Skip to content

feat(WIP): update posture for 1.0.0 in a generic way#69

Draft
butler54 wants to merge 26 commits intovalidatedpatterns:mainfrom
butler54:remove_gen_secrests
Draft

feat(WIP): update posture for 1.0.0 in a generic way#69
butler54 wants to merge 26 commits intovalidatedpatterns:mainfrom
butler54:remove_gen_secrests

Conversation

@butler54
Copy link
Collaborator

@butler54 butler54 commented Jan 5, 2026

The objective of this PR is to update the validated pattern as close as possible to the GA posture articulated in the documentation.

Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
@butler54 butler54 changed the title remove gen secrests feat: update posture for 1.0.0 in a generic way Jan 5, 2026
@butler54 butler54 changed the title feat: update posture for 1.0.0 in a generic way feat(WIP): update posture for 1.0.0 in a generic way Jan 5, 2026
butler54 and others added 17 commits January 5, 2026 14:33
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Replace separate gzip-to-file and slurp approach with direct pipe:
cat file | gzip | base64 -w0

This matches the approach used elsewhere in the codebase and fixes
deployment failures caused by inconsistent encoding.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
SHA-256 produces 256 bits = 32 bytes = 64 hex characters.
The initial PCR value was missing one zero.

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
Signed-off-by: Chris Butler <chris.butler@redhat.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant