dependabot[bot]
81445d85d0
Bump actions/checkout from 4 to 5
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 4 to 5.
- [Release notes](https://github.com/actions/checkout/releases )
- [Commits](https://github.com/actions/checkout/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-08-27 10:43:44 -07:00
dependabot[bot]
b65f8a6185
Bump actions/download-artifact from 4 to 5 ( #12735 )
...
Bumps [actions/download-artifact](https://github.com/actions/download-artifact ) from 4 to 5.
- [Release notes](https://github.com/actions/download-artifact/releases )
- [Commits](https://github.com/actions/download-artifact/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/download-artifact
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-08-11 10:58:25 -07:00
dependabot[bot]
02c898dcc1
Bump aquasecurity/trivy-action from 0.31.0 to 0.32.0 ( #12588 )
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.31.0 to 0.32.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.31.0...0.32.0 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-version: 0.32.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-07-24 11:43:32 -07:00
Derek Nola
ce15c9bfb8
Enable branch protection checks for openssf ( #12640 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-07-15 08:38:45 -07:00
Derek Nola
0d96fa58fd
Migrate K3s Release Artifacts to GHA ( #12606 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-07-11 09:35:24 -07:00
Derek Nola
5a29f8a24f
Remove ghcr build cache ( #12602 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-07-11 09:35:13 -07:00
Derek Nola
907d03d841
Add basic codeql workflow
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-07-10 09:38:18 -07:00
Derek Nola
c3a4c8df9a
Move to more secure split trivy workflow based on labels, not comments ( #12592 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-07-08 09:12:44 -07:00
Derek Nola
17525caedb
Run integration tests when build-k3s.yaml is changed
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-06-11 08:07:27 -07:00
Derek Nola
f0bc228bf7
Define missing top level permissions in CI
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-06-11 08:07:27 -07:00
dependabot[bot]
d2edee79ec
Bump aquasecurity/trivy-action from 0.30.0 to 0.31.0 ( #12458 )
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.30.0 to 0.31.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.30.0...0.31.0 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-version: 0.31.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-06-09 12:02:50 -07:00
dependabot[bot]
a724f21873
Bump ossf/scorecard-action from 2.4.1 to 2.4.2 ( #12430 )
...
Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action ) from 2.4.1 to 2.4.2.
- [Release notes](https://github.com/ossf/scorecard-action/releases )
- [Changelog](https://github.com/ossf/scorecard-action/blob/main/RELEASE.md )
- [Commits](f49aabe0b5...05b42c6244 )
---
updated-dependencies:
- dependency-name: ossf/scorecard-action
dependency-version: 2.4.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-06-03 09:30:32 -06:00
Derek Nola
07171fd7e8
Build and push k3s image to GHCR
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-05-30 10:59:49 -07:00
Brad Davidson
8d8d1f43bd
Fix e2e startup test
...
Do more cleanup between runs, collect more logs on failure.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-05-16 09:39:27 -07:00
Derek Nola
3ce4a6352d
Build k3s overhaul ( #12200 )
...
* Add full ci support without Dapper
* Seperate git and other version tags, improves caching on binary builds
* Use new local targets for build-k3s.yaml workflow
* Allow optional ghcr build caching
* Build binary using GHA native commands
* Use internal setup-go action for e2e.yaml
* Add emulation builds to k3s-build.yaml (for arm32 and future riscv64)
* Be consistent in k3s artifact names
* Fix package/dockerfile warnings
* Fix install script for PR installs
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-04-25 11:57:10 -07:00
dependabot[bot]
9d2ed8889e
Bump aquasecurity/trivy-action from 0.29.0 to 0.30.0 ( #11978 )
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.29.0 to 0.30.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.29.0...0.30.0 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-16 13:26:30 -04:00
Derek Nola
2da4775ae7
Migrate test-mods from Drone to GHA
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-04-16 09:50:25 -07:00
Derek Nola
e392278fab
Implement manual govulncheck ( #12135 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-04-16 09:15:37 -07:00
Chris Wayne
b77c282dcb
Create scorecard.yml ( #12128 )
...
