diff --git a/.github/workflows/release-container-image.yml b/.github/workflows/release-container-image.yml index 32d3f24f1..be056260b 100644 --- a/.github/workflows/release-container-image.yml +++ b/.github/workflows/release-container-image.yml @@ -45,13 +45,8 @@ jobs: gunzip -c share/container.tar.gz | podman load FINAL_IMAGE_NAME="${{ env.REGISTRY }}/${{ env.IMAGE_NAME }}" podman tag dangerzone.rocks/dangerzone "$FINAL_IMAGE_NAME" - podman push "$FINAL_IMAGE_NAME" - - # Get digest of the pushed image using the final name - DIGEST=$(podman inspect --format='{{.Digest}}' "$FINAL_IMAGE_NAME") - podman inspect --format='Repo Digest: {{index .RepoDigests 0}}' "$FINAL_IMAGE_NAME" - echo "Digest: ${DIGEST}" - echo "digest=${DIGEST}" >> "$GITHUB_OUTPUT" + podman push "$FINAL_IMAGE_NAME" --digestfile=digest + echo "digest=$(cat digest)" >> "$GITHUB_OUTPUT" - name: Generate artifact attestation uses: actions/attest-build-provenance@v1