You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Remove download-credscan-suppression.yml in favor of disabling the SDL step on specific jobs or the like
We can account for the places where the clone is in a different location than the default SDL config by utilizing a templateContext argument on the deployment. Otherwise I'm not certain we can bypass this.
We CAN disable sdl injected steps when there is no checkout. Unfortunately during our signing stage there absolutely is checkout. Second section on this page This is for the entire SDL stage, not the injected steps during artifact publish.
No way to disable this. Only possible thing we could change is update to generate a blank credscan suppression file, then simply reference that via templateContext override.
Eliminate warning for 1es artifact of that name already exists for matrix-ed test jobs This issue has drug on for 3 weeks with new discovered work. Going to file this as its own thing and pursue it.
Need to mark as non-production or otherwise transition each of the above builds. At the very minimum the release builds need to be transitioned to yml.
Discovered long tail items
Scan-> Remaining to be resolved:azure-sdk-build-toolsexes with1es-templatesdownload-credscan-suppression.ymlin favor of disabling the SDL step on specific jobs or the likeSDLconfig by utilizing atemplateContextargument on the deployment. Otherwise I'm not certain we can bypass this.We CAN disableThis is for the entire SDL stage, not the injected steps during artifact publish.sdlinjected steps when there is no checkout. Unfortunately during our signing stage there absolutely is checkout. Second section on this pagetemplateContextoverride.Eliminate warning forThis issue has drug on for 3 weeks with new discovered work. Going to file this as its own thing and pursue it.1es artifact of that name already existsfor matrix-ed test jobsymlBuildsopenapi-alps-PullRequest- One branch already compliant. Not shipped to 3rd parties.openapi-alps-ciNot used as artifact source for release.This can probably be removed after we swap to releasing using ESRP task.Just going to ignore this for now.AutoRest - Publish- Azure/autorest - only missing ESRP. Going to ignore for now.Designer Builds
The following builds are designer, and will not benefit from the yml updates above.
mgmt-NetCore-SDK-Publishmgmt-netsdk-multiapi-publishmgmt-netsdk-sdkcommon-publishmgmt-netsdk-publishSpecs Repo - Update readme.md all-api-versions tags.Autorest Npm Admin TaskSupplanted bynpm adminbuildtools - Codex - vscode.devAnything crossed out is deleted. Checkmark otherwise indicates merged PR.
Release Builds
openapi-publishNeed to mark as non-production or otherwise transition each of the above builds. At the very minimum the release builds need to be transitioned to yml.