mirror of
https://github.com/kata-containers/kata-containers.git
synced 2026-05-14 11:03:31 +00:00
The default suggestion for top-level permissions was `contents: read`, but scorecard notes anything other than empty, so try updating it and see if there are any issues. I think it's only needed if we run workflows from other repos. Signed-off-by: stevenhorsman <steven@uk.ibm.com>
41 lines
1.3 KiB
YAML
41 lines
1.3 KiB
YAML
on:
|
|
pull_request:
|
|
types:
|
|
- opened
|
|
- edited
|
|
- reopened
|
|
- synchronize
|
|
|
|
permissions: {}
|
|
|
|
concurrency:
|
|
group: ${{ github.workflow }}-${{ github.event.pull_request.number || github.ref }}
|
|
cancel-in-progress: true
|
|
|
|
jobs:
|
|
kata-deploy-runtime-classes-check:
|
|
runs-on: ubuntu-22.04
|
|
steps:
|
|
- name: Checkout code
|
|
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
|
|
with:
|
|
persist-credentials: false
|
|
- name: Ensure the split out runtime classes match the all-in-one file
|
|
run: |
|
|
pushd tools/packaging/kata-deploy/runtimeclasses/
|
|
echo "::group::Combine runtime classes"
|
|
for runtimeClass in $(find . -type f \( -name "*.yaml" -and -not -name "kata-runtimeClasses.yaml" \) | sort); do
|
|
echo "Adding ${runtimeClass} to the resultingRuntimeClasses.yaml"
|
|
cat "${runtimeClass}" >> resultingRuntimeClasses.yaml;
|
|
done
|
|
echo "::endgroup::"
|
|
echo "::group::Displaying the content of resultingRuntimeClasses.yaml"
|
|
cat resultingRuntimeClasses.yaml
|
|
echo "::endgroup::"
|
|
echo ""
|
|
echo "::group::Displaying the content of kata-runtimeClasses.yaml"
|
|
cat kata-runtimeClasses.yaml
|
|
echo "::endgroup::"
|
|
echo ""
|
|
diff resultingRuntimeClasses.yaml kata-runtimeClasses.yaml
|