Skip to content

ci: upgrade base images to latest versions with digest pins #65

@levleontiev

Description

@levleontiev

PR #62 (supply chain hardening) was based on the pre-dependabot state and overwrote two upgrades that had already been merged:

This issue tracks restoring both upgrades with correct digest pins.

Changes needed

  • docker/Dockerfile — openresty 1.29.2.1-jammy@sha256:01ae8007b5a26967ad8158554591c889345be3ffe51424fe475beb38ed923692
  • docker/Dockerfile.cli — same
  • docker/Dockerfile.test — ubuntu 24.04@sha256:67efaecc0031a612cf7bb3c863407018dbbef0a971f62032b77aa542ac8ac0d2
  • spec/unit/supply_chain_pins_spec.lua — update expected openresty digest

Metadata

Metadata

Assignees

No one assigned

    Labels

    cidependenciesPull requests that update a dependency file

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions