Running with gitlab-runner 13.12.0 (7a6612da)  on dsop-shared-gitlab-runner-5fcd8977b8-m6qmr JrExJ6yx  feature flags: FF_USE_LEGACY_KUBERNETES_EXECUTION_STRATEGY:false section_start:1631044424:resolve_secrets Resolving secrets section_end:1631044424:resolve_secrets section_start:1631044424:prepare_executor Preparing the "kubernetes" executor Using Kubernetes namespace: gitlab-runner-ironbank-dsop Using Kubernetes executor with image registry1.dso.mil/ironbank/ironbank-pipelines/rootless-podman:0.2 ... Using attach strategy to execute scripts... section_end:1631044424:prepare_executor section_start:1631044424:prepare_script Preparing environment Waiting for pod gitlab-runner-ironbank-dsop/runner-jrexj6yx-project-1384-concurrent-062skh to be running, status is Pending Waiting for pod gitlab-runner-ironbank-dsop/runner-jrexj6yx-project-1384-concurrent-062skh to be running, status is Pending ContainersNotInitialized: "containers with incomplete status: [init-logs istio-init]" ContainersNotReady: "containers with unready status: [build helper istio-proxy]" ContainersNotReady: "containers with unready status: [build helper istio-proxy]" Waiting for pod gitlab-runner-ironbank-dsop/runner-jrexj6yx-project-1384-concurrent-062skh to be running, status is Pending ContainersNotReady: "containers with unready status: [build helper istio-proxy]" ContainersNotReady: "containers with unready status: [build helper istio-proxy]" Running on runner-jrexj6yx-project-1384-concurrent-062skh via dsop-shared-gitlab-runner-5fcd8977b8-m6qmr... section_end:1631044434:prepare_script section_start:1631044434:get_sources Getting source from Git repository $ until [ $(curl --fail --silent --output /dev/stderr --write-out "%{http_code}" localhost:15020/healthz/ready) -eq 200 ]; do echo Waiting for Sidecar; sleep 3 ; done ; echo Sidecar available; Sidecar available Fetching changes with git depth set to 50... Initialized empty Git repository in /builds/JrExJ6yx/0/dsop/redhat/ubi/ubi8-minimal/.git/ Created fresh repository. Checking out 67c76543 as development... Skipping Git submodules setup section_end:1631044435:get_sources section_start:1631044435:download_artifacts Downloading artifacts Downloading artifacts for hardening-manifest (6305029)... Downloading artifacts from coordinator... ok  id=6305029 responseStatus=200 OK token=q532hRKV WARNING: ci-artifacts/preflight/: lchown ci-artifacts/preflight/: operation not permitted (suppressing repeats) Downloading artifacts for import-artifacts (6305031)... Downloading artifacts from coordinator... ok  id=6305031 responseStatus=200 OK token=JHpYio8t WARNING: ci-artifacts/import-artifacts/: lchown ci-artifacts/import-artifacts/: operation not permitted (suppressing repeats) Downloading artifacts for load-scripts (6305026)... Downloading artifacts from coordinator... ok  id=6305026 responseStatus=200 OK token=UgUyCy4k WARNING: ci-artifacts/[MASKED]/: lchown ci-artifacts/[MASKED]/: operation not permitted (suppressing repeats) Downloading artifacts for wl-compare-lint (6305030)... Downloading artifacts from coordinator... ok  id=6305030 responseStatus=200 OK token=qHsJpUCy WARNING: ci-artifacts/lint/: lchown ci-artifacts/lint/: operation not permitted (suppressing repeats) section_end:1631044437:download_artifacts section_start:1631044437:step_script Executing "step_script" stage of the job script $ "${PIPELINE_REPO_DIR}/stages/build/build-run.sh" Determine source registry based on branch Load any images used in Dockerfile build loading image ci-artifacts/import-artifacts/images/ubi-ubi-minimal-8.4.tar Getting image source signatures Copying blob sha256:e7ed17121dee57e210a027da1f0097bb67e8074b1cb49b8c9361c4b6e0198cf9 Copying blob sha256:785573c4b94554cc3ba023f2648ba476bc5c33a05344c341f78bb384fb4b9d58 Copying config sha256:cf2faf23cb4655c0a430827731009da042b788bdfe0e8061940d8a5441e9a978 Writing manifest to image destination Storing signatures Loaded image(s): localhost/ubi/ubi-minimal:8.4 Load HTTP and S3 external resources Converting labels from hardening manifest into command line args Converting build args from hardening manifest into command line args Build the image STEP 1: FROM ubi/ubi-minimal:8.4 STEP 2: COPY scripts /dsop-fix/ STEP 3: COPY yum.repos.d/ /etc/yum.repos.d STEP 4: COPY banner/issue /etc/ STEP 5: RUN echo Update packages and install DISA STIG fixes && rm -f /etc/yum.repos.d/ubi.repo && microdnf repolist && microdnf update && microdnf install -y crypto-policies-scripts && /dsop-fix/xccdf_org.ssgproject.content_rule_configure_crypto_policy.sh && /dsop-fix/xccdf_org.ssgproject.content_rule_openssl_use_strong_entropy.sh && /dsop-fix/xccdf_org.ssgproject.content_rule_configure_openssl_crypto_policy.sh && /dsop-fix/xccdf_org.ssgproject.content_rule_accounts_umask_etc_bashrc.sh && /dsop-fix/xccdf_org.ssgproject.content_rule_accounts_umask_etc_profile.sh && /dsop-fix/xccdf_org.ssgproject.content_rule_accounts_umask_etc_csh_cshrc.sh && microdnf clean all && rm -rf /dsop-fix/ /var/cache/dnf/ /var/tmp/* /tmp/* /var/tmp/.???