Running with gitlab-runner 13.2.0 (353dd94e)  on global-shared-gitlab-runner-8dd6b4777-87gcx dPJcxnQf section_start:1601420643:prepare_executor Preparing the "kubernetes" executor Using Kubernetes namespace: gitlab-runner Using Kubernetes executor with image ${GITLAB_INTERNAL_REGISTRY}/ironbank-tools/ironbank-pipeline/all-in-one-fedora:1.0 ... section_end:1601420643:prepare_executor section_start:1601420643:prepare_script Preparing environment Waiting for pod gitlab-runner/runner-dpjcxnqf-project-701-concurrent-22jqrb to be running, status is Pending Running on runner-dpjcxnqf-project-701-concurrent-22jqrb via global-shared-gitlab-runner-8dd6b4777-87gcx... section_end:1601420646:prepare_script section_start:1601420646:get_sources Getting source from Git repository Fetching changes with git depth set to 50... Initialized empty Git repository in /builds/dsop/coder-enterprise/coder-enterprise/timescale/.git/ Created fresh repository. Checking out 0ebbd133 as development... Skipping Git submodules setup section_end:1601420647:get_sources section_start:1601420647:download_artifacts Downloading artifacts Downloading artifacts for anchore scan (340715)... Dialing: tcp gitlab-webservice.gitlab.svc.cluster.local:8181 ... Downloading artifacts from coordinator... ok  id=340715 responseStatus=200 OK token=v2ixENma Downloading artifacts for openscap compliance (340712)... Dialing: tcp gitlab-webservice.gitlab.svc.cluster.local:8181 ... Downloading artifacts from coordinator... ok  id=340712 responseStatus=200 OK token=nkY1uaAZ Downloading artifacts for twistlock scan (340714)... Dialing: tcp gitlab-webservice.gitlab.svc.cluster.local:8181 ... Downloading artifacts from coordinator... ok  id=340714 responseStatus=200 OK token=NhF2Aun- Downloading artifacts for build (340711)... Dialing: tcp gitlab-webservice.gitlab.svc.cluster.local:8181 ... Downloading artifacts from coordinator... ok  id=340711 responseStatus=200 OK token=oRfc9vPo Downloading artifacts for load scripts (340705)... Dialing: tcp gitlab-webservice.gitlab.svc.cluster.local:8181 ... Downloading artifacts from coordinator... ok  id=340705 responseStatus=200 OK token=N1hQkL92 section_end:1601420651:download_artifacts section_start:1601420651:step_script Executing "step_script" stage of the job script $ podman load -i ${ARTIFACT_STORAGE}/build/${IMAGE_FILE}.tar ${STAGING_REGISTRY_URL}/${IM_NAME}:${IMG_VERSION} Getting image source signatures Copying blob sha256:a3105f1571e9a5c5802b34a6e62c5a9cd09200440072771b84970e81b010213b Copying blob sha256:2acea37b6b28a986fa6df61686e668eba93ba74054611deba8852fcc1875f124 Copying blob sha256:2ef4d19ea8cab9bc9d485ef0db272215dd112b1551022c4fa7ba630e53e47644 Copying blob sha256:25c06b21d6758cbed7c6abac7b9fd6dc707441b51055142403d52042b0243823 Copying config sha256:43c3c64e138035c2a60252ec1aebaa26ab4c5780d3be5b52d165554f78f9b016 Writing manifest to image destination Storing signatures Loaded image(s): @43c3c64e138035c2a60252ec1aebaa26ab4c5780d3be5b52d165554f78f9b016 $ echo ${IB_CONTAINER_GPG_KEY} | base64 -d > key $ mkdir -p tmp_gpg ${ARTIFACT_DIR}/reports $ GPG_VERSION_INFO=$(gpg --version | grep "gpg") $ OPENSCAP_VERSION=$(cat "${OPENSCAP_VERSION_FILE}") $ ANCHORE_VERSION=$(cat "${ANCHORE_VERSION_FILE}" | sed 's/"//g') $ TWISTLOCK_VERSION=$(cat "${TWISTLOCK_VERSION_FILE}" | sed 's/"//g') $ IMAGE_TAR_SHA=$(sha256sum ${ARTIFACT_STORAGE}/build/${IMAGE_FILE}.tar | grep -E '^[a-zA-Z0-9]+' -o) $ IMAGE_PODMAN_SHA=$(podman inspect --format {{'.Digest'}} ${STAGING_REGISTRY_URL}/${IM_NAME}:${IMG_VERSION}) $ GPG_PUB_KEY=$(awk '{printf "%s\\n", $0}' ${IB_CONTAINER_GPG_PUBKEY}) $ cat < scan-metadata.json # collapsed multi-line command $ cat scan-metadata.json { "buildTag": "1.11.0", "buildNumber": "0ebbd1334e28197d9e401fc4113ce87bf18e227b", "approval": "notapproved", "image": { "digest": "7d59204e4f408faf0256bf95fdb35f32a3e7611fc98fac3811b49aa336790067", "sha256": "sha256:6ee69271836c739d6126563bd2c63966caadd974dedd248f6fd74085e2770519" }, "pgp": { "publicKey": "-----BEGIN PGP PUBLIC KEY BLOCK-----\n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\nWdTJj4Yg6k88vtfaUby0aESXclM8rTD8C9IH5iEK0X29w1bCZnWmr82W\n=Aq8J\n-----END PGP PUBLIC KEY BLOCK-----\n", "version":"gpg (GnuPG) 2.2.20" }, "git": { "branch": "development", "commit": "0ebbd1334e28197d9e401fc4113ce87bf18e227b" }, "reports": { "twistlock": { "version": "20.04.177" }, "openSCAP": { "version": "1.3.2" }, "anchore": { "version": "2.3.2" } } } $ mv scan-metadata.json ${ARTIFACT_DIR} $ cat < documentation.json # collapsed multi-line command $ cat documentation.json { "timestamp": "2020-09-29T23:04:19", "git": { "hash": "0ebbd1334e28197d9e401fc4113ce87bf18e227b", "branch": "development" }, "tools": { "anchore": { "version": "2.3.2" }, "twistlock": { "version": "20.04.177" }, "openSCAP": { "version": "1.3.2" } } } $ mv documentation.json ${ARTIFACT_DIR}/reports section_end:1601420659:step_script section_start:1601420659:upload_artifacts_on_success Uploading artifacts for successful job Uploading artifacts... ci-artifacts/documentation: found 4 matching files and directories Dialing: tcp gitlab-webservice.gitlab.svc.cluster.local:8181 ... Uploading artifacts as "archive" to coordinator... ok id=340720 responseStatus=201 Created token=kM5Lr2pi section_end:1601420660:upload_artifacts_on_success Job succeeded