diff --git a/src/tektoncd/base/release.yaml b/src/tektoncd/base/release.yaml index 94497169..71ed981f 100644 --- a/src/tektoncd/base/release.yaml +++ b/src/tektoncd/base/release.yaml @@ -52,7 +52,7 @@ rules: # Controller needs cluster access to all of the CRDs that it is responsible for # managing. - apiGroups: ["tekton.dev"] - resources: ["tasks", "clustertasks", "taskruns", "pipelines", "pipelineruns", "runs", "customruns"] + resources: ["tasks", "clustertasks", "taskruns", "pipelines", "pipelineruns", "pipelineresources", "runs", "customruns"] verbs: ["get", "list", "create", "update", "delete", "patch", "watch"] - apiGroups: ["tekton.dev"] resources: ["verificationpolicies"] @@ -61,7 +61,7 @@ rules: resources: ["taskruns/finalizers", "pipelineruns/finalizers", "runs/finalizers", "customruns/finalizers"] verbs: ["get", "list", "create", "update", "delete", "patch", "watch"] - apiGroups: ["tekton.dev"] - resources: ["tasks/status", "clustertasks/status", "taskruns/status", "pipelines/status", "pipelineruns/status", "runs/status", "customruns/status", "verificationpolicies/status"] + resources: ["tasks/status", "clustertasks/status", "taskruns/status", "pipelines/status", "pipelineruns/status", "pipelineresources/status", "runs/status", "customruns/status", "verificationpolicies/status"] verbs: ["get", "list", "create", "update", "delete", "patch", "watch"] # resolution.tekton.dev - apiGroups: ["resolution.tekton.dev"] @@ -116,6 +116,7 @@ rules: - tasks.tekton.dev - clustertasks.tekton.dev - taskruns.tekton.dev + - pipelineresources.tekton.dev - resolutionrequests.resolution.tekton.dev - customruns.tekton.dev - verificationpolicies.tekton.dev @@ -485,8 +486,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -548,8 +549,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -616,8 +617,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -695,8 +696,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -886,6 +887,60 @@ spec: name: tekton-pipelines-webhook namespace: tekton-pipelines +--- +# Copyright 2019 The Tekton Authors +# +# Licensed under the Apache License, Version 2.0 (the "License"); +# you may not use this file except in compliance with the License. +# You may obtain a copy of the License at +# +# https://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, software +# distributed under the License is distributed on an "AS IS" BASIS, +# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +# See the License for the specific language governing permissions and +# limitations under the License. + +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + name: pipelineresources.tekton.dev + labels: + app.kubernetes.io/instance: default + app.kubernetes.io/part-of: tekton-pipelines + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" +spec: + group: tekton.dev + versions: + - name: v1alpha1 + served: true + storage: true + schema: + openAPIV3Schema: + type: object + # One can use x-kubernetes-preserve-unknown-fields: true + # at the root of the schema (and inside any properties, additionalProperties) + # to get the traditional CRD behaviour that nothing is pruned, despite + # setting spec.preserveUnknownProperties: false. + # + # See https://kubernetes.io/blog/2019/06/20/crd-structural-schema/ + # See issue: https://github.com/knative/serving/issues/912 + x-kubernetes-preserve-unknown-fields: true + # Opt into the status subresource so metadata.generation + # starts to increment + subresources: + status: {} + names: + kind: PipelineResource + plural: pipelineresources + singular: pipelineresource + categories: + - tekton + - tekton-pipelines + scope: Namespaced + --- # Copyright 2020 The Tekton Authors # @@ -908,8 +963,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -976,8 +1031,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -1058,8 +1113,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev preserveUnknownFields: false @@ -1168,8 +1223,8 @@ metadata: labels: app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" - version: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" + version: "v0.44.4" spec: group: tekton.dev versions: @@ -1220,7 +1275,7 @@ metadata: app.kubernetes.io/component: webhook app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # The data is populated at install time. --- apiVersion: admissionregistration.k8s.io/v1 @@ -1231,7 +1286,7 @@ metadata: app.kubernetes.io/component: webhook app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" webhooks: - admissionReviewVersions: ["v1"] clientConfig: @@ -1250,7 +1305,7 @@ metadata: app.kubernetes.io/component: webhook app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" webhooks: - admissionReviewVersions: ["v1"] clientConfig: @@ -1269,7 +1324,7 @@ metadata: app.kubernetes.io/component: webhook app.kubernetes.io/instance: default app.kubernetes.io/part-of: tekton-pipelines - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" webhooks: - admissionReviewVersions: ["v1"] clientConfig: @@ -1315,6 +1370,7 @@ rules: - taskruns - pipelines - pipelineruns + - pipelineresources - runs - customruns verbs: @@ -1358,6 +1414,7 @@ rules: - taskruns - pipelines - pipelineruns + - pipelineresources - runs - customruns verbs: @@ -1380,6 +1437,71 @@ rules: # See the License for the specific language governing permissions and # limitations under the License. +apiVersion: v1 +kind: ConfigMap +metadata: + name: config-artifact-bucket + namespace: tekton-pipelines + labels: + app.kubernetes.io/instance: default + app.kubernetes.io/part-of: tekton-pipelines +# data: +# # location of the gcs bucket to be used for artifact storage +# location: "gs://bucket-name" +# # name of the secret that will contain the credentials for the service account +# # with access to the bucket +# bucket.service.account.secret.name: +# # The key in the secret with the required service account json +# bucket.service.account.secret.key: +# # The field name that should be used for the service account +# # Valid values: GOOGLE_APPLICATION_CREDENTIALS, BOTO_CONFIG. +# bucket.service.account.field.name: GOOGLE_APPLICATION_CREDENTIALS + +--- +# Copyright 2019 The Tekton Authors +# +# Licensed under the Apache License, Version 2.0 (the "License"); +# you may not use this file except in compliance with the License. +# You may obtain a copy of the License at +# +# https://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, software +# distributed under the License is distributed on an "AS IS" BASIS, +# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +# See the License for the specific language governing permissions and +# limitations under the License. + +apiVersion: v1 +kind: ConfigMap +metadata: + name: config-artifact-pvc + namespace: tekton-pipelines + labels: + app.kubernetes.io/instance: default + app.kubernetes.io/part-of: tekton-pipelines +# data: +# # size of the PVC volume +# size: 5Gi +# +# # storage class of the PVC volume +# storageClassName: storage-class-name + +--- +# Copyright 2019 The Tekton Authors +# +# Licensed under the Apache License, Version 2.0 (the "License"); +# you may not use this file except in compliance with the License. +# You may obtain a copy of the License at +# +# https://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, software +# distributed under the License is distributed on an "AS IS" BASIS, +# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +# See the License for the specific language governing permissions and +# limitations under the License. + apiVersion: v1 kind: ConfigMap metadata: @@ -1451,10 +1573,6 @@ data: # overridden by podTemplate. default-forbidden-env: - # default-resolver-type contains the default resolver type to be used in the cluster, - # no default-resolver-type is specified by default - default-resolver-type: - --- # Copyright 2019 The Tekton Authors # @@ -1543,15 +1661,15 @@ data: # in the TaskRun/PipelineRun such as the source from where a remote Task/Pipeline # definition was fetched. enable-provenance-in-status: "false" + # Setting this flag to "full" to enable full embedding of `TaskRun` and `Run` statuses in the + # `PipelineRun` status. Set it to "minimal" to populate the `ChildReferences` field in the + # `PipelineRun` status with name, kind, and API version information for each `TaskRun` and + # `Run` in the `PipelineRun` instead. Set it to "both" to do both. + embedded-status: "minimal" # Setting this flag will determine the version for custom tasks created by PipelineRuns. # Acceptable values are "v1beta1" and "v1alpha1". # The default is "v1beta1". custom-task-version: "v1beta1" - # Setting this flag will determine how Tekton pipelines will handle non-falsifiable provenance. - # If set to "spire", then SPIRE will be used to ensure non-falsifiable provenance. - # If set to "none", then Tekton will not have non-falsifiable provenance. - # This is an experimental feature and thus should still be considered an alpha feature. - enforce-nonfalsifiablity: "none" --- # Copyright 2021 The Tekton Authors @@ -1582,7 +1700,7 @@ data: # this ConfigMap such