diff --git a/.github/workflows/build-baremetal-ubuntu22.04.yml b/.github/workflows/build-baremetal-ubuntu22.04.yml index 91100d7..b86e985 100644 --- a/.github/workflows/build-baremetal-ubuntu22.04.yml +++ b/.github/workflows/build-baremetal-ubuntu22.04.yml @@ -124,7 +124,7 @@ jobs: touch dist/SieverDispersion-baremetal/machineIDs/.gitkeep - name: Generate artifact attestation - uses: actions/attest-build-provenance@v2 + uses: actions/attest-build-provenance@v3 if: startsWith(github.ref, 'refs/tags/') with: subject-path: dist/SieverDispersion-baremetal/SieverDispersion diff --git a/.github/workflows/build-baremetal.yml b/.github/workflows/build-baremetal.yml index 8533714..35d9417 100644 --- a/.github/workflows/build-baremetal.yml +++ b/.github/workflows/build-baremetal.yml @@ -124,7 +124,7 @@ jobs: touch dist/SieverDispersion-baremetal/machineIDs/.gitkeep - name: Generate artifact attestation - uses: actions/attest-build-provenance@v2 + uses: actions/attest-build-provenance@v3 if: startsWith(github.ref, 'refs/tags/') with: subject-path: dist/SieverDispersion-baremetal/SieverDispersion diff --git a/.github/workflows/build-base-image-cpu.yml b/.github/workflows/build-base-image-cpu.yml index b7e362e..866db4e 100644 --- a/.github/workflows/build-base-image-cpu.yml +++ b/.github/workflows/build-base-image-cpu.yml @@ -57,7 +57,7 @@ jobs: # This step generates an artifact attestation for the image, which is an unforgeable statement about where and how it was built. It increases supply chain security for people who consume the image. For more information, see "[AUTOTITLE](/actions/security-guides/using-artifact-attestations-to-establish-provenance-for-builds)." - name: Generate artifact attestation - uses: actions/attest-build-provenance@v2 + uses: actions/attest-build-provenance@v3 with: subject-name: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME}} subject-digest: ${{ steps.push.outputs.digest }} diff --git a/.github/workflows/build-base-image-gpu-ubuntu22.04.yml b/.github/workflows/build-base-image-gpu-ubuntu22.04.yml index 1c59521..7c63d33 100644 --- a/.github/workflows/build-base-image-gpu-ubuntu22.04.yml +++ b/.github/workflows/build-base-image-gpu-ubuntu22.04.yml @@ -57,7 +57,7 @@ jobs: # This step generates an artifact attestation for the image, which is an unforgeable statement about where and how it was built. It increases supply chain security for people who consume the image. For more information, see "[AUTOTITLE](/actions/security-guides/using-artifact-attestations-to-establish-provenance-for-builds)." - name: Generate artifact attestation - uses: actions/attest-build-provenance@v2 + uses: actions/attest-build-provenance@v3 with: subject-name: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME}} subject-digest: ${{ steps.push.outputs.digest }} diff --git a/.github/workflows/build-base-image-gpu.yml b/.github/workflows/build-base-image-gpu.yml index eabf27a..5be7c07 100644 --- a/.github/workflows/build-base-image-gpu.yml +++ b/.github/workflows/build-base-image-gpu.yml @@ -57,7 +57,7 @@ jobs: # This step generates an artifact attestation for the image, which is an unforgeable statement about where and how it was built. It increases supply chain security for people who consume the image. For more information, see "[AUTOTITLE](/actions/security-guides/using-artifact-attestations-to-establish-provenance-for-builds)." - name: Generate artifact attestation - uses: actions/attest-build-provenance@v2 + uses: actions/attest-build-provenance@v3 with: subject-name: ${{ env.REGISTRY }}/${{ env.IMAGE_NAME}} subject-digest: ${{ steps.push.outputs.digest }}