* /tmp/.???* Update packages and install DISA STIG fixes (microdnf:342): librhsm-WARNING **: 19:54:01.904: Found 0 entitlement certificates (microdnf:342): librhsm-WARNING **: 19:54:01.906: Found 0 entitlement certificates repo id repo name ubi-8-appstream Red Hat Universal Base Image 8 (RPMs) - AppStream ubi-8-baseos Red Hat Universal Base Image 8 (RPMs) - BaseOS ubi-8-codeready-builder Red Hat Universal Base Image 8 (RPMs) - CodeReady Builder (microdnf:345): librhsm-WARNING **: 19:54:01.939: Found 0 entitlement certificates (microdnf:345): librhsm-WARNING **: 19:54:01.941: Found 0 entitlement certificates Downloading metadata... Downloading metadata... Downloading metadata... Nothing to do. (microdnf:403): librhsm-WARNING **: 19:54:37.308: Found 0 entitlement certificates (microdnf:403): librhsm-WARNING **: 19:54:37.309: Found 0 entitlement certificates Package Repository Size Installing: crypto-policies-scripts-20210209-1.gitbfb6bed.el8_3.noarch ubi-8-baseos 68.8 kB gdbm-1:1.18-1.el8.x86_64 ubi-8-baseos 132.9 kB gdbm-libs-1:1.18-1.el8.x86_64 ubi-8-baseos 62.0 kB libnsl2-1.2.0-2.20180605git4a062cf.el8.x86_64 ubi-8-baseos 59.1 kB libtirpc-1.1.4-4.el8.x86_64 ubi-8-baseos 115.5 kB platform-python-3.6.8-37.el8.x86_64 ubi-8-baseos 86.1 kB platform-python-pip-9.0.3-19.el8.noarch ubi-8-baseos 1.8 MB platform-python-setuptools-39.2.0-6.el8.noarch ubi-8-baseos 647.5 kB python3-libs-3.6.8-37.el8.x86_64 ubi-8-baseos 8.2 MB python3-pip-wheel-9.0.3-19.el8.noarch ubi-8-baseos 1.1 MB python3-setuptools-wheel-39.2.0-6.el8.noarch ubi-8-baseos 295.8 kB Transaction Summary: Installing: 11 packages Reinstalling: 0 packages Upgrading: 0 packages Obsoleting: 0 packages Removing: 0 packages Downgrading: 0 packages Downloading packages... Running transaction test... Installing: python3-pip-wheel;9.0.3-19.el8;noarch;ubi-8-baseos Installing: gdbm-libs;1:1.18-1.el8;x86_64;ubi-8-baseos Installing: libtirpc;1.1.4-4.el8;x86_64;ubi-8-baseos Installing: python3-setuptools-wheel;39.2.0-6.el8;noarch;ubi-8-baseos Installing: libnsl2;1.2.0-2.20180605git4a062cf.el8;x86_64;ubi-8-baseos Installing: gdbm;1:1.18-1.el8;x86_64;ubi-8-baseos Installing: platform-python-pip;9.0.3-19.el8;noarch;ubi-8-baseos Installing: platform-python-setuptools;39.2.0-6.el8;noarch;ubi-8-baseos Installing: platform-python;3.6.8-37.el8;x86_64;ubi-8-baseos Installing: python3-libs;3.6.8-37.el8;x86_64;ubi-8-baseos Installing: crypto-policies-scripts;20210209-1.gitbfb6bed.el8_3;noarch;ubi-8-baseos Complete. Remediating: 'xccdf_org.ssgproject.content_rule_configure_crypto_policy' Warning: Using 'update-crypto-policies --set FIPS' is not sufficient for FIPS compliance. Use 'fips-mode-setup --enable' command instead. Setting system policy to FIPS:OSPP Note: System-wide crypto policies are applied on application start-up. It is recommended to restart the system for the change of policies to fully take place. Remediating: 'xccdf_org.ssgproject.content_rule_openssl_use_strong_entropy' Remediating: 'xccdf_org.ssgproject.content_rule_configure_openssl_crypto_policy' Remediating: 'xccdf_org.ssgproject.content_rule_accounts_umask_etc_bashrc' Remediating: 'xccdf_org.ssgproject.content_rule_accounts_umask_etc_profile' Remediating: 'xccdf_org.ssgproject.content_rule_accounts_umask_etc_csh_cshrc' (microdnf:448): librhsm-WARNING **: 19:54:39.636: Found 0 entitlement certificates (microdnf:448): librhsm-WARNING **: 19:54:39.638: Found 0 entitlement certificates Complete. STEP 6: ENV container oci STEP 7: ENV PATH /usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin STEP 8: CMD ["/bin/bash"] STEP 9: COMMIT registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal Getting image source signatures Copying blob sha256:785573c4b94554cc3ba023f2648ba476bc5c33a05344c341f78bb384fb4b9d58 