ci(release.yaml): fix sign-next
Some checks failed
ci/woodpecker/push/lint Pipeline was successful
ci/woodpecker/push/release Pipeline failed

Signed-off-by: Vojtěch Mareš <vojtech@mares.cz>
This commit is contained in:
Vojtěch Mareš 2025-09-08 22:25:48 +02:00
parent 4b6507aa28
commit 73fd4f6821
Signed by: vojtech.mares
GPG key ID: C6827B976F17240D

View file

@ -44,26 +44,28 @@ steps:
when: when:
event: tag event: tag
setup-cosign-key: sign-next:
image: alpine image: *container_tools_image
environment: environment:
COSIGN_PASSWORD: "" # testing, so empty password is OK
COSIGN_KEY: COSIGN_KEY:
from_secret: cosign_key from_secret: cosign_key
commands: commands:
- echo $COSIGN_KEY > ./cosign.key - echo $COSIGN_KEY > ./cosign.key
sign-next:
image: *container_tools_image
commands:
- cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:next - cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:next
when: when:
event: push event: push
branch: main branch: main
sign-tag: # sign-tag:
image: *container_tools_image # image: *container_tools_image
commands: # environment:
- cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:latest # COSIGN_PASSWORD: "" # testing, so empty password is OK
- cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:${CI_COMMIT_TAG} # COSIGN_KEY:
when: # from_secret: cosign_key
event: tag # commands:
# - echo $COSIGN_KEY > ./cosign.key
# - cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:latest
# - cosign sign --key ./cosign.key --recursive registry.mareshq.com/woodpecker-plugins/cosign-sign:$${CI_COMMIT_TAG}
# when:
# event: tag