Commit Graph
425 Commits
Author SHA1 Message Date
Jonathan A. Sternberg d781c83cec commands: micro optimization for source date epoch
Avoids the call to `os.Getenv` when it is unnecessary because it would
be overwritten anyway.

Removes the comments about moving environment variable parsing to a
method for use by library consumers. That method exists in containerd
and this set of code doesn't actually perform any parsing since the
parsing of this time is done within buildkit and not on the client.

Signed-off-by: Jonathan A. Sternberg <jonathan.sternberg@docker.com>
2026-04-03 10:02:50 -05:00
Guillaume Lours 8a01076b67 bump compose-go to version v2.10.2
Signed-off-by: Guillaume Lours <glours@users.noreply.github.com>
2026-04-03 12:15:27 +02:00
Tonis Tiigi eba72a35e4 vendor: update buildkit to v0.29.0-rc1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-03-25 15:47:08 -07:00
Tonis Tiigi 7c4703614d vendor: k8s v0.35.2
Drops the gogo-proto XXX_* methods.

Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-03-06 17:32:09 -08:00
Tonis Tiigi 5a7f7c286f kubernetes: trim client-go dependency surface
Replace the full generated clientset and global Kubernetes scheme
with a small local REST client layer and minimal scheme registration.

This keeps the existing kubeconfig/auth and remote exec behavior while
significantly reducing the linked and vendored Kubernetes dependency set.

Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-03-06 16:44:18 -08:00
Sebastiaan van Stijn c06971965f vendor: docker/cli v29.3.0, moby/api v1.54.0, moby/client v0.3.0
This also allows the client to connect with API v1.40 and up (Docker 19.03),
which previously was API v1.43 and up (Docker 25.0 and up).

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-03-05 16:38:27 +01:00
Tonis Tiigi 55bef8178d vendor: update buildkit to v0.28.0
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-03-03 12:17:01 -08:00
Sebastiaan van Stijn f1f38d34ad vendor: github.com/golang/snappy v1.0.0
Ensure arm64 frame sizes are 8 (mod 16)

fixes: "Weird failure when building on Raspbian / Debian 10.11"

full diff: https://github.com/golang/snappy/compare/v0.0.4...v1.0.0

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-03-03 16:28:00 +01:00
Tonis Tiigi 73ea669465 vendor: update buildkit to ecde33610015
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-02-26 17:06:30 -08:00
Tonis Tiigi 4880756a0f policy: simplify recursive material resolution
Unify root/material unknown resolution with recursive Input traversal.

Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-02-26 09:14:25 -08:00
Tonis Tiigi dd2a620465 vendor: update buildkit to v0.28.0-rc1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-02-24 14:19:34 -08:00
Tonis Tiigi 5c3551beeb policy: add GitHub attestation verification
Add github_attestation and github_release_attestation policy support.
Fetch GitHub attestation bundles (including bundle_url .json.sn decode)
and verify against input.http.checksum.

Wire source metadata resolver progress through resolver options and add
ResolveState support for policy HTTP attestation fetches.

Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-02-20 08:56:40 -08:00
Tonis Tiigi 9d803b0d87 vendor: update buildkit to v0.28-dev-9836771d0c5b
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-02-10 11:59:30 -08:00
Sebastiaan van Stijn 79b14eaeab vendor: github.com/docker/cli v29.2.1
full diff: https://github.com/docker/cli/compare/v29.2.0...v29.2.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-02-04 11:03:56 +01:00
Sebastiaan van Stijn 8bd5bd4983 vendor: github.com/docker/cli v29.2.0
full diff: https://github.com/docker/cli/compare/v29.1.5...v29.2.0

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-02-04 11:03:56 +01:00
Sebastiaan van Stijn 9aa7e1578a vendor: moby/api v1.53.0, moby/client v0.2.2
full diff:

