Levelrail v0.2.0-beta.7
NOTE
This is a pre-release on the beta channel. Pin this exact version for anything you care about staying still.
What's changed
Features
Security
Maintenance, CI, and dependency updates (1)
Install
Fresh install on a Linux host, pinned to this release:
curl -fsSL https://raw.githubusercontent.com/glincker/levelrail/main/install.sh | sudo env LEVELRAIL_VERSION=v0.2.0-beta.7 shUpgrade an existing install in place (keeps the unit file and data):
curl -fsSL https://raw.githubusercontent.com/glincker/levelrail/main/install.sh | sudo env LEVELRAIL_VERSION=v0.2.0-beta.7 sh -s upgradeDocker Compose: pin the image tag in docker-compose.yml:
services:
levelrail:
image: ghcr.io/glincker/levelrail:v0.2.0-beta.7Container images
Multi-arch (linux/amd64, linux/arm64), signed with cosign, SBOM and provenance attached. Also tagged beta at release time (moving tags).
| Image | Tag | Digest |
|---|---|---|
ghcr.io/glincker/levelrail | v0.2.0-beta.7 | sha256:047e6971b67ffde2a233eefcd5d2759000becfe522309b4567690be38cc31cb1 |
ghcr.io/glincker/levelrail-agent | v0.2.0-beta.7 | sha256:493a0fa474cafefd7726191932affdad2c86d2816250043bd106efa459354935 |
Verify
Binaries: check downloads against checksums.txt:
gh release download v0.2.0-beta.7 --repo glincker/levelrail --pattern 'levelrail-linux-amd64' --pattern checksums.txt
sha256sum --ignore-missing -c checksums.txtImages: verify the keyless signature was made by this repository's release workflow:
cosign verify ghcr.io/glincker/levelrail@sha256:047e6971b67ffde2a233eefcd5d2759000becfe522309b4567690be38cc31cb1 \
--certificate-identity-regexp '^https://github\.com/glincker/levelrail/\.github/workflows/release\.yml@refs/(heads/main|tags/v.+)$' \
--certificate-oidc-issuer https://token.actions.githubusercontent.comContributors
Thanks to @thegdsks.
Full changelog: v0.2.0-beta.6...v0.2.0-beta.7 | Release page | Installing | Upgrading | Verifying signatures