Signed-off-by: Chris Wayne <chris.wayne@suse.com >
2025-04-14 13:12:41 -04:00
Robert Sirchia
1ccfa5e428
adding in govulncheck ( #12083 )
...
Signed-off-by: Robert Sirchia <rsirchia@outlook.com >
2025-04-09 16:53:16 -04:00
Brad Davidson
cd4be0b8c1
Move Windows test out of Install Script workflow
...
Placing this in the install script test, which only runs when specific files are changed, was preventing it from being run on code changes.
In addition to moving this into the integration workflow, fix codecov for Windows and upload data after running a test pod.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-04-09 09:25:43 -07:00
Derek Nola
7c552f89c8
Consolidate build-k3s GHA workflow for OS and ARCH ( #12080 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-04-08 18:32:05 -04:00
Brad Davidson
08c6c7423b
Silence vagrant progress output
...
Add --no-tty flag to all `vagrant up` commands to silence the printing of box loading progress
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-04-08 15:28:41 -07:00
Derek Nola
a61e581cb3
Migrate svcpolicies E2E test to docker
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-28 08:46:10 -08:00
Derek Nola
380a70ac7e
Expand E2E test matrix to cover all possible tests that fit on GHA
...
Fix rootless test
Fix svc firewall E2E test, broken by #11711
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-28 08:46:10 -08:00
Brad Davidson
20133ad151
Increase e2e log verbosity and collect logs on failure
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-02-27 11:19:26 -08:00
Derek Nola
2f787dda91
Migrate E2E SecretsEncryption to Docker test
...
Remove secrets encryption E2E from Drone
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-12 14:27:26 -08:00
Derek Nola
837558ef8b
Don't run snapshotrestore on flaky arm64 runners
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-12 14:27:26 -08:00
Derek Nola
d0a1e94392
Migrate E2E autoimport to Docker test
...
Simplify DockerNode structs
Remove autoimport from E2E
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-12 14:27:26 -08:00
Derek Nola
793d216d02
Migrate hardened docker test
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-12 14:27:26 -08:00
Derek Nola
538131b685
Migrate E2E Token test into a Docker Token test
...
Remove E2E token test
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-12 14:27:26 -08:00
Derek Nola
303350d14e
Reduce cache thrashing on E2E vagrant boxes. Don't cache for windows unit tests. ( #11769 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-11 11:27:16 -08:00
Brad Davidson
20a9a6bfc3
Move windows build to separate job
...
Don't block other linux steps on building the windows binary
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-02-07 12:03:48 -08:00
Brad Davidson
3aa24cdde8
Add windows smoke test
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-02-07 07:46:19 -08:00
Brad Davidson
0d15457c77
Fix linux-specific clientaccess test
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-02-07 07:46:19 -08:00
Brad Davidson
5c8f2364c4
Move Windows compilation test to GH Actions and enable integration/coverage
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2025-02-07 07:46:19 -08:00
Derek Nola
bb79c2b350
Consolidate test utility functions into top level package ( #11711 )
...
* [e2e] Convert RunCmdOnNode to method
* Consolidate e2e variables into TestConfig struct
* Consolidate docker and integration test helper functions
* E2E: Directly count daemonsets, not their pods
* Add missing Context levels for E2E tests
* Migrate e2e.ParsePods to new tests client package
* Run the go test compile test on their respective architectures
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-04 17:23:18 -08:00
Derek Nola
1666b5cfff
Run Docker test on Github Actions arm64 runners ( #11705 )
...
* Build and Run Arm64 Docker Tests
* Compile go tests for both amd64 and arm64
* Use version.sh to determine channel, not git
* Consolidate docker tests into 2D matrix
* Remove old Docker test from Drone and Github Actions
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-02-04 08:29:47 -08:00
Derek Nola
031c11d369
Convert snapshotrestore from E2E to Docker test
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-01-27 11:30:42 -08:00
dependabot[bot]
419dd5b03c
Bump actions/stale from 9.0.0 to 9.1.0 ( #11659 )
...
