From 91d724aba901d646ae7981ee18583feaf54ba4f5 Mon Sep 17 00:00:00 2001 From: Yang Chiu Date: Mon, 24 Jun 2024 09:06:28 +0800 Subject: [PATCH] ci: build and publish image with sbom attestation Signed-off-by: Yang Chiu --- .github/workflows/build.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 4df631011f..4031ed3295 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -80,6 +80,7 @@ jobs: platforms: linux/amd64,linux/arm64 tags: longhornio/longhorn-manager:${{ env.branch }}-head file: package/Dockerfile + sbom: true - name: docker-publish-with-tag if: ${{ startsWith(github.ref, 'refs/tags/') }} @@ -90,3 +91,4 @@ jobs: platforms: linux/amd64,linux/arm64 tags: longhornio/longhorn-manager:${{ github.ref_name }} file: package/Dockerfile + sbom: true