Fixes to get cosign working.

This commit is contained in:
James Pace 2023-08-08 20:29:23 -04:00
parent 6cdf86ec80
commit b4270ae3ff
2 changed files with 2 additions and 2 deletions

View File

@ -43,7 +43,7 @@ spec:
value: ./docker/Dockerfile
- name: registry-login-secret-name
value: $(params.registry-login-secret-name)
- names: cosign-secret-name
- name: cosign-secret-name
value: container-signing-secret
taskRef:
name: j7s-buildah

View File

@ -29,6 +29,7 @@ spec:
# Login
buildah login --tls-verify=false --username=$USERNAME --password=$PASSWORD $(params.registry)
# Setup cosign.
mkdir -p ~/.sigstore
cp /etc/cosign-credentials/* ~/.sigstore
cat <<EOF > ~/.sigstore/param-file.yaml
privateKeyFile: "$HOME/.sigstore/cosign.key"
@ -71,7 +72,6 @@ spec:
volumes:
- name: varlibcontainers
emptyDir: {}
volumes:
- name: cosign-credentials
secret:
secretName: $(params.cosign-secret-name)