Bumps [actions/stale](https://github.com/actions/stale ) from 9.0.0 to 9.1.0.
- [Release notes](https://github.com/actions/stale/releases )
- [Changelog](https://github.com/actions/stale/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/stale/compare/v9.0.0...v9.1.0 )
---
updated-dependencies:
- dependency-name: actions/stale
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-27 11:11:29 -08:00
Vitor Savian
7e18c69254
Add auto import images for containerd image store
...
* Add auto import images
Signed-off-by: Vitor Savian <vitor.savian@suse.com >
* Fix EOF error log when importing tarball files
Signed-off-by: Vitor Savian <vitor.savian@suse.com >
* Delaying queue
Signed-off-by: Vitor Savian <vitor.savian@suse.com >
* Add parse for images
Signed-off-by: Vitor Savian <vitor.savian@suse.com >
2025-01-09 13:15:27 -03:00
dependabot[bot]
17feb8bed1
Bump codecov/codecov-action from 4 to 5 ( #11336 )
...
Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action ) from 4 to 5.
- [Release notes](https://github.com/codecov/codecov-action/releases )
- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/codecov/codecov-action/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: codecov/codecov-action
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-08 10:44:46 -08:00
Derek Nola
2f432a1cde
Upload E2E logs on failure as GHA artifacts ( #11514 )
...
* Upload E2E journald logs as artifacts in GHA
Signed-off-by: Derek Nola <derek.nola@suse.com >
* Improve fork information for parent extraction
Signed-off-by: Derek Nola <derek.nola@suse.com >
---------
Signed-off-by: Derek Nola <derek.nola@suse.com >
2025-01-07 09:50:39 -08:00
Derek Nola
c669600c8f
Fix Branch Name logic for Dependabot and UpdateCLI pushes to k3s-io ( #11376 )
...
* Improve node checking for etcd docker test
* Fix branch name for dependabot and updatecli PRs
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-11-27 09:50:14 -08:00
Derek Nola
b5e2fa77a6
Convert legacy docker tests from bash to golang ( #11357 )
...
* Convert the following Docker test from Bash to Go
- basics
- bootstraptoken
- cacerts
- compat -> skew
- etcd
- lazypull
- upgrade
Signed-off-by: Derek Nola <derek.nola@suse.com >
* Add Docker go tests to GHA
* Prebuild K3s Go Tests
* Strip go test binaries to reduce size
* Handle complex branch options
Signed-off-by: Derek Nola <derek.nola@suse.com >
* Implement basic golang tests on arm and arm64 pipelines
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-11-26 12:30:52 -08:00
dependabot[bot]
1b7dd765a5
Bump aquasecurity/trivy-action from 0.28.0 to 0.29.0 ( #11364 )
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.28.0 to 0.29.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.28.0...0.29.0 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 10:15:46 -08:00
Derek Nola
8ea61541e2
Pin vagrant to older version to avoid known issue 13527 ( #11226 )
...
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-11-04 16:26:51 -08:00
dependabot[bot]
ff23fb57a9
Bump aquasecurity/trivy-action from 0.27.0 to 0.28.0 ( #11138 )
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.27.0 to 0.28.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.27.0...0.28.0 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-21 09:35:16 -07:00
dependabot[bot]
14eee80f69
Bump aquasecurity/trivy-action from 0.24.0 to 0.27.0 ( #11105 )
...
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action ) from 0.24.0 to 0.27.0.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases )
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.24.0...0.27.0 )
---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-16 12:22:17 -07:00
Derek Nola
4888376682
Fix Github Actions for Ubuntu-24.04 ( #11112 )
...
* Fix vagrant/libvirt composite action for ubuntu-24.04
* Don't ignore changes to internal actions
* Fix unit tests for ubuntu 24.04, new lsof version
* Pin os version for unit and E2E workflows
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-10-16 12:22:07 -07:00