Skip to content

Commit c01d5d2

Browse files
authored
Merge branch 'main' into chore/update-crs-v3.3
2 parents de59229 + 8132a96 commit c01d5d2

File tree

4 files changed

+24
-24
lines changed

4 files changed

+24
-24
lines changed

.github/workflows/lint.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
22
name: Check length of Docker Hub README file
3-
on: # yamllint disable-line rule:truthy
3+
on: # yamllint disable-line rule:truthy
44
pull_request:
55
branches:
66
- master
@@ -13,7 +13,7 @@ jobs:
1313
runs-on: ubuntu-latest
1414
steps:
1515
- name: Checkout
16-
uses: actions/checkout@v4
16+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # actions/checkout@v5
1717
with:
1818
fetch-depth: 1
1919
- name: Check README-containers.md length

.github/workflows/publish.yml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -11,10 +11,10 @@ jobs:
1111
targets: ${{ steps.generate.outputs.targets }}
1212
steps:
1313
- name: Checkout
14-
uses: actions/checkout@v4
14+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # actions/checkout@v5
1515
- name: List targets
1616
id: generate
17-
uses: docker/bake-action/subaction/list-targets@v4
17+
uses: docker/bake-action/subaction/list-targets@3acf805d94d93a86cce4ca44798a76464a75b88c # docker/bake-action/subaction/list-targets@v6
1818

1919
build:
2020
name: Build ${{ matrix.target }}
@@ -30,41 +30,41 @@ jobs:
3030
target: ${{ fromJson(needs.prepare.outputs.targets) }}
3131
steps:
3232
- name: Checkout
33-
uses: actions/checkout@v4
33+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # actions/checkout@v5
3434
with:
3535
fetch-depth: 1
36-
36+
3737
- name: Install Cosign
38-
uses: sigstore/cosign-installer@v3.4.0
38+
uses: sigstore/cosign-installer@d58896d6a1865668819e1d91763c7751a165e159 # sigstore/cosign-installer@v3.9.2
3939

4040
# https://github.com/docker/setup-qemu-action
4141
- name: Set up QEMU
42-
uses: docker/setup-qemu-action@v3
42+
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # docker/setup-qemu-action@v3
4343
with:
4444
image: tonistiigi/binfmt:qemu-v9.2.0
4545

4646
# https://github.com/docker/setup-buildx-action
4747
- name: Set up Docker Buildx
48-
uses: docker/setup-buildx-action@v3.0.0
48+
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # docker/setup-buildx-action@v3.11.1
4949
with:
5050
driver-opts: image=moby/buildkit:master
5151

5252
- name: Login to DockerHub
53-
uses: docker/login-action@343f7c4344506bcbf9b4de18042ae17996df046d # v3.0.0
53+
uses: docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # docker/login-action@v3.5.0
5454
with:
5555
username: ${{ secrets.dockerhub_user }}
5656
password: ${{ secrets.dockerhub_token }}
5757

5858
- name: Login to GitHub Container Registry
59-
uses: docker/login-action@343f7c4344506bcbf9b4de18042ae17996df046d # v3.0.0
59+
uses: docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # docker/login-action@v3.5.0
6060
with:
6161
registry: ghcr.io
6262
username: ${{ github.actor }}
6363
password: ${{ secrets.GITHUB_TOKEN }}
6464

6565
- name: 'Build and push ${{ matrix.target }}'
6666
id: build-and-push
67-
uses: docker/bake-action@v4.1.0
67+
uses: docker/bake-action@3acf805d94d93a86cce4ca44798a76464a75b88c # docker/[email protected].0
6868
with:
6969
files: |
7070
./docker-bake.hcl

