Ensure automated backport commits have verified signatures
Los mantenedores suelen responder en 1 día
Evaluación
- Dificultad
- 4/5
- Tiempo estimado
- 3-5 días
- Aptitud para principiantes
- 55/100
- Tipo de issue
- Nueva funcionalidad
- Claridad
- Bastante claro
- Estado de actividad
- Activo
- Stack tecnológico
- git, github, javascript
Línea de trabajo
Read .github/scripts/backport.js and the approach in NVIDIA/nvidia-container-toolkit PR #2012, then inspect the compatibility described in #2992. Verify both clean backports and conflict-resolved backports through backport CI. Done means generated commits report verified: true, preserve their trees and messages, and retain existing PR creation and conflict handling.
Escrito por el modelo de indexación a partir del texto del issue.
Descripción
The cherry-pick workflow currently creates backport commits locally and pushes them without signing. Recent automated backports report verified: false with reason unsigned, even when the original commits were signed.
This is incompatible with CI signature verification proposed in #2992 and branch protection requiring signed commits.
Update .github/scripts/backport.js to produce verified backport commits. Follow the approach implemented in nvidia-container-toolkit PR #2012:
- Recreate each cherry-picked commit through GitHub’s Git Data API, preserving its tree, message, and commit order.
- Update the backport branch to reference the resulting signed commit chain.
- Preserve existing PR creation and conflict-handling behavior.
This approach avoids managing a separate GPG or SSH signing key for the bot.
Acceptance criteria:
- GitHub reports verified: true for every generated backport commit.
- Backports preserve the expected changes and commit messages.
- Backport CI passes the signature-verification gate when enabled.
- Both clean backports and backports requiring manual conflict resolution remain supported.
- Lenguaje dominante
- Go
- Estrellas
- 2.9k
- Forks
- 565
- Merge medio
- 1 d 10 h
- PR fusionados (30 d)
- 78
Preparar el entorno
- Sin Dockerfile ni archivo de Docker Compose
- Tiene una plantilla de pull request
- Leer la guía de contribución
Primeros pasos
- Lee el issue completo y luego la guía de contribución del proyecto.
- Comenta en el issue que vas a ocuparte — evita que dos personas hagan lo mismo.
- Haz un fork del repositorio y trabaja en una rama.
- Abre un pull request que haga referencia al número del issue.
Más de NVIDIA/gpu-operator
-
Make NVIDIADriver node-pool rendering deterministicPosiblemente ocupada @efegokdemir la tomó hace 7 días. Abiertodsx-ws-0930 good-first-issue
Dificultad 2/5 1-3 horas Aptitud para principiantes 88/100
NVIDIA/gpu-operator#2981 · 1 comentario ·
Los mantenedores suelen responder en 1 día
-
[Bug]: GPUCluster common name label breaks DRA validator selectorPosiblemente ocupada @ajavanma la tomó hace 15 días. Abierto
Dificultad 2/5 1-3 horas Aptitud para principiantes 88/100
NVIDIA/gpu-operator#2955 · 1 comentario ·
Los mantenedores suelen responder en 1 día
-
[Bug]: Latest Nvidia GPU Operator v26.7.1 reports large numbers of critical and high CVEs in Trivy scan outputPosiblemente ocupada @rahulait la tomó hace 7 días. Abiertomore-information-needed needs-triage
NVIDIA/gpu-operator#2991 · 3 comentarios · 1 asignado ·
Los mantenedores suelen responder en 1 día
-
Verify the triggering commit before running other CI jobsPosiblemente ocupada @Coelho-Gustavo la tomó hace 7 días. Abiertogood-first-issue
Dificultad 3/5 1-2 días Aptitud para principiantes 78/100
NVIDIA/gpu-operator#2990 ·
Los mantenedores suelen responder en 1 día
-
Indicate number of nodes that an NVIDIADriver CR matchesPosiblemente ocupada @mrhillsman la tomó hace 7 días. Abiertodsx-ws-0930 good-first-issue
NVIDIA/gpu-operator#2980 · 2 comentarios · 1 asignado ·
Los mantenedores suelen responder en 1 día
Todos los issues de NVIDIA/gpu-operator
Issues similares
-
automation models
Dificultad 2/5 1-3 horas Aptitud para principiantes 72/100
Los mantenedores suelen responder en 1 día
-
Bug pulumi/pulumi
Dificultad 2/5 1-3 horas Aptitud para principiantes 72/100
Los mantenedores suelen responder en 1 día
-
bug
Dificultad 1/5 Menos de una hora Aptitud para principiantes 74/100
GoogleCloudPlatform/cluster-toolkit#6437 ·
Los mantenedores suelen responder en 2 días
-
Dificultad 2/5 1-3 horas Aptitud para principiantes 76/100
stripe/stripe-cli#2130 ·
Los mantenedores suelen responder en 1 día
-
Linux notifications: the default action's ' ' label shows as a blank button in xfce4-notifydAbierto
Dificultad 2/5 1-3 horas Aptitud para principiantes 72/100
kovidgoyal/kitty#10625 ·
Los mantenedores suelen responder en 1 día