From 7206b082865cbf4138bb90efc17035ce5f527a74 Mon Sep 17 00:00:00 2001 From: Joel Takvorian <joel.takvorian@qaraywa.net> Date: Wed, 12 Feb 2025 14:30:45 +0100 Subject: [PATCH] FIPS compliance (#561) --- Dockerfile.downstream | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/Dockerfile.downstream b/Dockerfile.downstream index fda16938..8f8e1d39 100644 --- a/Dockerfile.downstream +++ b/Dockerfile.downstream @@ -19,7 +19,8 @@ COPY go.mod go.mod COPY go.sum go.sum # Build -RUN GOARCH=$TARGETARCH go build -ldflags "-X 'main.buildVersion=${BUILDVERSION}' -X 'main.buildDate=`date +%Y-%m-%d\ %H:%M`'" -mod vendor -a -o bin/netobserv-ebpf-agent cmd/netobserv-ebpf-agent.go +ENV GOEXPERIMENT strictfipsruntime +RUN GOARCH=$TARGETARCH go build -tags strictfipsruntime -ldflags "-X 'main.buildVersion=${BUILDVERSION}' -X 'main.buildDate=`date +%Y-%m-%d\ %H:%M`'" -mod vendor -a -o bin/netobserv-ebpf-agent cmd/netobserv-ebpf-agent.go # Create final image from minimal + built binary FROM --platform=linux/$TARGETARCH registry.access.redhat.com/ubi9/ubi-minimal:9.5-1738816775 -- GitLab