that even if we don't have access to # other resources in the namespace we still can have access to # this ConfigMap. - version: "v0.46.0" + version: "v0.44.4" --- # Copyright 2020 Tekton Authors LLC @@ -1798,7 +1916,7 @@ metadata: apiVersion: v1 kind: ConfigMap metadata: - name: config-spire + name: config-trusted-resources namespace: tekton-pipelines labels: app.kubernetes.io/instance: default @@ -1818,18 +1936,10 @@ data: # These sample configuration options may be copied out of # this example block and unindented to be in the data block # to actually change the configuration. - # - # spire-trust-domain specifies the SPIRE trust domain to use. - # spire-trust-domain: "example.org" - # - # spire-socket-path specifies the SPIRE agent socket for SPIFFE workload API. - # spire-socket-path: "unix:///spiffe-workload-api/spire-agent.sock" - # - # spire-server-addr specifies the SPIRE server address for workload/node registration. - # spire-server-addr: "spire-server.spire.svc.cluster.local:8081" - # - # spire-node-alias-prefix specifies the SPIRE node alias prefix to use. - # spire-node-alias-prefix: "/tekton-node/" + + # publickeys specifies the list of public keys, the paths are separated by comma + # publickeys: "/etc/verification-secrets/cosign.pub, + # gcpkms://projects/tekton/locations/us/keyRings/trusted-resources/cryptoKeys/trusted-resources" --- # Copyright 2019 The Tekton Authors @@ -1855,12 +1965,12 @@ metadata: app.kubernetes.io/name: controller app.kubernetes.io/component: controller app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup - version: "v0.46.0" + version: "v0.44.4" spec: replicas: 1 selector: @@ -1875,13 +1985,13 @@ spec: app.kubernetes.io/name: controller app.kubernetes.io/component: controller app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup app: tekton-pipelines-controller - version: "v0.46.0" + version: "v0.44.4" spec: affinity: nodeAffinity: @@ -1895,11 +2005,13 @@ spec: serviceAccountName: tekton-pipelines-controller containers: - name: tekton-pipelines-controller - image: gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/controller:v0.46.0@sha256:d67fb2fb69ec38571ce3f71ce09571154e4b5db9b4cf71d69c2cb32455a4f8b4 + image: gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/controller:v0.44.4@sha256:37702e7148bc3cda353ae79be35e0bdc24c530d147cddbe9c0159a744d37bb83 args: [ # These images are built on-demand by `ko resolve` and are replaced # by image references by digest. - "-entrypoint-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/entrypoint:v0.46.0@sha256:36114bab6037563667aa0620037e7a063ffe00f432866a293807f8029eddd645", "-nop-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/nop:v0.46.0@sha256:1b9ad2522b5a5ea0c51ac43e2838ea1535de9d9c82c7864ed9a88553db434a29", "-sidecarlogresults-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/sidecarlogresults:v0.46.0@sha256:4bc1d0dc796a2a85a72d431344b80a2ac93f259fdd199d17ebc6d31b52a571d6", "-workingdirinit-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/workingdirinit:v0.46.0@sha256:b066c05c1565675a573563557d2cd91bea48217091a3beda639f0dbdea5910bc", + "-git-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/git-init:v0.44.4@sha256:d12d420438235ccee3f4fcb72cf9e5b2b79f60f713595fe1ada254d10167dfc6", "-entrypoint-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/entrypoint:v0.44.4@sha256:e160e469c149b45450be16656dad3e20253b77ee57e150d4cc770b91516b8419", "-nop-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/nop:v0.44.4@sha256:a93b75b99f0ac6b6d2c0e7f329e6e0c7ae04eae14ceddac96463641b02644041", "-sidecarlogresults-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/sidecarlogresults:v0.44.4@sha256:8a948ed5d9f441ba7126f4b2425569ea0640c23a43cf2ed6f993543b4255cd04", "-imagedigest-exporter-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/imagedigestexporter:v0.44.4@sha256:c7cc0e62af51166dc934f1c5cc35a74bfbe8b04e9e90e1cf563249027f021759", "-pr-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/pullrequest-init:v0.44.4@sha256:c36c298c7a601996faffd5773453b9ed07bd18f509f708a327627afd90c723b8", "-workingdirinit-image", "gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/workingdirinit:v0.44.4@sha256:2842e45fc62da00bc9b01bd6932adc1a368f98a3dc670761777d06d8d5d22aa0", + # This is gcr.io/google.com/cloudsdktool/cloud-sdk:302.0.0-slim + "-gsutil-image", "gcr.io/google.com/cloudsdktool/cloud-sdk@sha256:27b2c22bf259d9bc1a291e99c63791ba0c27a04d2db0a43241ba0f1f20f4067f", # The shell image must allow root in order to create directories