ci(release.yaml): fix sign-next
Some checks failed
ci/woodpecker/push/lint Pipeline was successful
ci/woodpecker/push/release Pipeline failed

Signed-off-by: Vojtěch Mareš <vojtech@mares.cz>
This commit is contained in:
Vojtěch Mareš 2025-09-08 22:25:48 +02:00
parent 4b6507aa28
commit 73fd4f6821
Signed by: vojtech.mares
GPG key ID: C6827B976F17240D

View file

@ -44,26 +44,28 @@ steps:
when:
event: tag
setup-cosign-key:
image: alpine
sign-next:
image: *container_tools_image
environment:
COSIGN_PASSWORD: "" # testing, so empty password is OK
COSIGN_KEY:
from_secret: cosign_key
commands:
- echo $COSIGN_KEY > ./cosign.key
sign-next:
image: *container_tools_image
commands:
- cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:next
when:
event: push
branch: main
sign-tag:
image: *container_tools_image
commands:
- cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:latest
- cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:${CI_COMMIT_TAG}
when:
event: tag
# sign-tag:
# image: *container_tools_image
# environment:
# COSIGN_PASSWORD: "" # testing, so empty password is OK
# COSIGN_KEY:
# from_secret: cosign_key
# commands:
# - echo $COSIGN_KEY > ./cosign.key
# - cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:latest
# - cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:$${CI_COMMIT_TAG}
# when:
# event: tag