2019-02-09 08:02:57 +08:00
|
|
|
/*
|
|
|
|
|
Copyright The Helm Authors.
|
|
|
|
|
|
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
|
you may not use this file except in compliance with the License.
|
|
|
|
|
You may obtain a copy of the License at
|
|
|
|
|
|
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
|
|
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
|
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
|
See the License for the specific language governing permissions and
|
|
|
|
|
limitations under the License.
|
|
|
|
|
*/
|
|
|
|
|
|
|
|
|
|
package action
|
|
|
|
|
|
|
|
|
|
import (
|
2020-02-29 01:52:21 +08:00
|
|
|
"fmt"
|
|
|
|
|
"strings"
|
|
|
|
|
|
2024-12-27 05:33:51 +08:00
|
|
|
"helm.sh/helm/v4/pkg/downloader"
|
2019-02-09 08:02:57 +08:00
|
|
|
)
|
|
|
|
|
|
|
|
|
|
// Verify is the action for building a given chart's Verify tree.
|
|
|
|
|
//
|
|
|
|
|
// It provides the implementation of 'helm verify'.
|
|
|
|
|
type Verify struct {
|
|
|
|
|
Keyring string
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
// NewVerify creates a new Verify object with the given configuration.
|
|
|
|
|
func NewVerify() *Verify {
|
|
|
|
|
return &Verify{}
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
// Run executes 'helm verify'.
|
2025-09-17 22:50:12 +08:00
|
|
|
func (v *Verify) Run(chartfile string) (string, error) {
|
2020-02-29 01:52:21 +08:00
|
|
|
var out strings.Builder
|
2025-08-20 02:00:36 +08:00
|
|
|
p, err := downloader.VerifyChart(chartfile, chartfile+".prov", v.Keyring)
|
2020-02-29 01:52:21 +08:00
|
|
|
if err != nil {
|
2025-09-17 22:50:12 +08:00
|
|
|
return "", err
|
2020-02-29 01:52:21 +08:00
|
|
|
}
|
|
|
|
|
|
|
|
|
|
for name := range p.SignedBy.Identities {
|
2025-09-17 22:50:12 +08:00
|
|
|
_, _ = fmt.Fprintf(&out, "Signed by: %v\n", name)
|
2020-02-29 01:52:21 +08:00
|
|
|
}
|
2025-09-17 22:50:12 +08:00
|
|
|
_, _ = fmt.Fprintf(&out, "Using Key With Fingerprint: %X\n", p.SignedBy.PrimaryKey.Fingerprint)
|
|
|
|
|
_, _ = fmt.Fprintf(&out, "Chart Hash Verified: %s\n", p.FileHash)
|
2020-02-29 01:52:21 +08:00
|
|
|
|
2025-09-17 22:50:12 +08:00
|
|
|
return out.String(), err
|
2019-02-09 08:02:57 +08:00
|
|
|
}
|