From f23a0f30891b96596edb9edb49489f555ac20480 Mon Sep 17 00:00:00 2001 From: Tommy Dalton Date: Tue, 23 Sep 2025 10:50:07 +0100 Subject: [PATCH 1/4] Updating Labels --- Dockerfile.clients.rh | 2 ++ Dockerfile.cosign.rh | 2 +- 2 files changed, 3 insertions(+), 1 deletion(-) diff --git a/Dockerfile.clients.rh b/Dockerfile.clients.rh index 4ce562d8193..ca0870be537 100644 --- a/Dockerfile.clients.rh +++ b/Dockerfile.clients.rh @@ -92,6 +92,8 @@ RUN gzip /var/www/html/clients/linux/tuftool-amd64 LABEL \ com.redhat.component="trusted-artifact-signer-serve-cli-container" \ name="trusted-artifact-signer-serve-cli-container" \ + name="rhtas/client-server-rhel9" \ + cpe="cpe:/a:redhat:trusted_artifact_signer:1.3::el9" \ version="1.1.0" \ summary="Red Hat serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ description="Serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ diff --git a/Dockerfile.cosign.rh b/Dockerfile.cosign.rh index 274b6855a36..2b45e421fef 100644 --- a/Dockerfile.cosign.rh +++ b/Dockerfile.cosign.rh @@ -35,7 +35,7 @@ LABEL io.openshift.tags="cosign trusted-signer" LABEL summary="Provides the cosign CLI binary for signing and verifying container images." LABEL com.redhat.component="cosign" LABEL name="rhtas/cosign-rhel9" -LABEL cpe="cpe:/a:redhat:trusted_artifact_signer:1.2::el9" +LABEL cpe="cpe:/a:redhat:trusted_artifact_signer:1.3::el9" COPY --from=build-env /cosign/cosign-darwin-amd64.gz /usr/local/bin/cosign-darwin-amd64.gz COPY --from=build-env /cosign/cosign-windows-amd64.exe.gz /usr/local/bin/cosign-windows-amd64.exe.gz From bf2e79511d4cce7af4b6ee7d03ba0ebffc35de2e Mon Sep 17 00:00:00 2001 From: Tommy Dalton Date: Tue, 23 Sep 2025 10:50:44 +0100 Subject: [PATCH 2/4] Updating version label --- Dockerfile.clients.rh | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile.clients.rh b/Dockerfile.clients.rh index ca0870be537..90772e87e60 100644 --- a/Dockerfile.clients.rh +++ b/Dockerfile.clients.rh @@ -94,7 +94,7 @@ LABEL \ name="trusted-artifact-signer-serve-cli-container" \ name="rhtas/client-server-rhel9" \ cpe="cpe:/a:redhat:trusted_artifact_signer:1.3::el9" \ - version="1.1.0" \ + version="1.3.0" \ summary="Red Hat serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ description="Serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ io.k8s.description="Serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ From 0f591a73883d08c2cafb9b66740e09cfac8357e2 Mon Sep 17 00:00:00 2001 From: Tommy Dalton Date: Tue, 23 Sep 2025 11:33:10 +0100 Subject: [PATCH 3/4] Removing CPE labels --- Dockerfile.clients.rh | 1 - Dockerfile.cosign.rh | 1 - 2 files changed, 2 deletions(-) diff --git a/Dockerfile.clients.rh b/Dockerfile.clients.rh index 90772e87e60..6bdc4e72296 100644 --- a/Dockerfile.clients.rh +++ b/Dockerfile.clients.rh @@ -93,7 +93,6 @@ LABEL \ com.redhat.component="trusted-artifact-signer-serve-cli-container" \ name="trusted-artifact-signer-serve-cli-container" \ name="rhtas/client-server-rhel9" \ - cpe="cpe:/a:redhat:trusted_artifact_signer:1.3::el9" \ version="1.3.0" \ summary="Red Hat serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ description="Serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \ diff --git a/Dockerfile.cosign.rh b/Dockerfile.cosign.rh index 2b45e421fef..1ee7d9590cd 100644 --- a/Dockerfile.cosign.rh +++ b/Dockerfile.cosign.rh @@ -35,7 +35,6 @@ LABEL io.openshift.tags="cosign trusted-signer" LABEL summary="Provides the cosign CLI binary for signing and verifying container images." LABEL com.redhat.component="cosign" LABEL name="rhtas/cosign-rhel9" -LABEL cpe="cpe:/a:redhat:trusted_artifact_signer:1.3::el9" COPY --from=build-env /cosign/cosign-darwin-amd64.gz /usr/local/bin/cosign-darwin-amd64.gz COPY --from=build-env /cosign/cosign-windows-amd64.exe.gz /usr/local/bin/cosign-windows-amd64.exe.gz From 53c99f95b24c149b461a6e009d55d4073f3e8593 Mon Sep 17 00:00:00 2001 From: Tommy Dalton Date: Tue, 23 Sep 2025 13:15:26 +0100 Subject: [PATCH 4/4] Removing extra name label --- Dockerfile.clients.rh | 1 - 1 file changed, 1 deletion(-) diff --git a/Dockerfile.clients.rh b/Dockerfile.clients.rh index 6bdc4e72296..14a06273117 100644 --- a/Dockerfile.clients.rh +++ b/Dockerfile.clients.rh @@ -91,7 +91,6 @@ RUN gzip /var/www/html/clients/linux/tuftool-amd64 LABEL \ com.redhat.component="trusted-artifact-signer-serve-cli-container" \ - name="trusted-artifact-signer-serve-cli-container" \ name="rhtas/client-server-rhel9" \ version="1.3.0" \ summary="Red Hat serves Trusted Artifact Signer CLI binaries cosign, gitsign, rekor-cli, ec, fetch_tsa_certs, trillian-createtree and trillian-updatetree from an HTTP server" \