diff --git a/configs/install.yaml b/configs/install.yaml index 7d5b1b3..7448d43 100644 --- a/configs/install.yaml +++ b/configs/install.yaml @@ -236,6 +236,8 @@ spec: # value: ${AWS_SECRET_ACCESS_KEY} - name: AWS_REGION value: us-west-2 + - name: DEFAULT_TRUST_POLICY + value: aws-signer-trust-policy volumeMounts: - name: notation mountPath: /notation diff --git a/configs/samples/kyverno-policy.yaml b/configs/samples/kyverno-policy.yaml index f78639f..d3a3dc1 100644 --- a/configs/samples/kyverno-policy.yaml +++ b/configs/samples/kyverno-policy.yaml @@ -38,7 +38,7 @@ spec: - name: sbom/example conditions: all: - - key: creationInfo.licenseListVersion + - key: \{{creationInfo.licenseListVersion}} operator: Equals value: "3.17" service: diff --git a/go.mod b/go.mod index 27168e7..b30e3a4 100644 --- a/go.mod +++ b/go.mod @@ -7,7 +7,7 @@ require ( github.com/aws/aws-sdk-go-v2/service/ecr v1.18.7 github.com/go-logr/zapr v1.2.4 github.com/google/go-containerregistry v0.15.2 - github.com/nirmata/kyverno-notation-verifier v0.7.3 + github.com/nirmata/kyverno-notation-verifier v0.7.4 github.com/notaryproject/notation-core-go v1.0.0-rc.4 github.com/pkg/errors v0.9.1 go.uber.org/zap v1.24.0 diff --git a/go.sum b/go.sum index 8408a1f..394a2b2 100644 --- a/go.sum +++ b/go.sum @@ -976,8 +976,8 @@ github.com/nats-io/nkeys v0.1.3/go.mod h1:xpnFELMwJABBLVhffcfd1MZx6VsNRFpEugbxzi github.com/nats-io/nuid v1.0.1/go.mod h1:19wcPz3Ph3q0Jbyiqsd0kePYG7A95tJPxeL+1OSON2c= github.com/nbutton23/zxcvbn-go v0.0.0-20210217022336-fa2cb2858354/go.mod h1:KSVJerMDfblTH7p5MZaTt+8zaT2iEk3AkVb9PQdZuE8= github.com/niemeyer/pretty v0.0.0-20200227124842-a10e7caefd8e/go.mod h1:zD1mROLANZcx1PVRCS0qkT7pwLkGfwJo4zjcN/Tysno= -github.com/nirmata/kyverno-notation-verifier v0.7.3 h1:sn2fvl5n+IYBUDtG8gIjFRI+lGX9sEETbvy3/Nm+JZE= -github.com/nirmata/kyverno-notation-verifier v0.7.3/go.mod h1:o4pf546Qdj5pTit7hJAhfUjnJlXhLKRzND6BGRlc9aE= +github.com/nirmata/kyverno-notation-verifier v0.7.4 h1:tFxkV5/R31plApGenSLMosLDLRPlKotC7aXR2GVSp9M= +github.com/nirmata/kyverno-notation-verifier v0.7.4/go.mod h1:o4pf546Qdj5pTit7hJAhfUjnJlXhLKRzND6BGRlc9aE= github.com/nishanths/exhaustive v0.1.0/go.mod h1:S1j9110vxV1ECdCudXRkeMnFQ/DQk9ajLT0Uf2MYZQQ= github.com/nishanths/predeclared v0.0.0-20190419143655-18a43bb90ffc/go.mod h1:62PewwiQTlm/7Rj+cxVYqZvDIUc+JjZq6GHAC1fsObQ= github.com/nishanths/predeclared v0.2.1/go.mod h1:HvkGJcA3naj4lOwnFXFDkFxVtSqQMB9sbB1usJ+xjQE=