Skip to content

Commit 4d24d63

Browse files
committed
Updates cosign
1 parent 7547aad commit 4d24d63

File tree

1 file changed

+5
-2
lines changed

1 file changed

+5
-2
lines changed

.github/workflows/build-and-sign-image.yml

+5-2
Original file line numberDiff line numberDiff line change
@@ -23,6 +23,9 @@ jobs:
2323
- name: Checkout
2424
uses: actions/checkout@v4
2525

26+
- name: Clear Sigstore cache
27+
run: rm -rf ~/.sigstore
28+
2629
- uses: anchore/sbom-action@v0
2730
with:
2831
image: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}
@@ -31,9 +34,9 @@ jobs:
3134
registry-password: ${{ secrets.GITHUB_TOKEN }}
3235

3336
- name: Install cosign
34-
uses: sigstore/cosign-installer@9614fae9e5c5eddabb09f90a270fcb487c9f7149 #v3.0.2
37+
uses: sigstore/cosign-installer@dc72c7d5c4d10cd6bcb8cf6e3fd625a9e5e537da #v3.7.0
3538
with:
36-
cosign-release: 'v1.13.1'
39+
cosign-release: 'v2.4.1'
3740

3841
- name: Log into registry ${{ env.REGISTRY }} for ${{ github.actor }}
3942
uses: docker/login-action@343f7c4344506bcbf9b4de18042ae17996df046d

0 commit comments

Comments
 (0)