dependabot[bot]
8fbf7e8e67
Bump actions/setup-python from 5 to 6
...
Bumps [actions/setup-python](https://github.com/actions/setup-python ) from 5 to 6.
- [Release notes](https://github.com/actions/setup-python/releases )
- [Commits](https://github.com/actions/setup-python/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/setup-python
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-24 19:53:46 +02:00
dependabot[bot]
40a3ba5ea4
Bump actions/checkout from 4.1.1 to 6.0.2
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 4.1.1 to 6.0.2.
- [Release notes](https://github.com/actions/checkout/releases )
- [Commits](https://github.com/actions/checkout/compare/v4.1.1...v6.0.2 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: 6.0.2
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-24 19:45:43 +02:00
dependabot[bot]
c430a55529
Bump regclient/actions
...
Bumps [regclient/actions](https://github.com/regclient/actions ) from b6614f5f56245066b533343a85f4109bdc38c8cc to f3c6d87835906c175eb6ccfc18b348b69bb447e7.
- [Release notes](https://github.com/regclient/actions/releases )
- [Changelog](https://github.com/regclient/actions/blob/main/RELEASE.md )
- [Commits](https://github.com/regclient/actions/compare/b6614f5f56245066b533343a85f4109bdc38c8cc...f3c6d87835906c175eb6ccfc18b348b69bb447e7 )
---
updated-dependencies:
- dependency-name: regclient/actions
dependency-version: f3c6d87835906c175eb6ccfc18b348b69bb447e7
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-24 19:44:28 +02:00
dependabot[bot]
bf8519364c
Bump sigstore/cosign-installer from 3.4.0 to 4.1.1
...
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer ) from 3.4.0 to 4.1.1.
- [Release notes](https://github.com/sigstore/cosign-installer/releases )
- [Commits](https://github.com/sigstore/cosign-installer/compare/v3.4.0...v4.1.1 )
---
updated-dependencies:
- dependency-name: sigstore/cosign-installer
dependency-version: 4.1.1
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-24 19:43:10 +02:00
dependabot[bot]
bf16ddf75a
Bump imjasonh/setup-crane from 0.3 to 0.5
...
Bumps [imjasonh/setup-crane](https://github.com/imjasonh/setup-crane ) from 0.3 to 0.5.
- [Release notes](https://github.com/imjasonh/setup-crane/releases )
- [Commits](https://github.com/imjasonh/setup-crane/compare/v0.3...v0.5 )
---
updated-dependencies:
- dependency-name: imjasonh/setup-crane
dependency-version: '0.5'
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <[email protected] >
2026-04-24 19:41:43 +02:00