1
0
mirror of synced 2026-01-05 12:07:35 -05:00
Commit Graph

73 Commits

Author SHA1 Message Date
Courtney Wilson
f6fcf20006 Merge branch 'main' into patch-1 2022-11-11 09:46:41 -06:00
Felicity Chapman
b617c4a7a1 Improve comments for code security variables (#32445) 2022-11-11 09:31:37 +00:00
Per Eriksson
06ce170829 typo 2022-11-10 20:12:28 +01:00
Per Eriksson
7a3d63e202 merge notes 2022-11-10 20:12:28 +01:00
Laura Coursen
7331cff24c Add 💅 2022-11-10 20:12:28 +01:00
Per Eriksson
2b436719d1 passing secrets to reusable workflows 2022-11-10 20:12:28 +01:00
Martin Lopes
c0ea72f4dc Switch example.lab to example.com (#32500)
Co-authored-by: Laura Coursen <lecoursen@github.com>
2022-11-10 18:55:20 +00:00
eeSquared
e7536fcdd9 Add a security disclaimer about Actions VMs (#31797)
Co-authored-by: Lucas Costi <lucascosti@users.noreply.github.com>
2022-10-28 03:29:00 +00:00
mischa
df2b43d5f3 Add redirect for old GitHub docs link managing Actions secret (#32014)
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
2022-10-26 15:20:45 +00:00
Rachael Sewell
3e998f61d5 use azure blob storage for archived enterprise versions (#31883)
Co-authored-by: Laura Coursen <lecoursen@github.com>
Co-authored-by: mchammer01 <42146119+mchammer01@users.noreply.github.com>
2022-10-25 12:03:38 -07:00
Sarah Edwards
dac4144086 PAT v2 beta (#31013)
Co-authored-by: Hirsch Singhal <1666363+hpsin@users.noreply.github.com>
Co-authored-by: Jovel Crisostomo <jovel@github.com>
Co-authored-by: Lucas Costi <lucascosti@users.noreply.github.com>
Co-authored-by: Vanessa <vgrl@github.com>
2022-10-18 15:11:04 +00:00
Jacob Marks
52cdba7019 Fix hyperlink
URL pointing to stale/non-existent anchor `#self-hosted-runner-security-with-public-repositories`.
2022-10-08 16:43:25 +10:00
Dev Prakash Sharma
fdb5e95bca Merge branch 'main' into codewithdev-changes 2022-10-03 00:29:29 +05:30
Dev Prakash Sharma
b72f008d85 Remove the emphasize tags and updated attributes style 2022-10-03 00:21:32 +05:30
Sarah Schneider
b7f48ea2c1 Support GHAE internal-only semantic versioning (#29178)
Co-authored-by: Peter Bengtsson <mail@peterbe.com>
Co-authored-by: Matt Pollard <mattpollard@users.noreply.github.com>
2022-09-22 08:26:58 +02:00
Matt Pollard
705db496eb Remove lightweight feature flags for features with no concrete GitHub AE target (#30660) 2022-09-14 07:44:32 +00:00
Matt Pollard
77d630f066 Toggle lightweight feature flags missed for the GitHub AE 3.3 release (#30659) 2022-09-14 07:20:46 +00:00
Matthias Linhuber
6bad6a737e Add initial change again 2022-07-15 12:49:41 +02:00
Courtney Wilson
8b4aceb96a Merge branch 'main' into patch-2 2022-07-13 15:18:24 -04:00
Hector Alfaro
95e6f3d3ab Deprecate GHES 3.1 (#28798)
* add 3.1 to deprecated versions

