Closed Bug 1867948 Opened 2 years ago Closed 2 years ago

please allow vmactions/freebsd-vm@v1*

Categories

(mozilla.org :: Github: Administration, task)

Tracking

(Not tracked)

RESOLVED FIXED

People

(Reporter: Sylvestre, Assigned: cknowles)

References

Details

As seen below, we allow vmactions/freebsd-vm@v0
needed here: https://github.com/mozilla/sccache/actions/runs/7059324784

vmactions/freebsd-vm@v1.0.2 is not allowed to be used in mozilla/sccache. Actions in this workflow must be: within a repository that belongs to your Enterprise account, created by GitHub, or matching the following: !/mozilla/**, !mozilla/**, ./**, 10up/wpcs-action@*, aws-actions/*, docker/*, pypa/gh-action-pypi-publish@v1.4.2, slackapi/slack-github-action@*, google-github-actions/*, erlef/setup-beam@v1, yesolutions/mirror-action@*, codecov/codecov-action@*, tj-actions/changed-files@*, tj-actions/glob@*, vmactions/freebsd-vm@v0, actions-rs/toolchain@v1, shivammathur/setup-php@*, EmbarkStudios/*, dependabot/fetch-metadata@*, ilammy/msvc-dev-cmd@v1*, canonical/actions/*, canonical/setup-lxd@*, dtolnay/rust-toolchain@*, pypa/gh-action-pypi-publish@release/v1*.

Forwarding to security for their opions - per the approved actions list they only approved V0 specifically.

Hal/Austin - can we bump to @v1* per Sylvestre's request, or better yet straight *?

Assignee: nobody → cknowles
Flags: needinfo?(hwine)
Flags: needinfo?(asargent)

Okay to bump to *

Flags: needinfo?(hwine)

Alright, this has been changed to vmactions/freebsd-vm@*, --- which should cover you. Please reach out if there's any further concerns.

Status: NEW → RESOLVED
Closed: 2 years ago
Resolution: --- → FIXED
Flags: needinfo?(asargent)
You need to log in before you can comment on or make changes to this bug.