github attestation fix with DOCKER_IMAGE_DIGEST

This commit is contained in:
Krishna Manchikalapudi 2025-10-07 09:25:44 -07:00
parent 72d806aaf1
commit b3f8021810

View file

@ -222,18 +222,19 @@ jobs:
- name: "BuildInfo: Docker build create"
run: |
imageDigest=$(cat "${{env.DOCKER_METADATA_JSON}}" | jq '.["containerimage.digest"]')
echo "${imageDigest}"
echo "DOCKER_IMAGE_DIGEST: ${imageDigest}"
echo "${imageDigest}" > ${{env.DOCKER_IMAGE_DIGEST}}
echo "${{env.RT_REPO_DOCKER_URL}}@${imageDigest}" > ${{env.DOCKER_METADATA_JSON}}
jf rt bdc ${{env.RT_REPO_DOCKER_VIRTUAL}} --image-file ${{env.DOCKER_METADATA_JSON}} --build-name=${{env.BUILD_NAME}} --build-number=${{env.BUILD_ID}}
- name: "Evidence: GitHub Attestation"
uses: actions/attest-build-provenance@v3
with:
subject-name: "oci://${{env.RT_REPO_DOCKER_URL}}"
subject-digest: "${{env.DOCKER_METADATA_JSON}}" # "${{steps.config-docker.outputs.digest}}"
subject-digest: "${{env.DOCKER_IMAGE_DIGEST}}" # "${{steps.config-docker.outputs.digest}}"
- name: "BuildInfo: Build Publish"