v0.59.6
Installation and signature verification
Installation of kctrl
By downloading binary from the release
For instance, if you are using Linux on an AMD64 architecture:
# Download the binary
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/kctrl-linux-amd64
# Move the binary in to your PATH
mv kctrl-linux-amd64 /usr/local/bin/kctrl
# Make the binary executable
chmod +x /usr/local/bin/kctrlVia Homebrew (macOS or Linux)
$ brew tap carvel-dev/carvel
$ brew install kctrl
$ kctrl versionVerify checksums file signature
Install cosign on your system https://docs.sigstore.dev/system_config/installation/
The checksums file provided within the artifacts attached to this release is signed using Cosign with GitHub OIDC. To validate the signature of this file, run the following commands:
# Download the checksums file, certificate, and signature
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/checksums.txt
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/checksums.txt.pem
curl -LO https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/checksums.txt.sig
### Verify the checksums file
cosign verify-blob checksums.txt --bundle release/checksums.json --certificate-identity-regexp=https://github.com/carvel-dev --certificate-oidc-issuer=https://token.actions.githubusercontent.com Verify binary integrity
To verify the integrity of the downloaded binary, you can utilize the checksums file after having validated its signature. For instance, if you are using Linux on an AMD64 architecture:
# Verify the binary using the checksums file
sha256sum -c checksums.txt --ignore-missingInstallation of kapp-controller
kapp-controller can be installed by using kapp
kapp deploy -a kc -f https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/release.ymlor by using kubectl
kubectl deploy -f https://github.com/carvel-dev/kapp-controller/releases/download/v0.59.6/release.ymlContainer Images
Kapp-controller and Kapp-controller-package-bundle images are available in Github Container Registry.
OCI Image URLs
- ghcr.io/carvel-dev/kapp-controller@sha256:9f61958b67460200f8ad677b2860aa2d7df1d8181ccd276ec7997f3cac54c3ca
- ghcr.io/carvel-dev/kapp-controller-package-bundle@sha256:34bb3128c9203c5b89aa52d349d7179139501818754ea2ad09a7be0de7fcacca
Verify container image signature
The container images are signed using Cosign with GitHub OIDC. To validate the signature of OCI images, run the following commands:
# Verifying kapp-controller image
cosign verify ghcr.io/carvel-dev/kapp-controller@sha256:9f61958b67460200f8ad677b2860aa2d7df1d8181ccd276ec7997f3cac54c3ca --certificate-identity-regexp=https://github.com/carvel-dev --certificate-oidc-issuer=https://token.actions.githubusercontent.com -o text
# Verifying kapp-controller-package-bundle image
cosign verify ghcr.io/carvel-dev/kapp-controller-package-bundle@sha256:34bb3128c9203c5b89aa52d349d7179139501818754ea2ad09a7be0de7fcacca --certificate-identity-regexp=https://github.com/carvel-dev --certificate-oidc-issuer=https://token.actions.githubusercontent.com -o textWhat's Changed
- Fix zombie process race condition in sidecar container by @mdzhigarov in #1806
- Use v0.29.0 of buildkit in release process by @praveenrewar in #1810
Full Changelog: v0.59.3...v0.59.6
📂 Files Checksum
a92c047d2addc58165767366d95657672b4f8c344bb497c3c5b9919536cbc419 ./release.yml
249d054e7e790307cfa8b04f8655f1deac93c570a6533d521ab6b057a4b2c4ae ./kctrl-darwin-amd64
a3679119576b4517bdd00f8b7d3b87678b364f8dd441b27d37518a63325b0234 ./kctrl-darwin-arm64
c4b0aa1985d4b00ff60e89e7e2ef3e11349f8878878f406c33febf8459b5dd2d ./kctrl-linux-amd64
10fc4961e1188defb80bd000d01ad463065645a96a87b30a90abf10c28c84704 ./kctrl-linux-arm64
b1cd7c0c2bd6a2bb277af7715d50f92c6cd5248c794d1d23672d5410054740f8 ./kctrl-windows-amd64.exe
dd59c4a501e1ffa7f29adf466f1c0620b9aebaa44cb682a152bbcdd16a4e1c4a ./package.yml
7a6aa35600459a1797a6f0564ae89954e6da035fe54e19b72c573f5b31938a8c ./package-metadata.yml