Install
brew install org-quicko/tap/siloOr pull the container image, which is also on ghcr.io/org-quicko/silo:
docker pull labsatquicko/silo:1.4.0Or download the archive for your platform below and put silo on your PATH.
Verify
Check the archive against SHA256SUMS:
sha256sum --ignore-missing --check SHA256SUMSSHA256SUMS itself is signed. With cosign:
cosign verify-blob --bundle SHA256SUMS.cosign.bundle \
--certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
--certificate-oidc-issuer https://token.actions.githubusercontent.com \
SHA256SUMSOr, with the release GPG key, gpg --verify SHA256SUMS.asc SHA256SUMS.
Each archive also carries build provenance:
gh attestation verify silo-*.tar.gz --repo org-quicko/siloThe container image is signed and attested the same two ways:
cosign verify docker.io/labsatquicko/silo:1.4.0 \
--certificate-identity-regexp '^https://github\.com/org-quicko/silo/\.github/workflows/release\.yml@' \
--certificate-oidc-issuer https://token.actions.githubusercontent.com
gh attestation verify oci://docker.io/labsatquicko/silo:1.4.0 --repo org-quicko/siloWhat's Changed
- Restore Node client to pre-cache baseline by @pranshu-shah-at-quicko in #44
- Add per-client caching for Node collection reads by @pranshu-shah-at-quicko in #43
- chore: version upgrade by @pranshu-shah-at-quicko in #49
- Feature/containerization by @nachiketa-vadera-at-quicko in #50
New Contributors
- @pranshu-shah-at-quicko made their first contribution in #44
Full Changelog: v1.3.0...v1.4.0