.github/workflows/verifyimage.yml

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -16,10 +16,10 @@ jobs:
1616
targets: ${{ steps.generate.outputs.targets }}
1717
steps:
1818
- name: Checkout
19-
uses: actions/checkout@v4
19+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # actions/checkout@v5
2020
- name: List targets
2121
id: generate
22-
uses: docker/bake-action/subaction/list-targets@v4
22+
uses: docker/bake-action/subaction/list-targets@3acf805d94d93a86cce4ca44798a76464a75b88c # docker/bake-action/subaction/list-targets@v6
2323
- name: Check modsecurity recommended
2424
run: |
2525
curl -sSL https://raw.githubusercontent.com/owasp-modsecurity/ModSecurity/v3/master/modsecurity.conf-recommended -o modsecurity.conf-recommended
@@ -35,31 +35,31 @@ jobs:
3535
target: ${{ fromJson(needs.prepare.outputs.targets) }}
3636
steps:
3737
- name: Checkout
38-
uses: actions/checkout@v4
38+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # actions/checkout@v5
3939
with:
4040
fetch-depth: 1
4141

4242
# https://github.com/docker/setup-qemu-action
4343
- name: Set up QEMU
44-
uses: docker/setup-qemu-action@v3
44+
uses: docker/setup-qemu-action@29109295f81e9208d7d86ff1c6c12d2833863392 # docker/setup-qemu-action@v3
4545
with:
4646
image: tonistiigi/binfmt:qemu-v9.2.0
4747

4848
# https://github.com/docker/setup-buildx-action
4949
- name: Set up Docker Buildx
50-
uses: docker/setup-buildx-action@v3
50+
uses: docker/setup-buildx-action@e468171a9de216ec08956ac3ada2f0791b6bd435 # docker/setup-buildx-action@v3
5151
with:
5252
driver-opts: image=moby/buildkit:master
5353

5454
- name: Login to GitHub Container Registry
55-
uses: docker/login-action@343f7c4344506bcbf9b4de18042ae17996df046d # v3.0.0
55+
uses: docker/login-action@184bdaa0721073962dff0199f1fb9940f07167d1 # docker/login-action@v3.5.0
5656
with:
5757
registry: ghcr.io
5858
username: ${{ github.actor }}
5959
password: ${{ secrets.GITHUB_TOKEN }}
6060

6161
- name: Build ${{ matrix.target }}-verification
62-
uses: docker/bake-action@v4.1.0
62+
uses: docker/bake-action@3acf805d94d93a86cce4ca44798a76464a75b88c # docker/[email protected].0
6363
with:
6464
files: |
6565
./docker-bake.hcl
@@ -74,7 +74,7 @@ jobs:
7474
push: false
7575

7676
- name: Upload image artifact
77-
uses: actions/upload-artifact@v4
77+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # actions/upload-artifact@v4
7878
with:
7979
name: ${{ matrix.target }}-verification.tar
8080
path: ${{ matrix.target }}-verification.tar
@@ -176,7 +176,7 @@ jobs:
176176
echo "### generic tests - done ###"
177177
178178
- name: Checkout CRS
179-
uses: actions/checkout@v4
179+
uses: actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # actions/checkout@v5
180180
with:
181181
fetch-depth: 1
182182
repository: coreruleset/coreruleset
@@ -217,10 +217,10 @@ jobs:
217217
--show-failures-only
218218
219219
- name: Upload logs
220-
uses: actions/upload-artifact@v4
220+
uses: actions/upload-artifact@ea165f8d65b6e75b540449e92b4886f43607fa02 # actions/upload-artifact@v4
221221
if: always()
222222
with:
223223
name: ${{ matrix.target }}-error.log
224224
path: "crs/tests/logs/${{ contains(matrix.target, 'apache') && 'modsec2-apache' || 'modsec3-nginx' }}/error.log"
225225
retention-days: 7
226-
overwrite: true
226+
overwrite: true

renovate.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"$schema": "https://docs.renovatebot.com/renovate-schema.json",
33
"extends": [
4-
"local>coreruleset/renovate-config",
4+
"github>coreruleset/renovate-config",
55
"schedule:daily"
66
],
77
"enabledManagers": [

0 commit comments

Comments
 (0)