* rewrite img src to use azure blob storage in archive script

Co-authored-by: rachmari <rachmari@users.noreply.github.com>

* remove static files for ghes 3.1

* remove liquid conditionals and content for ghes 3.1

* remove outdated hardware reqs reusable

* Fix liquid conditional uncaught by script

* Close liquid conditionals missed by script

* Apply @mattpollard's suggestions

Co-authored-by: Matt Pollard <mattpollard@users.noreply.github.com>

Co-authored-by: rachmari <rachmari@users.noreply.github.com>
Co-authored-by: Matt Pollard <mattpollard@users.noreply.github.com>
2022-07-11 21:17:09 +00:00
Matthias Linhuber
2e971a71cb Fix job name in example code 2022-07-07 16:59:02 +02:00
titanism
f356acaee1 fix: fixed Actions large secret instructions and added warning (#18603)
Co-authored-by: Lucas Costi <lucascosti@users.noreply.github.com>
2022-06-17 16:11:18 +10:00
Sarah Schneider
f44578572c Ran script/content-migrations/convert-if-to-ifversion.js 2022-06-06 18:13:12 -04:00
Jan Macku
dfe6a234a2 Remove extra whitespace character 2022-05-23 14:33:17 +02:00
Jeroen Rietveld
4eff415d9b Actions PR approval permissions (#27527)
Co-authored-by: Lucas Costi <lucascosti@users.noreply.github.com>
2022-05-13 07:01:22 +00:00
Matt Pollard
dedbaa7831 GitHub Enterprise Server 3.5 release candidate (#26792) 2022-05-10 18:30:14 +02:00
Sophie
ac4c64b683 Merge branch 'main' into sophie-6156-content 2022-04-13 09:14:13 +02:00
Mounil Shah
b588d2ec14 Add warning for write level rights with regards to repo secrets (#15553) 2022-04-06 19:06:47 +00:00
Matt Pollard
30f2b92798 Merge branch 'main' into sophie-6156-content 2022-04-06 13:53:40 +02:00
Vanessa
7e273971d3 Restructure and update enterprise-level audit log articles (#25526)
Co-authored-by: Laura Coursen <lecoursen@github.com>
2022-04-06 13:33:14 +10:00
Lucas Costi
b49c768777 Version actions for GHES, use reusables (#26004)
Co-authored-by: Kevin Heis <heiskr@users.noreply.github.com>
Co-authored-by: Sarah Edwards <skedwards88@github.com>
2022-04-01 09:36:17 +10:00
Matt Pollard
6382d05d89 Merge branch 'main' into sophie-6156-content 2022-03-21 11:05:49 +01:00
Brendon Smith
06cf952123 Document how to use secrets with if: conditionals in GitHub Actions workflows (#12722)
* 🔒 Document how to use secrets with `if:`

github/docs#6861
github/docs#12722

- Add a complete workflow example to `jobs.<job_id>.steps[*].if`,
  demonstrating how to skip a step if a secret is not present
- Add an explanation to "Using encrypted secrets in a workflow"
- Cross-reference the two pages

* 🔒 Compare secrets with empty strings in `if:`

github/docs#6861
https://github.com/github/docs/pull/12722#discussion_r801011000

Rather than referencing two secrets:

1. `${{ secrets.SECRET_IS_SET }}`
2. `${{ secrets.SECRET_IS_NOT_SET }}`)

This commit will update the related section of the docs to reference a
single secret (`${{ secrets.SECRET_IS_SET }}`), and will update the
`if:` conditionals to compare with empty strings as suggested.

* 🔒 Add missing `{% raw %}`/`{% endraw %}`

github/docs#6861
github/docs#12722

Some `${{ }}` values were converted to `$` in the preview environment.
Adding `{% raw %}`/`{% endraw %}` will preserve the raw value.

* 🔒 Match variable and secret names in examples

github/docs#6861
https://github.com/github/docs/pull/12722#discussion_r801011000

This PR adds an example of how to use secrets with `if:` conditionals.
The reviewer suggested comparing variable values with empty strings to
make the `if:` conditionals clearer.

Commit cecdf00 updated the secret names accordingly, but the names of
the secret and environment variable may still have been confusing.

This commit will update the secret and environment variable names to
match the cross-referenced example on the "Encrypted secrets" page.

* Update content/actions/using-workflows/workflow-syntax-for-github-actions.md

Co-authored-by: hubwriter <hubwriter@github.com>
2022-03-18 14:20:40 +00:00
Sophie
18edb677c9 Merge branch 'main' into sophie-6156-content 2022-03-17 09:25:19 +01:00
Sophie
74ba23bec7 Change instances of user account to personal account in content 2022-03-16 15:18:37 +01:00
Jenni Christensen
fa2d1c17d6 Merge branch 'main' into dihydroJen-1 2022-03-15 17:13:08 -07:00
Sarah Edwards
a1aad9333b Restrict workflow access to runner groups (#25463) 2022-03-10 11:10:19 -08:00
Matt Pollard
d2012d5f8e Add guide for enterprise-level self-hosted runners with GitHub Actions (#25123) 2022-03-04 10:46:10 +01:00
Robert Sese
79c48070c4 Deprecate 3.0 (#25646)
* Deprecate 3.0

