Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump actions/setup-dotnet from 1 to 2 #908

Merged

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jul 5, 2022

Bumps actions/setup-dotnet from 1 to 2.

Release notes

Sourced from actions/setup-dotnet's releases.

v2.0.0

In scope of this release we changed version of the runtime Node.js for the setup-dotnet action and updated package-lock.json file to v2.

Breaking Changes With the update to Node 16 in #271 all scripts will now be run with Node 16 rather than Node 12.

Installer scripts updates

Update dotnet-install scripts to the latest versions: #270

Support for installation of multiple versions, warnings for deprecated versions

This release includes the following PRs:

  • Adding support to install multiple .NET versions in single action invocation: #240 example:
- uses: actions/setup-dotnet@v1
  with:
    dotnet-version: | 
      3.1.x
      5.0.x

The latest installed .NET version is default, according .NET documentation.

  • Adding the build warnings if the deprecated .NET versions are installed by action: #245

Package Updates, Improvement for global.json handling

  • Bump path-parse from 1.0.6 to 1.0.7 #222
  • Update installer scripts #226
  • Support rollForward option for global.json #224

Update packages

  • Bump ws from 7.3.1 to 7.5.0 #212
  • Bump hosted-git-info from 2.8.8 to 2.8.9 #198
  • Bump lodash from 4.17.20 to 4.17.21 #197
  • Bump node-notifier from 8.0.0 to 8.0.1 #158
  • Update installers scripts #204

Support of preview versions, input validation improvements and other bug fixes

This release includes the following PRs:

Package Updates

Update @actions/core Version and move towards uses environment file

Side-by-Side Installation

Bug fixes for DOTNET_ROOT and generic dotnet versions

... (truncated)

Commits
  • c0d4ad6 Don't need C# analysis for CodeQL
  • afe2dab Create codeql-analysis.yml
  • 5cc8955 Update @​zeit/ncc to @​vercel/ncc (#290)
  • 158737d Merge pull request #289 from vsafonkin/v-vsafonkin/update-wget-package
  • fcf565e Update vulnerable packages
  • f078482 add global-json-file input (#276)
  • 0fb87b1 Merge pull request #285 from vsafonkin/v-vsafonkin/add-code-of-conduct
  • 4fe7a19 Add code of conduct
  • 9283a8c switch side by side testing example to single setup step (#283)
  • 53d632b Update docs to v2 (#278)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [actions/setup-dotnet](https://github.com/actions/setup-dotnet) from 1 to 2.
- [Release notes](https://github.com/actions/setup-dotnet/releases)
- [Commits](actions/setup-dotnet@v1...v2)

---
updated-dependencies:
- dependency-name: actions/setup-dotnet
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jul 5, 2022
@k8s-ci-robot k8s-ci-robot added the cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. label Jul 5, 2022
@k8s-ci-robot k8s-ci-robot added the size/M Denotes a PR that changes 30-99 lines, ignoring generated files. label Jul 5, 2022
@brendandburns
Copy link
Contributor

/lgtm
/approve

@k8s-ci-robot k8s-ci-robot added the lgtm "Looks good to me", indicates that a PR is ready to be merged. label Jul 5, 2022
@k8s-ci-robot
Copy link
Contributor

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: brendandburns, dependabot[bot]

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@k8s-ci-robot k8s-ci-robot added the approved Indicates a PR has been approved by an approver from all required OWNERS files. label Jul 5, 2022
@k8s-ci-robot k8s-ci-robot merged commit ef80824 into master Jul 5, 2022
@dependabot dependabot bot deleted the dependabot/github_actions/actions/setup-dotnet-2 branch July 5, 2022 16:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
approved Indicates a PR has been approved by an approver from all required OWNERS files. cncf-cla: yes Indicates the PR's author has signed the CNCF CLA. dependencies Pull requests that update a dependency file lgtm "Looks good to me", indicates that a PR is ready to be merged. size/M Denotes a PR that changes 30-99 lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants