Repository navigation
Releases: captf-io/cluster-api-provider-terraform
Release list
v0.1.1
v0.1.1
Pre-alpha release of Cluster API Provider Terraform: the infrastructure.cluster.x-k8s.io/v1alpha1 API, module image contract v1alpha1, Cluster API contract v1beta2. The API and the contract may still change between releases.
Install
Register the provider with clusterctl (CAPTF is not a built-in provider), then initialize it:
# clusterctl.yaml
providers:
- name: terraform
type: InfrastructureProvider
url: https://github.com/captf-io/cluster-api-provider-terraform/releases/v0.1.1/infrastructure-components.yamlclusterctl init --config clusterctl.yaml --infrastructure terraform:v0.1.1See the installation guide for the prerequisites and what the install creates.
Images
| Image | Digest |
|---|---|
ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.1 |
sha256:16b09ff8f1d51c1f6fb4ced695910edea2fab17cb2bd6ee6af5f2c15308dee68 |
ghcr.io/captf-io/tfcapi-lint:v0.1.1 |
sha256:606254d2d7c62f5d24428f38d37f381b875c0eaaf5a0da84a66e88525f93e1c4 |
Both are linux/amd64 and linux/arm64. Pin the digest in anything you deploy.
Verify
Images are signed with keyless cosign and carry SLSA provenance and SBOM attestations, made by this repository's publish workflow:
cosign verify ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.1 \
--certificate-identity https://github.com/captf-io/cluster-api-provider-terraform/.github/workflows/publish.yaml@refs/tags/v0.1.1 \
--certificate-oidc-issuer https://token.actions.githubusercontent.com
gh attestation verify oci://ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.1 -R captf-io/cluster-api-provider-terraformRelease assets carry a provenance attestation too (the bundle is also attached as provenance.intoto.jsonl):
gh release download v0.1.1 -R captf-io/cluster-api-provider-terraform -p infrastructure-components.yaml
gh attestation verify infrastructure-components.yaml -R captf-io/cluster-api-provider-terraformThe same checks work for ghcr.io/captf-io/tfcapi-lint:v0.1.1, still with -R captf-io/cluster-api-provider-terraform.
Changes
- test: stop the metadata checks depending on tags
- docs: add a README for the tfcapi-lint action
- actions: test the lint image on every role
- test: add a known-bad machinepool lint fixture
- ci: refuse a release without the manager digest
- actions: add the tfcapi-lint GitHub Action
- ci: publish and scan the tfcapi-lint image
- build: add a tfcapi-lint image target
- test: pin noop images from module-images
- docs: compose the README from components
Full diff: v0.1.0...v0.1.1
v0.1.0
v0.1.0
Pre-alpha release of Cluster API Provider Terraform: the infrastructure.cluster.x-k8s.io/v1alpha1 API, module image contract v1alpha1, Cluster API contract v1beta2. The API and the contract may still change between releases.
Install
Register the provider with clusterctl (CAPTF is not a built-in provider), then initialize it:
# clusterctl.yaml
providers:
- name: terraform
type: InfrastructureProvider
url: https://github.com/captf-io/cluster-api-provider-terraform/releases/v0.1.0/infrastructure-components.yamlclusterctl init --config clusterctl.yaml --infrastructure terraform:v0.1.0See the installation guide for the prerequisites and what the install creates.
Images
| Image | Digest |
|---|---|
ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.0 |
sha256:320a7c5d79415dbf0211554940461cb67fd8fabbcc09c65b49e843915fc311f0 |
ghcr.io/captf-io/tfcapi-lint |
none for this release: the image starts at v0.1.1 |
Both are linux/amd64 and linux/arm64. Pin the digest in anything you deploy.
Verify
Images are signed with keyless cosign and carry SLSA provenance and SBOM attestations, made by this repository's publish workflow:
cosign verify ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.0 \
--certificate-identity https://github.com/captf-io/cluster-api-provider-terraform/.github/workflows/publish.yaml@refs/tags/v0.1.0 \
--certificate-oidc-issuer https://token.actions.githubusercontent.com
gh attestation verify oci://ghcr.io/captf-io/cluster-api-provider-terraform:v0.1.0 -R captf-io/cluster-api-provider-terraformRelease assets carry a provenance attestation too (the bundle is also attached as provenance.intoto.jsonl):
gh release download v0.1.0 -R captf-io/cluster-api-provider-terraform -p infrastructure-components.yaml
gh attestation verify infrastructure-components.yaml -R captf-io/cluster-api-provider-terraformChanges
- First release.
The tfcapi-lint image starts at v0.1.1; its binaries are attached to this release.