Added cosign
Some checks reported errors
continuous-integration/drone/push Build encountered an error
Some checks reported errors
continuous-integration/drone/push Build encountered an error
This commit is contained in:
parent
b970ebe600
commit
9d8b22d4e9
29
.drone.yml
29
.drone.yml
@ -89,7 +89,7 @@ kind: pipeline
|
|||||||
type: kubernetes
|
type: kubernetes
|
||||||
name: build:tags
|
name: build:tags
|
||||||
steps:
|
steps:
|
||||||
- name: build $DRONE_TAG
|
- name: build_tag
|
||||||
image: plugins/docker
|
image: plugins/docker
|
||||||
user: 0
|
user: 0
|
||||||
depends_on: [clone]
|
depends_on: [clone]
|
||||||
@ -103,14 +103,23 @@ steps:
|
|||||||
- "${DRONE_TAG}"
|
- "${DRONE_TAG}"
|
||||||
registry: registry.odit.services
|
registry: registry.odit.services
|
||||||
mtu: 1000
|
mtu: 1000
|
||||||
- name: gitea_release
|
- name: sign_image
|
||||||
image: plugins/gitea-release
|
depends_on: [build_tag]
|
||||||
settings:
|
image: registry.odit.services/hub/library/alpine:edge
|
||||||
title: Release ${DRONE_TAG}
|
commands:
|
||||||
note: "Pull: `docker pull registry.odit.services/library/nginx-brotli:${DRONE_TAG}`"
|
- apk add cosign docker
|
||||||
api_key:
|
- echo $COSIGN_KEY > cosign.key
|
||||||
from_secret: gitea_token
|
- echo $DOCKER_PASSWORD | docker login registry.odit.services -u $DOCKER_USERNAME --password-stdin
|
||||||
base_url: https://git.odit.services
|
- cosign sign --key cosign.key registry.odit.services/library/nginx-brotli:${DRONE_TAG}
|
||||||
|
environment:
|
||||||
|
COSIGN_KEY:
|
||||||
|
from_secret: cosign_key
|
||||||
|
COSIGN_PASSWORD:
|
||||||
|
from_secret: cosign_password
|
||||||
|
DOCKER_PASSWORD:
|
||||||
|
from_secret: docker_password
|
||||||
|
DOCKER_USERNAME:
|
||||||
|
from_secret: docker_username
|
||||||
trigger:
|
trigger:
|
||||||
event:
|
event:
|
||||||
- tag
|
- tag
|
||||||
@ -185,4 +194,4 @@ steps:
|
|||||||
mtu: 1000
|
mtu: 1000
|
||||||
trigger:
|
trigger:
|
||||||
event:
|
event:
|
||||||
- pull_request
|
- pull_request
|
||||||
|
Loading…
x
Reference in New Issue
Block a user