* 3.0 deprecation: remove 3.0 markup (#25647)

* Remove liquid conditionals and content for 3.0 deprecation

* Remove manually, no longer versioned in a supported version

* Remove translations manually, no longer versioned in a supported version

* Remove 'if', now in all supported versions

* Remove dangling 'elseif', now in all supported versions

* Remove dangling 'elseif' and 3.0 screenshot reference, now in all supported versions

* Nudge to latest supported GHES version

* Nudge to latest supported release GHES version

* Bump all the version for the liquid tests

* Bump first deprecated version for linting tests

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Prefer double quotes

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Remove extra newline

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Remove extra newline

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Remove extra newline

Co-authored-by: Laura Coursen <lecoursen@github.com>

* One reusable per line

Co-authored-by: Laura Coursen <lecoursen@github.com>

* One reusable per line

Co-authored-by: Laura Coursen <lecoursen@github.com>

* One reusable per line

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Stray whitespace ✂️

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Version check not needed anymore

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Just 'ghes' since we're deprecating 3.0

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Don't depend on hardcoded versions

Co-authored-by: Laura Coursen <lecoursen@github.com>

* Remove static files for 3.0 deprecation (#25649)

Co-authored-by: Laura Coursen <lecoursen@github.com>
2022-03-03 13:08:24 -06:00
Sophie
1c75866f18 Merge branch 'main' into sophie-5758 2022-03-01 09:13:10 +01:00
Kensuke Nagae
50ba9909ab Add or ghec (#25698)
Fixes https://github.com/github/docs-content/issues/6400.

Co-authored-by: Laura Coursen <lecoursen@github.com>
2022-02-28 08:51:20 -06:00
Sophie
50c0b2d0b0 Removed duplicate actions reusable folder 2022-02-25 15:51:14 +01:00
Jenni Christensen
07a39ba4a3 Added GitHub Token expiration information 2022-02-24 09:09:14 -08:00
Edward Thomson
c77620d3d3 actions: update id-token default permissions to read (#25293)
Co-authored-by: hubwriter <hubwriter@github.com>
2022-02-22 20:01:27 +00:00
mc
a9bb8cbfd5 [Ready for merging on Feb 22] - GHAS starter workflows (#24873)
* empty commit

* document starter workflows

* adds procedural and removes availability section

* more work

* update actions docs

* added versioning that disappeared mysteriously

* remove spurious emtpy line

* remove unused endif?

* having fun with versioning

* hmm versioning hmm

* finally fix versioning

* add missing full stop

* start addressing comments

* address more comments

* address further comments

* Update content/get-started/learning-about-github/about-github-advanced-security.md

Co-authored-by: Felicity Chapman <felicitymay@github.com>

* add everything to the same paragraph

* remove CodeQL section

* Optimize images

* add note + content to GitHub Actions articles

* address review comments

Co-authored-by: Jules Parker <19994093+jules-p@users.noreply.github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: github-actions <github-actions@github.com>
Co-authored-by: hubwriter <hubwriter@github.com>
2022-02-22 17:16:40 +00:00
mc
b3b5ccb9dc CodeQL section removal (#25335)
* remove CodeQL section
2022-02-15 21:00:42 +00:00
Martin Lopes
cca7f3fbd3 Add versioning for id-token setting (#25212) 2022-02-10 15:40:47 +10:00
Varun Sharma
8c3524acf4 Update security-hardening-for-github-actions.md
Added a link to scorecard repo, and modified "makes a number of checks" to "runs a number of checks"
2022-02-07 15:35:34 -08:00
Varun Sharma
c842b23ff3 Update content/actions/security-guides/security-hardening-for-github-actions.md
Thanks for the suggestion...

Co-authored-by: Edward Thomson <ethomson@github.com>
2022-02-07 12:09:59 -08:00
Varun Sharma
691b0d2d78 Revert earlier changes
First commit had included scorecards within token permissions. New commit adds it as a new section. So reverting changes from first commit.
2022-02-02 12:20:35 -08:00