Skip to content

v0.59.6

Choose a tag to compare

@github-actions github-actions released this 03 Apr 13:25
· 65 commits to develop since this release
3d7a222

Installation and signature verification

Installation of kctrl

By downloading binary from the release

For instance, if you are using Linux on an AMD64 architecture:

# Download the binary
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/kctrl-linux-amd64
# Move the binary in to your PATH
mv kctrl-linux-amd64 /usr/local/bin/kctrl
# Make the binary executable
chmod +x /usr/local/bin/kctrl

Via Homebrew (macOS or Linux)

$ brew tap carvel-dev/carvel
$ brew install kctrl
$ kctrl version

Verify checksums file signature

Install cosign on your system https://docs.sigstore.dev/system_config/installation/

The checksums file provided within the artifacts attached to this release is signed using Cosign with GitHub OIDC. To validate the signature of this file, run the following commands:

# Download the checksums file, certificate, and signature
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/checksums.txt
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/checksums.txt.pem
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/checksums.txt.sig

### Verify the checksums file
cosign verify-blob checksums.txt --bundle release/checksums.json --certificate-identity-regexp=https://github.com/carvel-dev --certificate-oidc-issuer=https://token.actions.githubusercontent.com 

Verify binary integrity

To verify the integrity of the downloaded binary, you can utilize the checksums file after having validated its signature. For instance, if you are using Linux on an AMD64 architecture:

# Verify the binary using the checksums file
sha256sum -c checksums.txt --ignore-missing

Installation of kapp-controller

kapp-controller can be installed by using kapp

kapp deploy -a kc -f https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/release.yml

or by using kubectl

kubectl deploy -f https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/release.yml

Container Images

Kapp-controller and Kapp-controller-package-bundle images are available in Github Container Registry.

OCI Image URLs

  • ghcr.io/carvel-dev/kapp-controller@sha256:9f61958b67460200f8ad677b2860aa2d7df1d8181ccd276ec7997f3cac54c3ca
  • ghcr.io/carvel-dev/kapp-controller-package-bundle@sha256:34bb3128c9203c5b89aa52d349d7179139501818754ea2ad09a7be0de7fcacca

Verify container image signature

The container images are signed using Cosign with GitHub OIDC. To validate the signature of OCI images, run the following commands:

# Verifying kapp-controller image
cosign verify ghcr.io/carvel-dev/kapp-controller@sha256:9f61958b67460200f8ad677b2860aa2d7df1d8181ccd276ec7997f3cac54c3ca --certificate-identity-regexp=https://github.com/carvel-dev --certificate-oidc-issuer=https://token.actions.githubusercontent.com -o text

# Verifying kapp-controller-package-bundle image
cosign verify ghcr.io/carvel-dev/kapp-controller-package-bundle@sha256:34bb3128c9203c5b89aa52d349d7179139501818754ea2ad09a7be0de7fcacca --certificate-identity-regexp=https://github.com/carvel-dev --certificate-oidc-issuer=https://token.actions.githubusercontent.com -o text

What's Changed

Full Changelog: v0.59.3...v0.59.6

📂 Files Checksum

a92c047d2addc58165767366d95657672b4f8c344bb497c3c5b9919536cbc419  ./release.yml
249d054e7e790307cfa8b04f8655f1deac93c570a6533d521ab6b057a4b2c4ae  ./kctrl-darwin-amd64
a3679119576b4517bdd00f8b7d3b87678b364f8dd441b27d37518a63325b0234  ./kctrl-darwin-arm64
c4b0aa1985d4b00ff60e89e7e2ef3e11349f8878878f406c33febf8459b5dd2d  ./kctrl-linux-amd64
10fc4961e1188defb80bd000d01ad463065645a96a87b30a90abf10c28c84704  ./kctrl-linux-arm64
b1cd7c0c2bd6a2bb277af7715d50f92c6cd5248c794d1d23672d5410054740f8  ./kctrl-windows-amd64.exe
dd59c4a501e1ffa7f29adf466f1c0620b9aebaa44cb682a152bbcdd16a4e1c4a  ./package.yml
7a6aa35600459a1797a6f0564ae89954e6da035fe54e19b72c573f5b31938a8c  ./package-metadata.yml