- api: https://github.com/moby/moby/compare/api/v1.52.0...api/v1.53.0
- client: https://github.com/moby/moby/compare/client/v0.2.1...client/v0.2.2

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-02-04 11:03:56 +01:00
Sebastiaan van Stijn 6b71de00a0 vendor: github.com/go-viper/mapstructure/v2 v2.5.0
full diff: https://github.com/go-viper/mapstructure/compare/v2.4.0...v2.5.0

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-02-04 11:03:55 +01:00
Sebastiaan van Stijn 39ee64df71 commands/history: rewrite with stdlib multi-errors
Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-01-26 12:53:33 +01:00
Sebastiaan van Stijn 99b8143e28 vendor: github.com/sirupsen/logrus v1.9.4
full diff: https://github.com/sirupsen/logrus/compare/dd1b4c2e81af...v1.9.4

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-01-15 11:23:56 +01:00
Tonis Tiigi d54f398c5d vendor: update buildkit to v0.27.0-rc1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-01-14 13:36:15 -08:00
Tonis Tiigi 4b4f2aa682 tests: add http policy integration tests
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-01-14 09:33:49 -08:00
Tonis Tiigi 87d4189039 policy: image signature verification support
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-01-14 09:03:42 -08:00
Tonis Tiigi b2697ae933 policy: add git signature verification support
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-01-14 09:03:42 -08:00
Tonis Tiigi 93341aaeee add rego integration to source policies
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2026-01-14 09:03:40 -08:00
Jonathan A. Sternberg 8ad75dc485 dap: fill in breakpoint reason for being unverified
When a breakpoint fails to be verified, it will switch the reason to
"failed". It starts off the reason as "pending".

The `reason` field for a breakpoint was added some time after the last
release of `go-dap` which has only been updated once in the last year so
this uses the `main` branch version which contains the field.

Signed-off-by: Jonathan A. Sternberg <jonathan.sternberg@docker.com>
2026-01-08 15:21:54 -06:00
CrazyMaxandTonis Tiigi c3514fea5d vendor: github.com/moby/buildkit@master ed6dc749ce40b9fdc308676d10343fd00f56c717
Signed-off-by: CrazyMax <1951866+crazy-max@users.noreply.github.com>
2026-01-07 11:45:01 -08:00
Sebastiaan van Stijn 7762411537 vendor: github.com/containerd/containerd/v2 v2.2.1
The pull request that was needed has been released now as part of v2.2.1;
full diff: https://github.com/containerd/containerd/compare/efd86f2b0bc2...v2.2.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2026-01-07 11:33:39 +01:00
Sebastiaan van Stijn 3bc50aece8 vendor: github.com/klauspost/compress v1.18.2
No changes in vendored code

Fixes a regression in v1.18.1 that resulted in invalid flate/zip/gzip encoding.
The v1.18.1 tag has been retracted.

full diff: https://github.com/klauspost/compress/compare/v1.18.1...v1.18.2

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-12-16 11:08:52 +01:00
Tõnis TiigiandGitHub c003c8617e Merge pull request #3558 from thaJeztah/bump_cli
vendor: github.com/spf13/cobra v1.10.2, github.com/docker/cli-docs-tool v0.11.0
2025-12-12 09:43:24 -08:00
Sebastiaan van Stijn 9353c2c00e vendor: github.com/morikuni/aec v1.1.0
full diff: https://github.com/morikuni/aec/compare/v1.0.0...v1.1.0

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-12-11 17:51:11 +01:00
Sebastiaan van Stijn 304ab6d65d vendor: github.com/spf13/cobra v1.10.2, github.com/docker/cli-docs-tool v0.11.0
reduce dependency on the archived go.yaml.in/yaml/v3 package

