Skip to content

Releases: captf-io/cluster-api-provider-terraform

Release list

v0.1.1

Choose a tag to compare

@github-actions github-actions released this 06 Oct 16:37
v0.1.1
a31db93

v0.1.1

Pre-alpha release of Cluster API Provider Terraform: the infrastructure.cluster.x-k8s.io/v1alpha1 API, module image contract v1alpha1, Cluster API contract v1beta2. The API and the contract may still change between releases.

Install

Register the provider with clusterctl (CAPTF is not a built-in provider), then initialize it:

# clusterctl.yaml
providers:
- name: terraform
  type: InfrastructureProvider
  url: https://github.com/captf-io/cluster-api-provider-terraform/releases/v0.1.1/infrastructure-components.yaml
clusterctl init --config clusterctl.yaml --infrastructure terraform:v0.1.1

See the installation guide for the prerequisites and what the install creates.

Images

Image Digest
ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.1 sha256:16b09ff8f1d51c1f6fb4ced695910edea2fab17cb2bd6ee6af5f2c15308dee68
ghcr.io/captf-io/tfcapi-lint:v0.1.1 sha256:606254d2d7c62f5d24428f38d37f381b875c0eaaf5a0da84a66e88525f93e1c4

Both are linux/amd64 and linux/arm64. Pin the digest in anything you deploy.

Verify

Images are signed with keyless cosign and carry SLSA provenance and SBOM attestations, made by this repository's publish workflow:

cosign verify ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.1 \
  --certificate-identity https://github.com/captf-io/cluster-api-provider-terraform/.github/workflows/publish.yaml@refs/tags/v0.1.1 \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com
gh attestation verify oci://ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.1 -R captf-io/cluster-api-provider-terraform

Release assets carry a provenance attestation too (the bundle is also attached as provenance.intoto.jsonl):

gh release download v0.1.1 -R captf-io/cluster-api-provider-terraform -p infrastructure-components.yaml
gh attestation verify infrastructure-components.yaml -R captf-io/cluster-api-provider-terraform

The same checks work for ghcr.io/captf-io/tfcapi-lint:v0.1.1, still with -R captf-io/cluster-api-provider-terraform.

Changes

  • test: stop the metadata checks depending on tags
  • docs: add a README for the tfcapi-lint action
  • actions: test the lint image on every role
  • test: add a known-bad machinepool lint fixture
  • ci: refuse a release without the manager digest
  • actions: add the tfcapi-lint GitHub Action
  • ci: publish and scan the tfcapi-lint image
  • build: add a tfcapi-lint image target
  • test: pin noop images from module-images
  • docs: compose the README from components

Full diff: v0.1.0...v0.1.1

v0.1.0

Choose a tag to compare

@github-actions github-actions released this 05 Oct 18:32
v0.1.0
5d847ce

v0.1.0

Pre-alpha release of Cluster API Provider Terraform: the infrastructure.cluster.x-k8s.io/v1alpha1 API, module image contract v1alpha1, Cluster API contract v1beta2. The API and the contract may still change between releases.

Install

Register the provider with clusterctl (CAPTF is not a built-in provider), then initialize it:

# clusterctl.yaml
providers:
- name: terraform
  type: InfrastructureProvider
  url: https://github.com/captf-io/cluster-api-provider-terraform/releases/v0.1.0/infrastructure-components.yaml
clusterctl init --config clusterctl.yaml --infrastructure terraform:v0.1.0

See the installation guide for the prerequisites and what the install creates.

Images

Image Digest
ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.0 sha256:320a7c5d79415dbf0211554940461cb67fd8fabbcc09c65b49e843915fc311f0
ghcr.io/captf-io/tfcapi-lint none for this release: the image starts at v0.1.1

Both are linux/amd64 and linux/arm64. Pin the digest in anything you deploy.

Verify

Images are signed with keyless cosign and carry SLSA provenance and SBOM attestations, made by this repository's publish workflow:

cosign verify ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.0 \
  --certificate-identity https://github.com/captf-io/cluster-api-provider-terraform/.github/workflows/publish.yaml@refs/tags/v0.1.0 \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com
gh attestation verify oci://ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.0 -R captf-io/cluster-api-provider-terraform

Release assets carry a provenance attestation too (the bundle is also attached as provenance.intoto.jsonl):

gh release download v0.1.0 -R captf-io/cluster-api-provider-terraform -p infrastructure-components.yaml
gh attestation verify infrastructure-components.yaml -R captf-io/cluster-api-provider-terraform

Changes

  • First release.

The tfcapi-lint image starts at v0.1.1; its binaries are attached to this release.