Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Implement signed images verification #215

Merged
merged 4 commits into from
Dec 12, 2023

Conversation

dimitar-dimitrow
Copy link
Contributor

@dimitar-dimitrow dimitar-dimitrow commented Nov 22, 2023

[#67] Implement signed images verification

Signed-off-by: Dimitar Dimitrov [email protected]

Copy link
Member

@k-gostev k-gostev left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Currently starting the container management as a service fails with:

panic: neither $XDG_CONFIG_HOME nor $HOME are defined
goroutine 1 [running]:
github.com/notaryproject/notation-go/dir.loadUserPath()
pkg/mod/github.com/notaryproject/[email protected]/dir/path.go:85 +0xe0
github.com/notaryproject/notation-go/dir.init.0()
pkg/mod/github.com/notaryproject/[email protected]/dir/path.go:77 +0x1c

This must be mitigated

containerm/daemon/daemon_config.go Outdated Show resolved Hide resolved
containerm/ctr/ctr_verifier_notation.go Show resolved Hide resolved
containerm/ctr/ctrd_client_internal.go Outdated Show resolved Hide resolved
@k-gostev k-gostev merged commit e361ff5 into eclipse-kanto:dev-m5 Dec 12, 2023
2 checks passed
@k-gostev k-gostev deleted the notation-verify-image branch December 12, 2023 13:11
k-gostev pushed a commit that referenced this pull request Apr 30, 2024
* [#67] Implement signed images verification
---------

Signed-off-by: Dimitar Dimitrov <[email protected]>
dimitar-dimitrow added a commit that referenced this pull request May 10, 2024
[#234] Merge `dev-m5` branch into `main`
* [#51] Improve containerd client unit tests (#203)
* [#201] Optimized, deterministic intermediate desired state feedback messages (#204)
* [#208] Add file flag to the CLI create command (#209)
* [#191] Container remains Stopped after container-management service restart (#214)
* [#210] Remove command should accept more than one container ID (#212)
* [#196] Starting of constantly restarting container fails (#216)
* [#67] Implement signed images verification (#215)
* [#91] Provide unit tests covering signed images verification (#220)
* [#213] Add quiet flag, to the list command. (#221)
* [#217] CLI Remove command improvements (#224)

---------

Signed-off-by: Daniel Milchev [email protected]
Signed-off-by: Stoyan Zoubev <[email protected]>
Signed-off-by: Kristiyan Gostev <[email protected]>
Signed-off-by: Dimitar Dimitrov <[email protected]>
Co-authored-by: Daniel Milchev <[email protected]>
Co-authored-by: Stoyan Zoubev <[email protected]>
Co-authored-by: Dimitar Dimitrov <[email protected]>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Implement signed images verification
2 participants