Skip to content
Merged
Show file tree
Hide file tree
Changes from 1 commit
Commits
File filter

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions evergreen/evergreen.yml
Original file line number Diff line number Diff line change
Expand Up @@ -209,6 +209,7 @@ functions:
params:
working_dir: "mongo-csharp-analyzer"
env:
NUGET_SIGN_CERTIFICATE_FINGERPRINT: ${NUGET_SIGN_CERTIFICATE_FINGERPRINT}
PRODUCT_NAME: "mongo-csharp-analyzer"
github_commit: ${github_commit}
script: |
Expand Down
2 changes: 2 additions & 0 deletions evergreen/generate-ssdlc-report.sh
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,7 @@
set -o errexit # Exit the script with error if any of the commands fail

# Environment variables used as input:
# NUGET_SIGN_CERTIFICATE_FINGERPRINT
# PRODUCT_NAME
# PACKAGE_VERSION
# github_commit
Expand Down Expand Up @@ -31,5 +32,6 @@ sed "${SED_EDIT_IN_PLACE_OPTION[@]}" \
-e "s/\${PACKAGE_VERSION}/$PACKAGE_VERSION/g" \
-e "s/\${github_commit}/$github_commit/g" \
-e "s/\${REPORT_DATE_UTC}/$(date -u +%Y-%m-%d)/g" \
-e "s/\${NUGET_SIGN_CERTIFICATE_FINGERPRINT}/${NUGET_SIGN_CERTIFICATE_FINGERPRINT}/g" \
"${SSDLC_REPORT_PATH}"
ls "${SSDLC_REPORT_PATH}"
8 changes: 7 additions & 1 deletion evergreen/template_ssdlc_compliance_report.md
Original file line number Diff line number Diff line change
Expand Up @@ -53,4 +53,10 @@ Coverity static analysis report is available <a href="https://us-west-2.console.

## Signature information

Blocked on <https://jira.mongodb.org/browse/VS-124>.
Packages are signed with certificate with fingerprint: ${NUGET_SIGN_CERTIFICATE_FINGERPRINT}.
Signature can be validated by running ```dotnet nuget verify``` command.

For example signature of ```MongoDB.Analyzer."${PACKAGE_VERSION}".nupkg``` package can be verified by running:
```
dotnet nuget verify MongoDB.Analyzer."${PACKAGE_VERSION}".nupkg --certificate-fingerprint ${NUGET_SIGN_CERTIFICATE_FINGERPRINT}
```