Skip to content

Update the location of the attestation files - #229

Merged
shonfeder merged 1 commit into
ocaml-dune:mainfrom
Leonidas-from-XIV:fix-attestation-filename
Mar 26, 2026
Merged

Update the location of the attestation files#229
shonfeder merged 1 commit into
ocaml-dune:mainfrom
Leonidas-from-XIV:fix-attestation-filename

Conversation

@Leonidas-from-XIV

@Leonidas-from-XIV Leonidas-from-XIV commented Mar 26, 2026

Copy link
Copy Markdown
Contributor

The new attestation actions use attestation.json as filename instead of attestation.jsonl; this PR fixes the location that is shown on the web site.

Closes #227.

Signed-off-by: Marek Kubica <marek@tarides.com>
@Leonidas-from-XIV
Leonidas-from-XIV force-pushed the fix-attestation-filename branch from 711772d to b843043 Compare March 26, 2026 15:38
@shonfeder

Copy link
Copy Markdown
Member

Deployability check seems to be failing: https://deploy.ci.ocaml.org/job/2026-03-26/155048-ocluster-build-b5635c

@Leonidas-from-XIV

Copy link
Copy Markdown
Contributor Author

Ah. It seems that INRIA is putting Anubis in front of the Menhir releases, so whenever we attempt to download instead of the archive we get the Anubis "make sure you're not a bot page" which of course does not have the right checksum as the archive.

I think this should be reported to INRIA to make an exception for the file URLs as they are very much meant to be downloaded by bots like binary-distribution or opam or dune pkg.

@shonfeder

Copy link
Copy Markdown
Member

Thanks for the fix!

@shonfeder
shonfeder merged commit fba2d85 into ocaml-dune:main Mar 26, 2026
3 checks passed
@Leonidas-from-XIV
Leonidas-from-XIV deleted the fix-attestation-filename branch March 26, 2026 22:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Links to the attestations on the nightly.dune.build are broken

2 participants