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-12-09 16:55:47 +01:00
Sebastiaan van Stijn 5efe75571f vendor: docker/cli v29.1.1, moby/client v0.2.1
Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-12-02 15:52:11 +01:00
Tonis Tiigi 42a2be1c4b vendor: update buildkit to v0.26.1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2025-11-17 16:07:17 +00:00
Tõnis TiigiandGitHub dd0cd08119 Merge pull request #3524 from crazy-max/containerd-update
vendor: update containerd to efd86f2b0bc2 (release/2.2)
2025-11-17 16:02:42 +00:00
Sebastiaan van Stijn 2f462a4945 vendor: github.com/docker/cli v29.0.1
full diff: https://github.com/docker/cli/compare/v29.0.0...v29.0.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-11-16 23:20:52 +01:00
CrazyMax c034ddfbde vendor: update containerd to efd86f2b0bc2 (release/2.2)
Signed-off-by: CrazyMax <1951866+crazy-max@users.noreply.github.com>
2025-11-15 10:40:44 +01:00
Sebastiaan van Stijn 18dc2e088a vendor: github.com/moby/moby/api v1.52.0, moby/client v0.1.0
Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-11-12 01:30:02 +01:00
Jonathan A. Sternberg 1651da02d9 vendor: update buildkit v0.26.0-rc2
Signed-off-by: Jonathan A. Sternberg <jonathan.sternberg@docker.com>
2025-11-11 14:14:36 -06:00
Tonis Tiigi cc2a26c146 vendor: update buildkit v0.26.0-rc1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2025-11-05 15:55:57 -08:00
Tonis Tiigi ae33cdc550 vendor: update buildkit to e18be41828
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2025-11-05 12:53:09 -08:00
Tonis Tiigi faf30a2177 vendor: update containerd to v2.2.0-rc.1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2025-11-05 10:24:42 -08:00
Guillaume Lours 158f84f6a2 bump compose-go to version v2.9.1
Signed-off-by: Guillaume Lours <705411+glours@users.noreply.github.com>
2025-10-30 11:19:34 +01:00
CrazyMaxandCrazyMax 228a816bbb vendor: github.com/moby/buildkit@master 9b6f60ac8bf9
Signed-off-by: CrazyMax <1951866+crazy-max@users.noreply.github.com>
2025-10-11 23:03:13 +02:00
Sebastiaan van Stijn 08322e90c5 vendor: github.com/docker/docker, docker/cli v28.5.1
full diff:

- https://github.com/docker/cli/compare/v28.4.0...v28.5.1
- https://github.com/docker/docker/compare/v28.4.0...v28.5.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-10-08 22:45:12 +02:00
Sebastiaan van Stijn f4fb1715a5 vendor: github.com/moby/buildkit v0.25.1
full diff: https://github.com/moby/buildkit/compare/v0.25.0...v0.25.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-10-08 22:44:44 +02:00
Jonathan A. Sternberg 3d9cc5128a vendor: update buildkit to v0.25.0
Signed-off-by: Jonathan A. Sternberg <jonathan.sternberg@docker.com>
2025-09-30 14:09:19 -05:00
Tonis Tiigi 3bea8ce3ad vendor: update buildkit to v0.25.0-rc1
Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2025-09-23 13:32:44 -07:00
Tonis Tiigi f448f3e22b imagetools: add platforms filter to imagetools create
Allows specifying platforms that should be included
in the new image, making it possible to reduce platforms
of existing multi-arch image. Previously the individual
image manifests needed to be used as sources, but that
dropped their related attestation manifests.

Signed-off-by: Tonis Tiigi <tonistiigi@gmail.com>
2025-09-23 08:10:11 -07:00
Tõnis TiigiandGitHub bc8ede2d4c Merge pull request #3427 from glours/bump-compose-go-v2.9.0
bump compose-go to version v2.9.0
2025-09-19 14:36:35 -07:00
Sebastiaan van Stijn d1afe64cd1 vendor: github.com/spf13/cobra v1.10.1
full diff: https://github.com/spf13/cobra/compare/v1.9.1...v1.10.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
2025-09-19 19:48:35 +02:00