Copying blob sha256:e7ed17121dee57e210a027da1f0097bb67e8074b1cb49b8c9361c4b6e0198cf9 Copying blob sha256:11b6b7d4202be361328c346d6eee523c87be11d7210b529a9ff69cbcf674f158 Copying config sha256:ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 Writing manifest to image destination Storing signatures --> ce312da3dea [Warning] one or more build args were not consumed: [BASE_IMAGE BASE_REGISTRY BASE_TAG] Successfully tagged registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:latest ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 + buildah tag --storage-driver=vfs registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:ibci-465115 + buildah push --storage-driver=vfs --authfile staging_auth.json --digestfile=ci-artifacts/build/digest registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:ibci-465115 Getting image source signatures Copying blob sha256:e7ed17121dee57e210a027da1f0097bb67e8074b1cb49b8c9361c4b6e0198cf9 Copying blob sha256:785573c4b94554cc3ba023f2648ba476bc5c33a05344c341f78bb384fb4b9d58 Copying blob sha256:11b6b7d4202be361328c346d6eee523c87be11d7210b529a9ff69cbcf674f158 Copying config sha256:ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 Writing manifest to image destination Storing signatures + echo 'Read the tags' Read the tags + tags_file=ci-artifacts/preflight/tags.txt + test -f ci-artifacts/preflight/tags.txt + IFS= + read -r tag + buildah tag --storage-driver=vfs registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:8.4 + buildah push --storage-driver=vfs --authfile staging_auth.json registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:8.4 Getting image source signatures Copying blob sha256:e7ed17121dee57e210a027da1f0097bb67e8074b1cb49b8c9361c4b6e0198cf9 Copying blob sha256:11b6b7d4202be361328c346d6eee523c87be11d7210b529a9ff69cbcf674f158 Copying blob sha256:785573c4b94554cc3ba023f2648ba476bc5c33a05344c341f78bb384fb4b9d58 Copying config sha256:ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 Writing manifest to image destination Storing signatures + IFS= + read -r tag + buildah tag --storage-driver=vfs registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:latest + buildah push --storage-driver=vfs --authfile staging_auth.json registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:latest Getting image source signatures Copying blob sha256:785573c4b94554cc3ba023f2648ba476bc5c33a05344c341f78bb384fb4b9d58 Copying blob sha256:11b6b7d4202be361328c346d6eee523c87be11d7210b529a9ff69cbcf674f158 Copying blob sha256:e7ed17121dee57e210a027da1f0097bb67e8074b1cb49b8c9361c4b6e0198cf9 Copying config sha256:ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 Writing manifest to image destination Storing signatures + IFS= + read -r tag ++ podman inspect --storage-driver=vfs registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal --format '{{.Id}}' + IMAGE_ID=sha256:ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 + echo IMAGE_ID=sha256:ce312da3dea739f8828b78880ae75cb6038640268be48865e8f8cb84cd51d351 + IMAGE_PODMAN_SHA=sha256:55a6205ccdad92dcc5d800b63d367e1603f0872fdd429aa0a4ca412bbf961816 + echo IMAGE_PODMAN_SHA=sha256:55a6205ccdad92dcc5d800b63d367e1603f0872fdd429aa0a4ca412bbf961816 + echo IMAGE_FULLTAG=registry1.dso.mil/ironbank-staging/redhat/ubi/ubi8-minimal:ibci-465115 + echo IMAGE_NAME=redhat/ubi/ubi8-minimal + branches=("master" "development") + [[ master development =~ development ]] + msg='A tarball of the built image can be retrieved from the documentation job artifacts.' + echo 'A tarball of the built image can be retrieved from the documentation job artifacts.' A tarball of the built image can be retrieved from the documentation job artifacts. section_end:1631044495:step_script section_start:1631044495:upload_artifacts_on_success Uploading artifacts for successful job Uploading artifacts... ci-artifacts/build/: found 2 matching files and directories Uploading artifacts as "archive" to coordinator... ok id=6305033 responseStatus=201 Created token=TYg8mQUL Uploading artifacts... build.env: found 1 matching files and directories  Uploading artifacts as "dotenv" to coordinator... ok id=6305033 responseStatus=201 Created token=TYg8mQUL section_end:1631044497:upload_artifacts_on_success section_start:1631044497:cleanup_file_variables Cleaning up file based variables section_end:1631044497:cleanup_file_variables Job succeeded