and copy files to PVCs. # cgr.dev/chainguard/busybox as of April 14 2022 # image shall not contains tag, so it will be supported on a runtime like cri-o @@ -1912,6 +2024,10 @@ spec: mountPath: /etc/config-logging - name: config-registry-cert mountPath: /etc/config-registry-cert + # Mount secret for trusted resources + - name: verification-secrets + mountPath: /etc/verification-secrets + readOnly: true env: - name: SYSTEM_NAMESPACE valueFrom: @@ -1934,8 +2050,8 @@ spec: value: feature-flags - name: CONFIG_LEADERELECTION_NAME value: config-leader-election - - name: CONFIG_SPIRE - value: config-spire + - name: CONFIG_TRUSTED_RESOURCES_NAME + value: config-trusted-resources - name: SSL_CERT_FILE value: /etc/config-registry-cert/cert - name: SSL_CERT_DIR @@ -1990,6 +2106,11 @@ spec: - name: config-registry-cert configMap: name: config-registry-cert + # Mount secret for trusted resources + - name: verification-secrets + secret: + secretName: verification-secrets + optional: true --- apiVersion: v1 kind: Service @@ -1998,13 +2119,13 @@ metadata: app.kubernetes.io/name: controller app.kubernetes.io/component: controller app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup app: tekton-pipelines-controller - version: "v0.46.0" + version: "v0.44.4" name: tekton-pipelines-controller namespace: tekton-pipelines spec: @@ -2163,6 +2284,7 @@ apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: tekton-pipelines-resolvers + namespace: tekton-pipelines-resolvers labels: app.kubernetes.io/component: resolvers app.kubernetes.io/instance: default @@ -2583,12 +2705,12 @@ metadata: app.kubernetes.io/name: resolvers app.kubernetes.io/component: resolvers app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup - version: "v0.46.0" + version: "v0.44.4" spec: replicas: 1 selector: @@ -2603,13 +2725,13 @@ spec: app.kubernetes.io/name: resolvers app.kubernetes.io/component: resolvers app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup app: tekton-pipelines-resolvers - version: "v0.46.0" + version: "v0.44.4" spec: affinity: podAntiAffinity: @@ -2626,14 +2748,14 @@ spec: serviceAccountName: tekton-pipelines-resolvers containers: - name: controller - image: gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/resolvers:v0.46.0@sha256:f57448b914c72c03cbf36228134cc9ed24e28fef6d2e0d6d72c34908f38d8742 + image: gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/resolvers:v0.44.4@sha256:ce3480d47df921c96c234f62a284a8a61c0a2da7a6cd8a9243337f9e6675caff resources: requests: cpu: 100m memory: 100Mi limits: cpu: 1000m - memory: 4Gi + memory: 1000Mi ports: - name: metrics containerPort: 9090 @@ -2692,12 +2814,12 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/component: webhook app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup - version: "v0.46.0" + version: "v0.44.4" spec: minReplicas: 1 maxReplicas: 5 @@ -2740,12 +2862,12 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/component: webhook app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup - version: "v0.46.0" + version: "v0.44.4" spec: selector: matchLabels: @@ -2759,13 +2881,13 @@ spec: app.kubernetes.io/name: webhook app.kubernetes.io/component: webhook app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup app: tekton-pipelines-webhook - version: "v0.46.0" + version: "v0.44.4" spec: affinity: nodeAffinity: @@ -2792,7 +2914,7 @@ spec: - name: webhook # This is the Go import path for the binary that is containerized # and substituted here. - image: gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/webhook:v0.46.0@sha256:5dc383dc1bd71d81180e0e4da68be966ebf383cfd0ac9f53a72cff11463e7f59 + image: gcr.io/tekton-releases/github.com/tektoncd/pipeline/cmd/webhook:v0.44.4@sha256:40eb01c940a40374795ffefc16f2e4b01c730646e4d2aea640dd89d14d6ebb80 # Resource request required for autoscaler to take any action for a metric resources: requests: @@ -2881,13 +3003,13 @@ metadata: app.kubernetes.io/name: webhook app.kubernetes.io/component: webhook app.kubernetes.io/instance: default - app.kubernetes.io/version: "v0.46.0" + app.kubernetes.io/version: "v0.44.4" app.kubernetes.io/part-of: tekton-pipelines # tekton.dev/release value replaced with inputs.params.versionTag in pipeline/tekton/publish.yaml - pipeline.tekton.dev/release: "v0.46.0" + pipeline.tekton.dev/release: "v0.44.4" # labels below are related to istio and should not be used for resource lookup app: tekton-pipelines-webhook - version: "v0.46.0" + version: "v0.44.4" name: tekton-pipelines-webhook namespace: tekton-pipelines spec: