From 66864c13694e2b153cb74c5d26ddf2ee6ff5d2b1 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 21 Sep 2026 18:46:17 +0000 Subject: [PATCH] deps: bump the go-minor-patch group across 1 directory with 8 updates Bumps the go-minor-patch group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/aws/aws-sdk-go-v2/config](https://github.com/aws/aws-sdk-go-v2) | `1.33.4` | `1.33.5` | | [github.com/aws/aws-sdk-go-v2/credentials](https://github.com/aws/aws-sdk-go-v2) | `1.20.4` | `1.20.5` | | [github.com/aws/aws-sdk-go-v2/service/s3](https://github.com/aws/aws-sdk-go-v2) | `1.113.0` | `1.113.1` | | [github.com/hashicorp/consul/api](https://github.com/hashicorp/consul) | `1.34.4` | `1.34.5` | | [github.com/mattn/go-shellwords](https://github.com/mattn/go-shellwords) | `1.0.14` | `1.0.15` | | [github.com/onsi/ginkgo/v2](https://github.com/onsi/ginkgo) | `2.32.2` | `2.33.0` | | [github.com/onsi/gomega](https://github.com/onsi/gomega) | `1.43.0` | `1.43.1` | | [google.golang.org/api](https://github.com/googleapis/google-api-go-client) | `0.297.0` | `0.298.0` | Updates `github.com/aws/aws-sdk-go-v2/config` from 1.33.4 to 1.33.5 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](https://github.com/aws/aws-sdk-go-v2/compare/config/v1.33.4...config/v1.33.5) Updates `github.com/aws/aws-sdk-go-v2/credentials` from 1.20.4 to 1.20.5 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](https://github.com/aws/aws-sdk-go-v2/compare/service/mq/v1.20.4...service/mq/v1.20.5) Updates `github.com/aws/aws-sdk-go-v2/service/s3` from 1.113.0 to 1.113.1 - [Release notes](https://github.com/aws/aws-sdk-go-v2/releases) - [Commits](https://github.com/aws/aws-sdk-go-v2/compare/service/s3/v1.113.0...service/s3/v1.113.1) Updates `github.com/hashicorp/consul/api` from 1.34.4 to 1.34.5 - [Release notes](https://github.com/hashicorp/consul/releases) - [Changelog](https://github.com/hashicorp/consul/blob/main/CHANGELOG.md) - [Commits](https://github.com/hashicorp/consul/compare/api/v1.34.4...api/v1.34.5) Updates `github.com/mattn/go-shellwords` from 1.0.14 to 1.0.15 - [Release notes](https://github.com/mattn/go-shellwords/releases) - [Commits](https://github.com/mattn/go-shellwords/compare/v1.0.14...v1.0.15) Updates `github.com/onsi/ginkgo/v2` from 2.32.2 to 2.33.0 - [Release notes](https://github.com/onsi/ginkgo/releases) - [Changelog](https://github.com/onsi/ginkgo/blob/master/CHANGELOG.md) - [Commits](https://github.com/onsi/ginkgo/compare/v2.32.2...v2.33.0) Updates `github.com/onsi/gomega` from 1.43.0 to 1.43.1 - [Release notes](https://github.com/onsi/gomega/releases) - [Changelog](https://github.com/onsi/gomega/blob/master/CHANGELOG.md) - [Commits](https://github.com/onsi/gomega/compare/v1.43.0...v1.43.1) Updates `google.golang.org/api` from 0.297.0 to 0.298.0 - [Release notes](https://github.com/googleapis/google-api-go-client/releases) - [Changelog](https://github.com/googleapis/google-api-go-client/blob/main/CHANGES.md) - [Commits](https://github.com/googleapis/google-api-go-client/compare/v0.297.0...v0.298.0) --- updated-dependencies: - dependency-name: github.com/aws/aws-sdk-go-v2/config dependency-version: 1.33.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-minor-patch - dependency-name: github.com/aws/aws-sdk-go-v2/credentials dependency-version: 1.20.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-minor-patch - dependency-name: github.com/aws/aws-sdk-go-v2/service/s3 dependency-version: 1.113.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-minor-patch - dependency-name: github.com/hashicorp/consul/api dependency-version: 1.34.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-minor-patch - dependency-name: github.com/mattn/go-shellwords dependency-version: 1.0.15 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-minor-patch - dependency-name: github.com/onsi/ginkgo/v2 dependency-version: 2.33.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-minor-patch - dependency-name: github.com/onsi/gomega dependency-version: 1.43.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: go-minor-patch - dependency-name: google.golang.org/api dependency-version: 0.298.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: go-minor-patch ... Signed-off-by: dependabot[bot] --- go.mod | 18 +- go.sum | 40 ++-- .../aws/aws-sdk-go-v2/config/CHANGELOG.md | 4 + .../config/go_module_metadata.go | 2 +- .../aws-sdk-go-v2/credentials/CHANGELOG.md | 4 + .../credentials/go_module_metadata.go | 2 +- .../aws/aws-sdk-go-v2/service/s3/CHANGELOG.md | 4 + .../service/s3/api_op_CopyObject.go | 6 +- .../s3/api_op_CreateMultipartUpload.go | 6 +- .../service/s3/api_op_PutObject.go | 6 +- .../service/s3/go_module_metadata.go | 2 +- .../aws-sdk-go-v2/service/s3/types/types.go | 13 +- .../aws-sdk-go-v2/service/sts/CHANGELOG.md | 4 + .../service/sts/api_op_AssumeRole.go | 16 ++ .../service/sts/api_op_AssumeRoleWithSAML.go | 16 ++ .../sts/api_op_AssumeRoleWithWebIdentity.go | 16 ++ .../service/sts/api_op_AssumeRoot.go | 14 ++ .../sts/api_op_GetDelegatedAccessToken.go | 2 + .../service/sts/api_op_GetFederationToken.go | 16 ++ .../service/sts/api_op_GetSessionToken.go | 14 ++ .../service/sts/api_op_GetWebIdentityToken.go | 2 + .../service/sts/deserializers.go | 204 ++++++++++++++++++ .../aws/aws-sdk-go-v2/service/sts/doc.go | 27 ++- .../service/sts/go_module_metadata.go | 2 +- .../aws-sdk-go-v2/service/sts/serializers.go | 30 +++ vendor/github.com/aws/smithy-go/AGENTS.md | 173 +++++++++++++++ .../github.com/hashicorp/consul/api/agent.go | 80 +++++++ .../hashicorp/consul/api/config_entry.go | 6 + .../consul/api/config_entry_gateways.go | 26 ++- .../consul/api/config_entry_routes.go | 7 +- .../consul/api/operator_feature_gate.go | 104 +++++++++ .../mattn/go-shellwords/shellwords.go | 2 +- vendor/github.com/onsi/ginkgo/v2/.gitignore | 3 +- vendor/github.com/onsi/ginkgo/v2/CHANGELOG.md | 16 ++ vendor/github.com/onsi/ginkgo/v2/README.md | 7 +- vendor/github.com/onsi/ginkgo/v2/RELEASING.md | 108 ++++++++-- .../onsi/ginkgo/v2/reporters/junit_report.go | 17 ++ .../onsi/ginkgo/v2/types/version.go | 2 +- vendor/github.com/onsi/gomega/.gitignore | 3 +- vendor/github.com/onsi/gomega/CHANGELOG.md | 14 ++ vendor/github.com/onsi/gomega/README.md | 7 +- vendor/github.com/onsi/gomega/RELEASING.md | 166 ++++++++++++-- vendor/github.com/onsi/gomega/gomega_dsl.go | 2 +- .../google.golang.org/api/internal/version.go | 2 +- vendor/modules.txt | 22 +- 45 files changed, 1118 insertions(+), 119 deletions(-) create mode 100644 vendor/github.com/aws/smithy-go/AGENTS.md create mode 100644 vendor/github.com/hashicorp/consul/api/operator_feature_gate.go diff --git a/go.mod b/go.mod index 375d20b51..29b6cbeee 100644 --- a/go.mod +++ b/go.mod @@ -5,27 +5,27 @@ go 1.27.1 require ( github.com/ErikDubbelboer/gspt v0.0.0-20210805194459-ce36a5128377 github.com/aws/aws-sdk-go-v2 v1.47.0 - github.com/aws/aws-sdk-go-v2/config v1.33.4 - github.com/aws/aws-sdk-go-v2/credentials v1.20.4 - github.com/aws/aws-sdk-go-v2/service/s3 v1.113.0 + github.com/aws/aws-sdk-go-v2/config v1.33.5 + github.com/aws/aws-sdk-go-v2/credentials v1.20.5 + github.com/aws/aws-sdk-go-v2/service/s3 v1.113.1 github.com/cloudfoundry-community/vaultkv v0.7.2 github.com/fsouza/go-dockerclient v1.13.3 github.com/go-sql-driver/mysql v1.10.1 github.com/goccy/go-yaml v1.19.2 github.com/google/go-github/v76 v76.0.0 github.com/gorilla/websocket v1.5.3 - github.com/hashicorp/consul/api v1.34.4 + github.com/hashicorp/consul/api v1.34.5 github.com/jackc/pgx/v5 v5.11.0 github.com/jhunt/go-ansi v0.0.0-20181127194324-5fd839f108b6 github.com/jhunt/go-envirotron v0.0.0-20191007155228-c8f2a184ad0f github.com/jhunt/go-table v0.0.0-20181127210244-68a841ca53dc github.com/mattn/go-isatty v0.0.24 - github.com/mattn/go-shellwords v1.0.14 + github.com/mattn/go-shellwords v1.0.15 github.com/mattn/go-sqlite3 v1.14.52 github.com/ncw/swift v1.0.53 github.com/okta/okta-jwt-verifier-golang v1.3.1 - github.com/onsi/ginkgo/v2 v2.32.2 - github.com/onsi/gomega v1.43.0 + github.com/onsi/ginkgo/v2 v2.33.0 + github.com/onsi/gomega v1.43.1 github.com/pborman/uuid v1.2.1 github.com/prometheus/client_golang v1.24.1 github.com/spf13/cobra v1.10.2 @@ -34,7 +34,7 @@ require ( golang.org/x/crypto v0.57.0 golang.org/x/net v0.59.0 golang.org/x/oauth2 v0.37.0 - google.golang.org/api v0.297.0 + google.golang.org/api v0.298.0 ) require ( @@ -58,7 +58,7 @@ require ( github.com/aws/aws-sdk-go-v2/service/signin v1.10.0 // indirect github.com/aws/aws-sdk-go-v2/service/sso v1.38.0 // indirect github.com/aws/aws-sdk-go-v2/service/ssooidc v1.43.0 // indirect - github.com/aws/aws-sdk-go-v2/service/sts v1.50.0 // indirect + github.com/aws/aws-sdk-go-v2/service/sts v1.51.0 // indirect github.com/aws/smithy-go v1.28.1 // indirect github.com/beorn7/perks v1.0.1 // indirect github.com/cespare/xxhash/v2 v2.3.0 // indirect diff --git a/go.sum b/go.sum index ee97b1363..690b84d65 100644 --- a/go.sum +++ b/go.sum @@ -27,10 +27,10 @@ github.com/aws/aws-sdk-go-v2 v1.47.0 h1:0jsHallhJCeaU0Ko48c/3FK1ctOQ7NpzggxriJOQ github.com/aws/aws-sdk-go-v2 v1.47.0/go.mod h1:bttEH6JqnUL8LepvDVfdrds/fZ5bCIxzpe3abyUrhDU= github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.20 h1:GPRlPwz40I2B2VrBEASOA3Bi77NyeqejNLkifosX0rs= github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream v1.7.20/go.mod h1:g7PNzKcsOKWb4fkSRBA7BZVAS6Y8IcxzN+nRohhQ1Q8= -github.com/aws/aws-sdk-go-v2/config v1.33.4 h1:FzvkXKSzwqHni4U7nDigHg4jjtqMpVUuHgmZfSoJVQ0= -github.com/aws/aws-sdk-go-v2/config v1.33.4/go.mod h1:VZqGZnZsCWVfK/iGPptJIyNIX3XEX6iQU2Rel4sLrr8= -github.com/aws/aws-sdk-go-v2/credentials v1.20.4 h1:hTvrJJseKbvw32kmiE0G+u/9ZqpqscjDrTigHIXP2qs= -github.com/aws/aws-sdk-go-v2/credentials v1.20.4/go.mod h1:gWp9O1ZBWwpcIrgV+mVHk4gZUurAEDkgypu/OXOlIaw= +github.com/aws/aws-sdk-go-v2/config v1.33.5 h1:UA1dmokBFOLFoOyVBhO6HjM6edy0MIk5AZSkJVcksQw= +github.com/aws/aws-sdk-go-v2/config v1.33.5/go.mod h1:Dop8axzz0xx38GExIYWXdeyc8QQ7Cr+nPsxpD/LYy4U= +github.com/aws/aws-sdk-go-v2/credentials v1.20.5 h1:wklUVvHMc9xTQ3rcp49/ISpiMnhbCicJcA6n6S8m7J8= +github.com/aws/aws-sdk-go-v2/credentials v1.20.5/go.mod h1:fyEdrn6ccLFOkoK84j5bQyGTxp9zPt5l2XMhxf4DVZs= github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.20.0 h1:AM4hHjww+PSFtt6E+UrBrPlZkWsePCLEt9AjkfQX+yM= github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.20.0/go.mod h1:3x/yXezeQjpOvBb4jEMxrS8SXvpdvJ5abv6l5c1gWM8= github.com/aws/aws-sdk-go-v2/internal/configsources v1.5.3 h1:Hp/VgjP0BysR3OgLlR057Vz2LcbbVnoWeJ+3qWiS/fY= @@ -47,16 +47,16 @@ github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.14.3 h1:bON1rJf67 github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.14.3/go.mod h1:c5BBpjJcQXpfeq9iASyVKA3T6vX6B6LEXY4mL/gklDY= github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.20.3 h1:L8vIOxylma91TcR96NFTEC07G3JDwSl+CvK2b+IODms= github.com/aws/aws-sdk-go-v2/service/internal/s3shared v1.20.3/go.mod h1:fmPIZQzTExYuBNWFyi1P7IoDjvskgphXqK1yObMzusM= -github.com/aws/aws-sdk-go-v2/service/s3 v1.113.0 h1:0slwIjBv1sEigSUW4EfTtNw9mbHl0PlOUPX9Y1C/eLE= -github.com/aws/aws-sdk-go-v2/service/s3 v1.113.0/go.mod h1:/uA+2Qj4jd5qBWagVC1AyzzDFXVK997E7U04w7Kw0wI= +github.com/aws/aws-sdk-go-v2/service/s3 v1.113.1 h1:cFHmwLxZPvtoAlo79MboURL2+7b0TMHycnrcf5VZNXk= +github.com/aws/aws-sdk-go-v2/service/s3 v1.113.1/go.mod h1:/uA+2Qj4jd5qBWagVC1AyzzDFXVK997E7U04w7Kw0wI= github.com/aws/aws-sdk-go-v2/service/signin v1.10.0 h1:ZD5qFpWcaOKdTuhBi431pIDkCgrMkMlMT6jlpSPoIRI= github.com/aws/aws-sdk-go-v2/service/signin v1.10.0/go.mod h1:8Nuuf+tR346PjJ3MvZPh9pekbLiLQFWJhzMXfwy7alA= github.com/aws/aws-sdk-go-v2/service/sso v1.38.0 h1:JGeeBcMlhg1xtOXYpeCaTQBZObtXMPQCUqBcmr65NRA= github.com/aws/aws-sdk-go-v2/service/sso v1.38.0/go.mod h1:XwteswG9EOMRFm73UT0t+MbTwyLxMrEXkU6e+v92Lzo= github.com/aws/aws-sdk-go-v2/service/ssooidc v1.43.0 h1:obhahQXDEdVEv8y5bTKXR30LVaxYe1kyYM0L7l2Iq+k= github.com/aws/aws-sdk-go-v2/service/ssooidc v1.43.0/go.mod h1:6twZZ/aXHNy1vXUO8koUbp++MYzMASkOgEBdkbJYmO0= -github.com/aws/aws-sdk-go-v2/service/sts v1.50.0 h1:khXV3+K5D3f4e8xtplaRdSFn1bEg3gj5EBHQvbCOZbQ= -github.com/aws/aws-sdk-go-v2/service/sts v1.50.0/go.mod h1:/8JRcdTt//hG0Q4BTmGbuOplT7ABe+5rdtqUHqXvYIM= +github.com/aws/aws-sdk-go-v2/service/sts v1.51.0 h1:Zpnqa6XtrNzXZnwbdCqHOXpXhMsa01ql/pcRQ1sb4hk= +github.com/aws/aws-sdk-go-v2/service/sts v1.51.0/go.mod h1:/8JRcdTt//hG0Q4BTmGbuOplT7ABe+5rdtqUHqXvYIM= github.com/aws/smithy-go v1.28.1 h1:R/nXH00c8qcfCzQVELtRw+eLQWtzv+VAIEFJ1/xxXlQ= github.com/aws/smithy-go v1.28.1/go.mod h1:YE2RhdIuDbA5E5bTdciG9KrW3+TiEONeUWCqxX9i1Fc= github.com/beorn7/perks v0.0.0-20180321164747-3a771d992973/go.mod h1:Dwedo/Wpr24TaqPxmxbtue+5NUziq4I4S80YR8gNf3Q= @@ -158,10 +158,10 @@ github.com/grpc-ecosystem/grpc-gateway/v2 v2.30.0 h1:/Tnpcb2E0Pz/tN9s3bfEY2Q8ePC github.com/grpc-ecosystem/grpc-gateway/v2 v2.30.0/go.mod h1:zOBXOsUaBSjKgmH4OGzV1esUpR3oUSCPYVd2cUBjKYY= github.com/hashicorp/cap v0.13.0 h1:bzLS1er9am6hOiw//TEjmwZ3t975iFfRfvXY6VRLKEw= github.com/hashicorp/cap v0.13.0/go.mod h1:Kbu5owAOJzQ/HH4Ba/76wsIXN2tRiJgToJKBO2MAEFE= -github.com/hashicorp/consul/api v1.34.4 h1:0U4YZ1Yp7K9WK9ex0gTJraFim26l02wCvsmf2ukalVE= -github.com/hashicorp/consul/api v1.34.4/go.mod h1:vz5gBNeycefpAAVNVbLBFObUu3isju6EK8UVZjXSTWc= -github.com/hashicorp/consul/sdk v0.18.1 h1:RDTeBvAeOveI2xI86sV+8WkaN7OkP4zz+cG3fOobDCM= -github.com/hashicorp/consul/sdk v0.18.1/go.mod h1:XdP2tEJmAvlK4jgoKTTtohGkRJlS4mU44mv9/sjU21s= +github.com/hashicorp/consul/api v1.34.5 h1:QpMhHZyfYsOsIu5n5QA7TQTLabM4OQJEbKi3pXXnw7U= +github.com/hashicorp/consul/api v1.34.5/go.mod h1:OrXEufkaxFy1pMIRHFrn3JkuircxMhA4BHHpbR8k+5U= +github.com/hashicorp/consul/sdk v0.18.2 h1:wMFx4OkUPg8un6kimUmzADVBsuRqUdNRtJ0KREGs7vM= +github.com/hashicorp/consul/sdk v0.18.2/go.mod h1:2V4Z2YguOFZelOtkQs3UnIrkCXDQ6iL3P4B6EtSqoQY= github.com/hashicorp/errwrap v1.0.0/go.mod h1:YH+1FKiLXxHSkmPseP+kNlulaMuP3n2brvKWEqk/Jc4= github.com/hashicorp/errwrap v1.1.0 h1:OxrOeh75EUXMY8TBjag2fzXGZ40LB6IKw45YeGUDY2I= github.com/hashicorp/errwrap v1.1.0/go.mod h1:YH+1FKiLXxHSkmPseP+kNlulaMuP3n2brvKWEqk/Jc4= @@ -263,8 +263,8 @@ github.com/mattn/go-isatty v0.0.12/go.mod h1:cbi8OIDigv2wuxKPP5vlRcQ1OAZbq2CE4Ky github.com/mattn/go-isatty v0.0.14/go.mod h1:7GGIvUiUoEMVVmxf/4nioHXj79iQHKdU27kJ6hsGG94= github.com/mattn/go-isatty v0.0.24 h1:tGZZoVgT/KiqK1c8ocVLeDS8BSWMRd47J3Lbz7vsReI= github.com/mattn/go-isatty v0.0.24/go.mod h1:nMCL3Zebbrt45jsMDgnfIwz6ydEQApk5oEI3HqDio6A= -github.com/mattn/go-shellwords v1.0.14 h1:yUKzIgsCnosndOASY6/enly1EAuaXeFSQ7cdyA3OuYg= -github.com/mattn/go-shellwords v1.0.14/go.mod h1:EZzvwXDESEeg03EKmM+RmDnNOPKG4lLtQsUlTZDWQ8Y= +github.com/mattn/go-shellwords v1.0.15 h1:rx0n8+ZdM9JWZMlr2BMPAjtLU0rfluLNtwMC2FJOTtY= +github.com/mattn/go-shellwords v1.0.15/go.mod h1:EZzvwXDESEeg03EKmM+RmDnNOPKG4lLtQsUlTZDWQ8Y= github.com/mattn/go-sqlite3 v1.14.52 h1:wVbm2Qnf4OXkqhBTSPuCRZDRnxfbVrrmiCEroVdog8U= github.com/mattn/go-sqlite3 v1.14.52/go.mod h1:6JTjA44L93a0QCyJef5YvlPoKXntQPjzWv5gtm9sB6w= github.com/matttproud/golang_protobuf_extensions v1.0.1/go.mod h1:D8He9yQNgCq6Z5Ld7szi9bcBfOoFv/3dc6xSMkL2PC0= @@ -309,10 +309,10 @@ github.com/okta/okta-jwt-verifier-golang v1.3.1 h1:V+9W5KD3nG7xN0UYtnzXtkurGcs71 github.com/okta/okta-jwt-verifier-golang v1.3.1/go.mod h1:cHffA777f7Yi4K+yDzUp89sGD5v8sk04Pc3CiT1OMR8= github.com/onsi/ginkgo v1.16.5 h1:8xi0RTUf59SOSfEtZMvwTvXYMzG4gV23XVHOZiXNtnE= github.com/onsi/ginkgo v1.16.5/go.mod h1:+E8gABHa3K6zRBolWtd+ROzc/U5bkGt0FwiG042wbpU= -github.com/onsi/ginkgo/v2 v2.32.2 h1:2o6vyFvR6snrJWgRVztC+OwuqqPEMI1UzYl2s2iU7Cg= -github.com/onsi/ginkgo/v2 v2.32.2/go.mod h1:+aXOY+vzZ5mu2iI2HpTZUPmM//oQfsNFX6gU9kNcA44= -github.com/onsi/gomega v1.43.0 h1:VlG/1FxqNxhSO+lq/OHBNaaqwiBK/mO8JbVkX9Y+FeU= -github.com/onsi/gomega v1.43.0/go.mod h1:REff/hsDsodHoKlWsP2mAPhu1+5/6hVYNf9rIEBpeSg= +github.com/onsi/ginkgo/v2 v2.33.0 h1:C8gBA6Uc2ZEubiV+SXiu5tZnMTwEmXHgkJwGozKtZf8= +github.com/onsi/ginkgo/v2 v2.33.0/go.mod h1:+aXOY+vzZ5mu2iI2HpTZUPmM//oQfsNFX6gU9kNcA44= +github.com/onsi/gomega v1.43.1 h1:vGIPFuYrIO6/0Z09s0I0QQQgFchiX4+tb1re3MScJYo= +github.com/onsi/gomega v1.43.1/go.mod h1:e/C2HwaZ1DhvjzXXuFhcR7hY7Sh9pl7MmoWKEjzwcdA= github.com/opencontainers/go-digest v1.0.0 h1:apOUWs51W5PlhuyGyz9FCeeBIOUDA/6nW8Oi/yOhh5U= github.com/opencontainers/go-digest v1.0.0/go.mod h1:0JzlMkj0TRzQZfJkVvzbP0HBR3IKzErnv2BNG4W4MAM= github.com/opencontainers/image-spec v1.1.1 h1:y0fUlFfIZhPF1W537XOLg0/fcx6zcHCJwooC2xJA040= @@ -486,8 +486,8 @@ golang.org/x/xerrors v0.0.0-20191204190536-9bdfabe68543/go.mod h1:I/5z698sn9Ka8T golang.org/x/xerrors v0.0.0-20200804184101-5ec99f83aff1/go.mod h1:I/5z698sn9Ka8TeJc9MKroUUfqBBauWjQqLJ2OPfmY0= gonum.org/v1/gonum v0.17.0 h1:VbpOemQlsSMrYmn7T2OUvQ4dqxQXU+ouZFQsZOx50z4= gonum.org/v1/gonum v0.17.0/go.mod h1:El3tOrEuMpv2UdMrbNlKEh9vd86bmQ6vqIcDwxEOc1E= -google.golang.org/api v0.297.0 h1:WktxTsnnx0yZNnsR6j0q6hR21RnnK81FHTOPy/ux4OE= -google.golang.org/api v0.297.0/go.mod h1:S4m8x0M6OkQpkOzGk1y9JG2sm4fFQrMh6dxzjCTszhE= +google.golang.org/api v0.298.0 h1:YW18RkHBMZBA1ergX0m4biagzgbiPTb2uTsRsDPWNRY= +google.golang.org/api v0.298.0/go.mod h1:02qB8+Ox1ZFzcaKFMguy1nQLJmSIyvV6Ff4txJEXtl4= google.golang.org/genproto v0.0.0-20260825221802-da73d73af1c5 h1:jPP56YzdY899KJ5W7efXHt/CkjlVfAaoFOwdi/IEAFA= google.golang.org/genproto v0.0.0-20260825221802-da73d73af1c5/go.mod h1:gutZdP0DwAHp4vu5WaXgEK7tjsJ77ZEqzlOFWGZGziE= google.golang.org/genproto/googleapis/api v0.0.0-20260908043556-f8649ddbbfe6 h1:O4Tjo2vlGeGM3+tNgwJrGj5fQHO2V71gDkFqbm328C8= diff --git a/vendor/github.com/aws/aws-sdk-go-v2/config/CHANGELOG.md b/vendor/github.com/aws/aws-sdk-go-v2/config/CHANGELOG.md index b9c8341c5..458784b8a 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/config/CHANGELOG.md +++ b/vendor/github.com/aws/aws-sdk-go-v2/config/CHANGELOG.md @@ -1,3 +1,7 @@ +# v1.33.5 (2026-09-14) + +* **Dependency Update**: Updated to the latest SDK module versions + # v1.33.4 (2026-09-09) * **Dependency Update**: Updated to the latest SDK module versions diff --git a/vendor/github.com/aws/aws-sdk-go-v2/config/go_module_metadata.go b/vendor/github.com/aws/aws-sdk-go-v2/config/go_module_metadata.go index ae91d0371..d6e615792 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/config/go_module_metadata.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/config/go_module_metadata.go @@ -3,4 +3,4 @@ package config // goModuleVersion is the tagged release for this module -const goModuleVersion = "1.33.4" +const goModuleVersion = "1.33.5" diff --git a/vendor/github.com/aws/aws-sdk-go-v2/credentials/CHANGELOG.md b/vendor/github.com/aws/aws-sdk-go-v2/credentials/CHANGELOG.md index cb4745e9c..308201cf7 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/credentials/CHANGELOG.md +++ b/vendor/github.com/aws/aws-sdk-go-v2/credentials/CHANGELOG.md @@ -1,3 +1,7 @@ +# v1.20.5 (2026-09-14) + +* **Dependency Update**: Updated to the latest SDK module versions + # v1.20.4 (2026-09-09) * **Dependency Update**: Updated to the latest SDK module versions diff --git a/vendor/github.com/aws/aws-sdk-go-v2/credentials/go_module_metadata.go b/vendor/github.com/aws/aws-sdk-go-v2/credentials/go_module_metadata.go index 4188b9e09..5557c02bc 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/credentials/go_module_metadata.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/credentials/go_module_metadata.go @@ -3,4 +3,4 @@ package credentials // goModuleVersion is the tagged release for this module -const goModuleVersion = "1.20.4" +const goModuleVersion = "1.20.5" diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/CHANGELOG.md b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/CHANGELOG.md index f6df38396..2bc2a0a8f 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/CHANGELOG.md +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/CHANGELOG.md @@ -1,3 +1,7 @@ +# v1.113.1 (2026-09-11) + +* **Documentation**: Updated S3 Object Lock Default Retention documentation. + # v1.113.0 (2026-09-09) * **Feature**: Stop registering the `retry.MetricsHeader` middleware in generated clients. The `Amz-Sdk-Request` header is now set by the retry middleware itself. diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CopyObject.go b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CopyObject.go index 690c41ab3..473bb5e3c 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CopyObject.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CopyObject.go @@ -600,12 +600,14 @@ type CopyObjectInput struct { // This functionality is not supported for directory buckets. ObjectLockEventHold types.ObjectLockEventHold - // The event hold duration in days to apply to the object copy. + // The event hold duration in days to apply to the object copy. You cannot specify + // a duration in both days and years. // // This functionality is not supported for directory buckets. ObjectLockEventHoldDurationDays *int32 - // The event hold duration in years to apply to the object copy. + // The event hold duration in years to apply to the object copy. You cannot + // specify a duration in both days and years. // // This functionality is not supported for directory buckets. ObjectLockEventHoldDurationYears *int32 diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CreateMultipartUpload.go b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CreateMultipartUpload.go index f7fa1cc50..eed46ce57 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CreateMultipartUpload.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_CreateMultipartUpload.go @@ -606,12 +606,14 @@ type CreateMultipartUploadInput struct { // This functionality is not supported for directory buckets. ObjectLockEventHold types.ObjectLockEventHold - // Specifies the event hold duration in days to apply to the uploaded object. + // Specifies the event hold duration in days to apply to the uploaded object. You + // cannot specify a duration in both days and years. // // This functionality is not supported for directory buckets. ObjectLockEventHoldDurationDays *int32 - // Specifies the event hold duration in years to apply to the uploaded object. + // Specifies the event hold duration in years to apply to the uploaded object. You + // cannot specify a duration in both days and years. // // This functionality is not supported for directory buckets. ObjectLockEventHoldDurationYears *int32 diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_PutObject.go b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_PutObject.go index 94516da79..3a3e19d80 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_PutObject.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/api_op_PutObject.go @@ -521,12 +521,14 @@ type PutObjectInput struct { // This functionality is not supported for directory buckets. ObjectLockEventHold types.ObjectLockEventHold - // Specifies the event hold duration in days to apply to this object. + // Specifies the event hold duration in days to apply to this object. You cannot + // specify a duration in both days and years. // // This functionality is not supported for directory buckets. ObjectLockEventHoldDurationDays *int32 - // Specifies the event hold duration in years to apply to this object. + // Specifies the event hold duration in years to apply to this object. You cannot + // specify a duration in both days and years. // // This functionality is not supported for directory buckets. ObjectLockEventHoldDurationYears *int32 diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/go_module_metadata.go b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/go_module_metadata.go index 71072cc60..3e3ac6893 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/go_module_metadata.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/go_module_metadata.go @@ -3,4 +3,4 @@ package s3 // goModuleVersion is the tagged release for this module -const goModuleVersion = "1.113.0" +const goModuleVersion = "1.113.1" diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/types/types.go b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/types/types.go index c712301cb..61d8b4ca7 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/s3/types/types.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/s3/types/types.go @@ -3702,10 +3702,15 @@ type ObjectLockRetention struct { // The container element for an Object Lock rule. type ObjectLockRule struct { - // The default Object Lock retention mode and period that you want to apply to new - // objects placed in the specified bucket. Bucket settings require both a mode and - // a period. The period can be either Days or Years but you must select one. You - // cannot specify Days and Years at the same time. + // The default Object Lock retention settings for new objects in this bucket. You + // can specify: + // + // - A default retention period, by using Days or Years . + // + // - A default event hold duration, by using DefaultEventHold . This setting also + // uses days or years. + // + // You can set one or both. You cannot use days and years in the same setting. DefaultRetention *DefaultRetention noSmithyDocumentSerde diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/CHANGELOG.md b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/CHANGELOG.md index f30d0308e..207ab4fd5 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/CHANGELOG.md +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/CHANGELOG.md @@ -1,3 +1,7 @@ +# v1.51.0 (2026-09-14) + +* **Feature**: Increases the maximum session token size to 4,096 bytes and removes the packed policy size limit. Adds SessionTokenSize and SessionTokenUtilization fields and a new MinimumSessionTokenSize parameter. PackedPolicySize is deprecated. + # v1.50.0 (2026-09-09) * **Feature**: Stop registering the `retry.MetricsHeader` middleware in generated clients. The `Amz-Sdk-Request` header is now set by the retry middleware itself. diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRole.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRole.go index b1cd67560..958bfaa89 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRole.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRole.go @@ -198,6 +198,12 @@ type AssumeRoleInput struct { // [How to Use an External ID When Granting Access to Your Amazon Web Services Resources to a Third Party]: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_create_for-user_externalid.html ExternalId *string + // The minimum size, in bytes, of the session token that STS issues for the + // request. STS increases the session token to at least this size, regardless of + // its actual content. The value must not exceed 4,096 bytes. When set to 0 or not + // specified, the session token size is unchanged. + MinimumSessionTokenSize *int32 + // An IAM policy in JSON format that you want to use as an inline session policy. // // This parameter is optional. Passing policies to this operation returns new @@ -385,8 +391,18 @@ type AssumeRoleOutput struct { // session tags combined passed in the request. The request fails if the packed // size is greater than 100 percent, which means the policies and tags exceeded the // allowed space. + // + // Deprecated: Deprecated. Replaced by SessionTokenUtilization. PackedPolicySize *int32 + // The size, in bytes, of the session token returned in the Credentials for this + // response. + SessionTokenSize *int32 + + // The percentage (0-100) of the maximum allowed session token size that the + // returned session token consumes. + SessionTokenUtilization *int32 + // The source identity specified by the principal that is calling the AssumeRole // operation. // diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithSAML.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithSAML.go index 10f16e165..e4050fce8 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithSAML.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithSAML.go @@ -202,6 +202,12 @@ type AssumeRoleWithSAMLInput struct { // [Creating a URL that Enables Federated Users to Access the Amazon Web Services Management Console]: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_providers_enable-console-custom-url.html DurationSeconds *int32 + // The minimum size, in bytes, of the session token that STS issues for the + // request. STS increases the session token to at least this size, regardless of + // its actual content. The value must not exceed 4,096 bytes. When set to 0 or not + // specified, the session token size is unchanged. + MinimumSessionTokenSize *int32 + // An IAM policy in JSON format that you want to use as an inline session policy. // // This parameter is optional. Passing policies to this operation returns new @@ -305,8 +311,18 @@ type AssumeRoleWithSAMLOutput struct { // session tags combined passed in the request. The request fails if the packed // size is greater than 100 percent, which means the policies and tags exceeded the // allowed space. + // + // Deprecated: Deprecated. Replaced by SessionTokenUtilization. PackedPolicySize *int32 + // The size, in bytes, of the session token returned in the Credentials for this + // response. + SessionTokenSize *int32 + + // The percentage (0-100) of the maximum allowed session token size that the + // returned session token consumes. + SessionTokenUtilization *int32 + // The value in the SourceIdentity attribute in the SAML assertion. The source // identity value persists across [chained role]sessions. // diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithWebIdentity.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithWebIdentity.go index 97f51b8be..662b45a82 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithWebIdentity.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoleWithWebIdentity.go @@ -222,6 +222,12 @@ type AssumeRoleWithWebIdentityInput struct { // [Creating a URL that Enables Federated Users to Access the Amazon Web Services Management Console]: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_roles_providers_enable-console-custom-url.html DurationSeconds *int32 + // The minimum size, in bytes, of the session token that STS issues for the + // request. STS increases the session token to at least this size, regardless of + // its actual content. The value must not exceed 4,096 bytes. When set to 0 or not + // specified, the session token size is unchanged. + MinimumSessionTokenSize *int32 + // An IAM policy in JSON format that you want to use as an inline session policy. // // This parameter is optional. Passing policies to this operation returns new @@ -320,6 +326,8 @@ type AssumeRoleWithWebIdentityOutput struct { // session tags combined passed in the request. The request fails if the packed // size is greater than 100 percent, which means the policies and tags exceeded the // allowed space. + // + // Deprecated: Deprecated. Replaced by SessionTokenUtilization. PackedPolicySize *int32 // The issuing authority of the web identity token presented. For OpenID Connect @@ -328,6 +336,14 @@ type AssumeRoleWithWebIdentityOutput struct { // the AssumeRoleWithWebIdentity request. Provider *string + // The size, in bytes, of the session token returned in the Credentials for this + // response. + SessionTokenSize *int32 + + // The percentage (0-100) of the maximum allowed session token size that the + // returned session token consumes. + SessionTokenUtilization *int32 + // The value of the source identity that is returned in the JSON web token (JWT) // from the identity provider. // diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoot.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoot.go index 8946a9bb9..c3437ca43 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoot.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_AssumeRoot.go @@ -88,6 +88,12 @@ type AssumeRootInput struct { // By default, the value is set to 900 seconds. DurationSeconds *int32 + // The minimum size, in bytes, of the session token that STS issues for the + // request. STS increases the session token to at least this size, regardless of + // its actual content. The value must not exceed 4,096 bytes. When set to 0 or not + // specified, the session token size is unchanged. + MinimumSessionTokenSize *int32 + noSmithyDocumentSerde } @@ -100,6 +106,14 @@ type AssumeRootOutput struct { // strongly recommend that you make no assumptions about the maximum size. Credentials *types.Credentials + // The size, in bytes, of the session token returned in the Credentials for this + // response. + SessionTokenSize *int32 + + // The percentage (0-100) of the maximum allowed session token size that the + // returned session token consumes. + SessionTokenUtilization *int32 + // The source identity specified by the principal that is calling the AssumeRoot // operation. // diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetDelegatedAccessToken.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetDelegatedAccessToken.go index 33370240f..d3c8543f5 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetDelegatedAccessToken.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetDelegatedAccessToken.go @@ -52,6 +52,8 @@ type GetDelegatedAccessTokenOutput struct { // The policy size is calculated as the sum of all the session policies and // permission boundaries attached to the session. If the packed size exceeds 100%, // the request fails. + // + // Deprecated: Deprecated. This field is not populated for GetDelegatedAccessToken. PackedPolicySize *int32 // Metadata pertaining to the operation's result. diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetFederationToken.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetFederationToken.go index 09e7ab30b..ce0aef697 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetFederationToken.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetFederationToken.go @@ -142,6 +142,12 @@ type GetFederationTokenInput struct { // by using root user credentials defaults to one hour. DurationSeconds *int32 + // The minimum size, in bytes, of the session token that STS issues for the + // request. STS increases the session token to at least this size, regardless of + // its actual content. The value must not exceed 4,096 bytes. When set to 0 or not + // specified, the session token size is unchanged. + MinimumSessionTokenSize *int32 + // An IAM policy in JSON format that you want to use as an inline session policy. // // You must pass an inline or managed [session policy] to this operation. You can pass a single @@ -276,8 +282,18 @@ type GetFederationTokenOutput struct { // session tags combined passed in the request. The request fails if the packed // size is greater than 100 percent, which means the policies and tags exceeded the // allowed space. + // + // Deprecated: Deprecated. Replaced by SessionTokenUtilization. PackedPolicySize *int32 + // The size, in bytes, of the session token returned in the Credentials for this + // response. + SessionTokenSize *int32 + + // The percentage (0-100) of the maximum allowed session token size that the + // returned session token consumes. + SessionTokenUtilization *int32 + // Metadata pertaining to the operation's result. ResultMetadata middleware.Metadata diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetSessionToken.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetSessionToken.go index ce0b89566..159aa08ba 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetSessionToken.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetSessionToken.go @@ -89,6 +89,12 @@ type GetSessionTokenInput struct { // Services account owners defaults to one hour. DurationSeconds *int32 + // The minimum size, in bytes, of the session token that STS issues for the + // request. STS increases the session token to at least this size, regardless of + // its actual content. The value must not exceed 4,096 bytes. When set to 0 or not + // specified, the session token size is unchanged. + MinimumSessionTokenSize *int32 + // The identification number of the MFA device that is associated with the IAM // user who is making the GetSessionToken call. Specify this value if the IAM user // has a policy that requires MFA authentication. The value is either the serial @@ -127,6 +133,14 @@ type GetSessionTokenOutput struct { // strongly recommend that you make no assumptions about the maximum size. Credentials *types.Credentials + // The size, in bytes, of the session token returned in the Credentials for this + // response. + SessionTokenSize *int32 + + // The percentage (0-100) of the maximum allowed session token size that the + // returned session token consumes. + SessionTokenUtilization *int32 + // Metadata pertaining to the operation's result. ResultMetadata middleware.Metadata diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetWebIdentityToken.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetWebIdentityToken.go index b36723d47..255f77e52 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetWebIdentityToken.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/api_op_GetWebIdentityToken.go @@ -14,6 +14,8 @@ import ( // services that support OIDC discovery. The token is signed by Amazon Web Services // STS and can be publicly verified using the verification keys published at the // issuer's JWKS endpoint. +// +// The GetWebIdentityToken API is not available on the STS Global endpoint. func (c *Client) GetWebIdentityToken(ctx context.Context, params *GetWebIdentityTokenInput, optFns ...func(*Options)) (*GetWebIdentityTokenOutput, error) { if params == nil { params = &GetWebIdentityTokenInput{} diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/deserializers.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/deserializers.go index 45e073ffd..2c8267d38 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/deserializers.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/deserializers.go @@ -2728,6 +2728,40 @@ func awsAwsquery_deserializeOpDocumentAssumeRoleOutput(v **AssumeRoleOutput, dec sv.PackedPolicySize = ptr.Int32(int32(i64)) } + case strings.EqualFold("SessionTokenSize", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenSize = ptr.Int32(int32(i64)) + } + + case strings.EqualFold("SessionTokenUtilization", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenUtilization = ptr.Int32(int32(i64)) + } + case strings.EqualFold("SourceIdentity", t.Name.Local): val, err := decoder.Value() if err != nil { @@ -2845,6 +2879,40 @@ func awsAwsquery_deserializeOpDocumentAssumeRoleWithSAMLOutput(v **AssumeRoleWit sv.PackedPolicySize = ptr.Int32(int32(i64)) } + case strings.EqualFold("SessionTokenSize", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenSize = ptr.Int32(int32(i64)) + } + + case strings.EqualFold("SessionTokenUtilization", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenUtilization = ptr.Int32(int32(i64)) + } + case strings.EqualFold("SourceIdentity", t.Name.Local): val, err := decoder.Value() if err != nil { @@ -2975,6 +3043,40 @@ func awsAwsquery_deserializeOpDocumentAssumeRoleWithWebIdentityOutput(v **Assume sv.Provider = ptr.String(xtv) } + case strings.EqualFold("SessionTokenSize", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenSize = ptr.Int32(int32(i64)) + } + + case strings.EqualFold("SessionTokenUtilization", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenUtilization = ptr.Int32(int32(i64)) + } + case strings.EqualFold("SourceIdentity", t.Name.Local): val, err := decoder.Value() if err != nil { @@ -3043,6 +3145,40 @@ func awsAwsquery_deserializeOpDocumentAssumeRootOutput(v **AssumeRootOutput, dec return err } + case strings.EqualFold("SessionTokenSize", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenSize = ptr.Int32(int32(i64)) + } + + case strings.EqualFold("SessionTokenUtilization", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenUtilization = ptr.Int32(int32(i64)) + } + case strings.EqualFold("SourceIdentity", t.Name.Local): val, err := decoder.Value() if err != nil { @@ -3366,6 +3502,40 @@ func awsAwsquery_deserializeOpDocumentGetFederationTokenOutput(v **GetFederation sv.PackedPolicySize = ptr.Int32(int32(i64)) } + case strings.EqualFold("SessionTokenSize", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenSize = ptr.Int32(int32(i64)) + } + + case strings.EqualFold("SessionTokenUtilization", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenUtilization = ptr.Int32(int32(i64)) + } + default: // Do nothing and ignore the unexpected tag element err = decoder.Decoder.Skip() @@ -3408,6 +3578,40 @@ func awsAwsquery_deserializeOpDocumentGetSessionTokenOutput(v **GetSessionTokenO return err } + case strings.EqualFold("SessionTokenSize", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenSize = ptr.Int32(int32(i64)) + } + + case strings.EqualFold("SessionTokenUtilization", t.Name.Local): + val, err := decoder.Value() + if err != nil { + return err + } + if val == nil { + break + } + { + xtv := string(val) + i64, err := strconv.ParseInt(xtv, 10, 64) + if err != nil { + return err + } + sv.SessionTokenUtilization = ptr.Int32(int32(i64)) + } + default: // Do nothing and ignore the unexpected tag element err = decoder.Decoder.Skip() diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/doc.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/doc.go index cbb19c7f6..97efe4f93 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/doc.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/doc.go @@ -5,9 +5,30 @@ // // # Security Token Service // -// Security Token Service (STS) enables you to request temporary, -// limited-privilege credentials for users. This guide provides descriptions of the -// STS API. For more information about using this service, see [Temporary Security Credentials]. +// Amazon Web Services provides Security Token Service (STS) as a web service that +// enables you to request temporary, limited-privilege credentials for users. This +// guide describes the STS API. For more information, see [Temporary Security Credentials]in the IAM User Guide. +// +// As an alternative to using the API, you can use one of the Amazon Web Services +// SDKs, which consist of libraries and sample code for various programming +// languages and platforms such as Java, Ruby, .NET, iOS, Android, and others. The +// SDKs provide a convenient way to create programmatic access to STS. For example, +// the SDKs can cryptographically sign requests, manage errors, and retry requests +// automatically. For information about the Amazon Web Services SDKs, see [Tools to Build on Amazon Web Services]. +// +// For information about setting up signatures and authorization through the API, +// see [Signing Amazon Web Services API Requests]in the Amazon Web Services General Reference. For general information about +// the Query API, see [Making Query Requests]in the IAM User Guide. For information about using security +// tokens with other Amazon Web Services products, see [Amazon Web Services Services That Work with IAM]in the IAM User Guide. +// +// For information about STS endpoints, see [STS Regions and endpoints] in the IAM User Guide. For +// information about logging STS API calls, see [Logging IAM and STS API calls with CloudTrail]in the IAM User Guide. // // [Temporary Security Credentials]: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp.html +// [Making Query Requests]: https://docs.aws.amazon.com/IAM/latest/UserGuide/IAM_UsingQueryAPI.html +// [Tools to Build on Amazon Web Services]: http://aws.amazon.com/tools/ +// [Amazon Web Services Services That Work with IAM]: https://docs.aws.amazon.com/IAM/latest/UserGuide/reference_aws-services-that-work-with-iam.html +// [STS Regions and endpoints]: https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_temp_region-endpoints.html +// [Logging IAM and STS API calls with CloudTrail]: https://docs.aws.amazon.com/IAM/latest/UserGuide/cloudtrail-integration.html +// [Signing Amazon Web Services API Requests]: https://docs.aws.amazon.com/general/latest/gr/signing_aws_api_requests.html package sts diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/go_module_metadata.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/go_module_metadata.go index 8ca9182fe..f702133e1 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/go_module_metadata.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/go_module_metadata.go @@ -3,4 +3,4 @@ package sts // goModuleVersion is the tagged release for this module -const goModuleVersion = "1.50.0" +const goModuleVersion = "1.51.0" diff --git a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/serializers.go b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/serializers.go index 5e2273878..e361a3661 100644 --- a/vendor/github.com/aws/aws-sdk-go-v2/service/sts/serializers.go +++ b/vendor/github.com/aws/aws-sdk-go-v2/service/sts/serializers.go @@ -897,6 +897,11 @@ func awsAwsquery_serializeOpDocumentAssumeRoleInput(v *AssumeRoleInput, value qu objectKey.String(*v.ExternalId) } + if v.MinimumSessionTokenSize != nil { + objectKey := object.Key("MinimumSessionTokenSize") + objectKey.Integer(*v.MinimumSessionTokenSize) + } + if v.Policy != nil { objectKey := object.Key("Policy") objectKey.String(*v.Policy) @@ -967,6 +972,11 @@ func awsAwsquery_serializeOpDocumentAssumeRoleWithSAMLInput(v *AssumeRoleWithSAM objectKey.Integer(*v.DurationSeconds) } + if v.MinimumSessionTokenSize != nil { + objectKey := object.Key("MinimumSessionTokenSize") + objectKey.Integer(*v.MinimumSessionTokenSize) + } + if v.Policy != nil { objectKey := object.Key("Policy") objectKey.String(*v.Policy) @@ -1006,6 +1016,11 @@ func awsAwsquery_serializeOpDocumentAssumeRoleWithWebIdentityInput(v *AssumeRole objectKey.Integer(*v.DurationSeconds) } + if v.MinimumSessionTokenSize != nil { + objectKey := object.Key("MinimumSessionTokenSize") + objectKey.Integer(*v.MinimumSessionTokenSize) + } + if v.Policy != nil { objectKey := object.Key("Policy") objectKey.String(*v.Policy) @@ -1050,6 +1065,11 @@ func awsAwsquery_serializeOpDocumentAssumeRootInput(v *AssumeRootInput, value qu objectKey.Integer(*v.DurationSeconds) } + if v.MinimumSessionTokenSize != nil { + objectKey := object.Key("MinimumSessionTokenSize") + objectKey.Integer(*v.MinimumSessionTokenSize) + } + if v.TargetPrincipal != nil { objectKey := object.Key("TargetPrincipal") objectKey.String(*v.TargetPrincipal) @@ -1117,6 +1137,11 @@ func awsAwsquery_serializeOpDocumentGetFederationTokenInput(v *GetFederationToke objectKey.Integer(*v.DurationSeconds) } + if v.MinimumSessionTokenSize != nil { + objectKey := object.Key("MinimumSessionTokenSize") + objectKey.Integer(*v.MinimumSessionTokenSize) + } + if v.Name != nil { objectKey := object.Key("Name") objectKey.String(*v.Name) @@ -1153,6 +1178,11 @@ func awsAwsquery_serializeOpDocumentGetSessionTokenInput(v *GetSessionTokenInput objectKey.Integer(*v.DurationSeconds) } + if v.MinimumSessionTokenSize != nil { + objectKey := object.Key("MinimumSessionTokenSize") + objectKey.Integer(*v.MinimumSessionTokenSize) + } + if v.SerialNumber != nil { objectKey := object.Key("SerialNumber") objectKey.String(*v.SerialNumber) diff --git a/vendor/github.com/aws/smithy-go/AGENTS.md b/vendor/github.com/aws/smithy-go/AGENTS.md new file mode 100644 index 000000000..de1e3b2bb --- /dev/null +++ b/vendor/github.com/aws/smithy-go/AGENTS.md @@ -0,0 +1,173 @@ +# AGENTS.md + +## Project overview + +smithy-go is the Go code generator and runtime for [Smithy](https://smithy.io/). +It has two major components: + +1. **Codegen** (`codegen/`) — A Smithy build plugin written in Java that + generates Go client/server/shape code from Smithy models. +2. **Runtime** (`./`, top-level Go module) — The Go packages that generated + code depends on at runtime. + +The primary downstream consumer is +[aws-sdk-go-v2](https://github.com/aws/aws-sdk-go-v2). + +## Repository layout + +``` +. # Root Go module (github.com/aws/smithy-go) +├── auth/ # Auth identity + scheme interfaces +│ └── bearer/ # Bearer token auth +├── aws-http-auth/ # Separate module: AWS SigV4/SigV4A HTTP signing +├── codegen/ # Java/Gradle: Smithy code generator +│ ├── smithy-go-codegen/ # Main codegen source (Java) +│ └── smithy-go-codegen-test/ # Codegen integration tests +├── container/ # Generic container types +├── context/ # Context helpers +├── document/ # Smithy document type abstraction +│ └── json/ # JSON document codec +├── encoding/ # Wire format encoders/decoders +│ ├── cbor/ # CBOR (used by rpcv2Cbor) +│ ├── httpbinding/ # HTTP binding serde helpers +│ ├── json/ # JSON encoder/decoder +│ └── xml/ # XML encoder/decoder +├── endpoints/ # Endpoint resolution types +├── internal/ # Internal utilities (singleflight, etc.) +├── io/ # I/O helpers +├── logging/ # Logging interfaces +├── metrics/ # Metrics interfaces +│ └── smithyotelmetrics/ # Separate module: OpenTelemetry metrics adapter +├── middleware/ # Middleware stack (the core of the operation pipeline) +├── ptr/ # Pointer-to/from-value helpers +├── testing/ # Test assertion helpers for generated protocol tests +│ └── xml/ # XML comparison utilities +├── time/ # Smithy timestamp format helpers +├── tracing/ # Tracing interfaces +│ └── smithyoteltracing/ # Separate module: OpenTelemetry tracing adapter +└── transport/ + └── http/ # HTTP request/response types and middleware +``` + +## Building and testing + +### Runtime (Go) + +```bash +# Run unit tests +make unit +``` + +### Codegen (Java) + +```bash +# Build and test codegen +cd codegen && ./gradlew build + +# Publish to local Maven for downstream use +cd codegen && ./gradlew publishToMavenLocal +``` + +The codegen artifact version is published to Maven Central and bumped on each +release. For local development against unreleased codegen changes, use +`publishToMavenLocal` and point consumers at `mavenLocal()`. + +## Runtime architecture + +### Middleware stack + +The operation pipeline is built on a middleware stack defined in `middleware/`. +Steps execute in order: Initialize → Serialize → Build → Finalize → +Deserialize. Each step is a `middleware.Step` that holds an ordered list of +middleware. The codegen generates middleware registrations for each operation. + +### Encoding packages + +Each wire format has its own encoder/decoder under `encoding/`. These are +low-level — they produce/consume raw tokens or values, not full Smithy shapes. +Generated serde code calls into these packages. + +## Codegen: GoWriter and template system + +GoWriter extends Smithy's `SymbolWriter` and is the primary mechanism for +generating Go source. It has **two distinct writing styles** that must not be +confused. + +### Style 1: Positional args (`writer.write` / `writer.openBlock`) + +Inherited from `SymbolWriter`. Arguments are positional and referenced with +`$`-prefixed format characters. Each `$X` consumes the next argument in order. + +Format characters: +- `$L` — Literal (toString). Strings, names, anything that should be inserted + verbatim. +- `$S` — String, quoted. Wraps the value in Go double-quotes. +- `$T` — Type (Symbol). Inserts the symbol name and auto-adds its import. +- `$P` — Pointable type (Symbol). Like `$T` but prepends `*` if the symbol is + marked pointable. +- `$W` — Writable. Evaluates a `Writable` (lambda/closure) inline. +- `$D` — Dependency. Adds a `GoDependency` import, expands to empty string. + +Numbered variants (`$1L`, `$2T`, etc.) allow reusing the same argument +multiple times. The number is 1-indexed and refers to the position in the +argument list: + +```java +// $1L is used twice, $2L once — only 2 args needed +writer.write("type $1L struct{}\nvar _ $2L = (*$1L)(nil)", + DEFAULT_NAME, INTERFACE_NAME); +``` + +`openBlock`/`closeBlock` manage indentation for braced blocks. Arguments are +positional: + +```java +writer.openBlock("func (c $P) $T(ctx $T) ($P, error) {", "}", + serviceSymbol, operationSymbol, contextSymbol, outputSymbol, + () -> { + writer.write("return nil, nil"); + }); +``` + +### Style 2: Named template args (`goTemplate` / `writeGoTemplate`) + +Uses `$name:X` syntax where `name` is a key in a `Map` and `X` +is the format character. Arguments are passed as one or more maps. This is the +**preferred style for new code** — it is more readable and less error-prone +than positional args. + +```java +return goTemplate(""" + func $name:L(v $cborValue:T) ($type:T, error) { + return $coercer:T(v) + } + """, + Map.of( + "name", getDeserializerName(shape), + "cborValue", SmithyGoTypes.Encoding.Cbor.Value, + "type", symbolProvider.toSymbol(shape), + "coercer", coercer + )); +``` + +Rules: +- `goTemplate(String, Map...)` is a **static** method that returns a + `Writable` (a `Consumer` lambda). It does NOT write immediately. +- `writeGoTemplate(String, Map...)` is an **instance** method that writes + immediately to the writer. +- Maps are merged into the writer's context scope for the duration of the + template. Multiple maps can be passed and are applied in order. +- The writer pre-populates common symbols in context: `fmt.Sprintf`, + `fmt.Errorf`, `errors.As`, `context.Context`, `time.Now`. + +### Composing writables + +- `ChainWritable` — Collects multiple `Writable`s and composes them with + newlines between each. Use `.compose()` (with newlines) or + `.compose(false)` (without). + +### Symbol constants + +For symbols, use `SmithyGoDependency.*.valueSymbol("Name")` or +`SmithyGoDependency.*.pointableSymbol("Name")`. + diff --git a/vendor/github.com/hashicorp/consul/api/agent.go b/vendor/github.com/hashicorp/consul/api/agent.go index 355b2f467..fd23dee0e 100644 --- a/vendor/github.com/hashicorp/consul/api/agent.go +++ b/vendor/github.com/hashicorp/consul/api/agent.go @@ -159,6 +159,7 @@ type AgentService struct { Proxy *AgentServiceConnectProxyConfig `json:",omitempty"` Connect *AgentServiceConnect `json:",omitempty"` PeerName string `json:",omitempty"` + AI *AgentServiceAI `json:",omitempty" bexpr:"-"` // NOTE: If we ever set the ContentHash outside of singular service lookup then we may need // to include the Namespace in the hash. When we do, then we are in for lots of fun with tests. // For now though, ignoring it works well enough. @@ -211,6 +212,84 @@ type AgentServiceConnectProxyConfig struct { AccessLogs *AccessLogsConfig `json:",omitempty"` } +// AgentServiceAI is the public twin of the internal structs.ServiceAI: the +// inline AI role block on a service registration/lookup. It carries a Role +// discriminator and exactly one role-specific sub-block. Field names mirror the +// internal type so mapstructure-based conversion maps them automatically. +type AgentServiceAI struct { + Role string `json:",omitempty"` + InferenceModel *AgentAIInferenceModel `json:",omitempty"` + MCPServer *AgentAIMCPServer `json:",omitempty"` + Agent *AgentAIAgent `json:",omitempty"` +} + +// AgentAIInferenceModel is the role-specific config for the inference-model role. +type AgentAIInferenceModel struct { + Protocol string `json:",omitempty"` + Path string `json:",omitempty"` + Defaults *AgentAIModelDefaults `json:",omitempty"` +} + +// AgentAIModelDefaults carries optional request defaults for an inference model. +type AgentAIModelDefaults struct { + MaxTokens int `json:",omitempty"` + Temperature float64 `json:",omitempty"` +} + +// AgentAIMCPServer is the role-specific config for the mcp-server role. +type AgentAIMCPServer struct { + Transport string `json:",omitempty"` + Path string `json:",omitempty"` + ProtocolVersion string `json:",omitempty"` +} + +// AgentAIAgent is the role-specific config for the ai-agent role. +type AgentAIAgent struct { + Inference *AgentAIAgentInference `json:",omitempty"` + MCP *AgentAIAgentMCP `json:",omitempty"` + RateLimits *AgentAIAgentRateLimits `json:",omitempty"` + Interceptor *AgentAIAgentInterceptor `json:",omitempty"` +} + +// AgentAIAgentInference describes the inference specialization for an agent. +type AgentAIAgentInference struct { + Specialization []string `json:",omitempty"` + Vendor string `json:",omitempty"` +} + +// AgentAIAgentMCP is the MCP egress configuration for an agent. +type AgentAIAgentMCP struct { + Port int `json:",omitempty"` + HITL *AgentAIAgentMCPHITL `json:",omitempty"` +} + +// AgentAIAgentMCPHITL is the human-in-the-loop approval configuration for MCP +// tool calls. +type AgentAIAgentMCPHITL struct { + Port int `json:",omitempty"` + ApprovalTimeout string `json:",omitempty"` +} + +// AgentAIAgentRateLimits are per-agent tool-call rate limits. +type AgentAIAgentRateLimits struct { + ToolCallsPerMinute int `json:",omitempty"` + ToolCallsPerHour int `json:",omitempty"` +} + +// AgentAIAgentInterceptor configures the co-located governance interceptor the +// sidecar reaches over plaintext loopback. +type AgentAIAgentInterceptor struct { + Port int `json:",omitempty"` +} + +// AgentAISecret is a reference to a secret stored in an external provider. It +// never holds the literal secret value. +type AgentAISecret struct { + Provider string `json:",omitempty"` + Path string `json:",omitempty"` + Field string `json:",omitempty"` +} + const ( // MemberTagKeyACLMode is the key used to indicate what ACL mode the agent is // operating in. The values of this key will be one of the MemberACLMode constants @@ -365,6 +444,7 @@ type AgentServiceRegistration struct { Checks AgentServiceChecks Proxy *AgentServiceConnectProxyConfig `json:",omitempty"` Connect *AgentServiceConnect `json:",omitempty"` + AI *AgentServiceAI `json:",omitempty" bexpr:"-"` Namespace string `json:",omitempty" bexpr:"-" hash:"ignore"` Partition string `json:",omitempty" bexpr:"-" hash:"ignore"` Locality *Locality `json:",omitempty" bexpr:"-" hash:"ignore"` diff --git a/vendor/github.com/hashicorp/consul/api/config_entry.go b/vendor/github.com/hashicorp/consul/api/config_entry.go index 841550862..de45fe23c 100644 --- a/vendor/github.com/hashicorp/consul/api/config_entry.go +++ b/vendor/github.com/hashicorp/consul/api/config_entry.go @@ -329,6 +329,12 @@ type UpstreamLimits struct { // to the upstream cluster at a point in time. This is mostly applicable to HTTP/2 // clusters since all HTTP/1.1 requests are limited by MaxConnections. MaxConcurrentRequests *int `alias:"max_concurrent_requests"` + + // PassiveHealthCheck configuration determines how upstream proxy instances will + // be monitored for removal from the load balancing pool. When set on an API + // gateway's Defaults it applies to all routed services; a per-service value + // overrides it. + PassiveHealthCheck *PassiveHealthCheck `json:",omitempty" alias:"passive_health_check"` } // RateLimits is rate limiting configuration that is applied to diff --git a/vendor/github.com/hashicorp/consul/api/config_entry_gateways.go b/vendor/github.com/hashicorp/consul/api/config_entry_gateways.go index 457e4b33b..9c204f553 100644 --- a/vendor/github.com/hashicorp/consul/api/config_entry_gateways.go +++ b/vendor/github.com/hashicorp/consul/api/config_entry_gateways.go @@ -228,6 +228,24 @@ func (g *TerminatingGatewayConfigEntry) GetMeta() map[string]string { return g.M func (g *TerminatingGatewayConfigEntry) GetCreateIndex() uint64 { return g.CreateIndex } func (g *TerminatingGatewayConfigEntry) GetModifyIndex() uint64 { return g.ModifyIndex } +// APIGatewayListenerProtocol is the protocol that an APIGateway listener uses. +type APIGatewayListenerProtocol = string + +const ( + // APIGatewayListenerProtocolHTTP configures an HTTP/1.1 listener. + APIGatewayListenerProtocolHTTP APIGatewayListenerProtocol = "http" + // APIGatewayListenerProtocolHTTP2 configures an HTTP/2 listener. The + // downstream connection manager uses the HTTP/2 codec and advertises h2 + // via ALPN; the upstream cluster also negotiates HTTP/2 end-to-end. + APIGatewayListenerProtocolHTTP2 APIGatewayListenerProtocol = "http2" + // APIGatewayListenerProtocolGRPC configures a gRPC listener. It is + // identical to http2 at the transport level; Consul routes gRPC traffic + // using standard HTTP/2 path-based matching (/package.Service/Method). + APIGatewayListenerProtocolGRPC APIGatewayListenerProtocol = "grpc" + // APIGatewayListenerProtocolTCP configures a plain TCP listener. + APIGatewayListenerProtocolTCP APIGatewayListenerProtocol = "tcp" +) + // APIGatewayConfigEntry manages the configuration for an API gateway // with the given name. type APIGatewayConfigEntry struct { @@ -308,8 +326,10 @@ type APIGatewayListener struct { Hostname string // Port is the port at which this listener should bind. Port int - // Protocol is the protocol that a listener should use, it must - // either be "http" or "tcp" + // Protocol is the protocol that a listener should use. Valid values are + // APIGatewayListenerProtocolHTTP ("http"), APIGatewayListenerProtocolHTTP2 + // ("http2"), APIGatewayListenerProtocolGRPC ("grpc"), and + // APIGatewayListenerProtocolTCP ("tcp"). Protocol string // TLS is the TLS settings for the listener. TLS APIGatewayTLSConfiguration @@ -323,7 +343,7 @@ type APIGatewayListener struct { MaxRequestHeadersKB *uint32 `json:",omitempty"` } -// APIGatewayTLSConfiguration specifies the configuration of a listener’s +// APIGatewayTLSConfiguration specifies the configuration of a listener's // TLS settings. type APIGatewayTLSConfiguration struct { // Certificates is a set of references to certificates diff --git a/vendor/github.com/hashicorp/consul/api/config_entry_routes.go b/vendor/github.com/hashicorp/consul/api/config_entry_routes.go index 7f6f142f2..cc6d5363f 100644 --- a/vendor/github.com/hashicorp/consul/api/config_entry_routes.go +++ b/vendor/github.com/hashicorp/consul/api/config_entry_routes.go @@ -159,9 +159,10 @@ const ( // HTTPHeaderMatch specifies how a match should be done // on a request's headers. type HTTPHeaderMatch struct { - Match HTTPHeaderMatchType - Name string - Value string + Match HTTPHeaderMatchType + Name string + Value string + Invert bool `json:",omitempty"` } // HTTPPathMatchType specifies how path matching criteria diff --git a/vendor/github.com/hashicorp/consul/api/operator_feature_gate.go b/vendor/github.com/hashicorp/consul/api/operator_feature_gate.go new file mode 100644 index 000000000..62601a654 --- /dev/null +++ b/vendor/github.com/hashicorp/consul/api/operator_feature_gate.go @@ -0,0 +1,104 @@ +// Copyright (c) HashiCorp, Inc. +// SPDX-License-Identifier: MPL-2.0 + +package api + +import ( + "net/url" + "strconv" +) + +type FeatureGate struct { + Name string + Stage string + MinVersion string + DefaultEnabled bool + BeforeMinimumVersion string + Description string + Owner string + DesiredEnabled bool + EffectiveEnabled bool + Eligible bool + Source string + Reason string + PolicyIndex uint64 + StatusIndex uint64 +} + +type FeatureGateSetRequest struct { + Enabled bool +} + +type FeatureGateSetResponse struct { + Applied bool + Feature FeatureGate +} + +func (op *Operator) FeatureGateList(q *QueryOptions) ([]FeatureGate, *QueryMeta, error) { + r := op.c.newRequest("GET", "/v1/operator/features") + r.setQueryOptions(q) + rtt, resp, err := op.c.doRequest(r) + if err != nil { + return nil, nil, err + } + defer closeResponseBody(resp) + if err := requireOK(resp); err != nil { + return nil, nil, err + } + + meta := &QueryMeta{} + parseQueryMeta(resp, meta) + meta.RequestTime = rtt + var out []FeatureGate + if err := decodeBody(resp, &out); err != nil { + return nil, nil, err + } + return out, meta, nil +} + +func (op *Operator) FeatureGateGet(name string, q *QueryOptions) (*FeatureGate, *QueryMeta, error) { + r := op.c.newRequest("GET", "/v1/operator/feature/"+url.PathEscape(name)) + r.setQueryOptions(q) + rtt, resp, err := op.c.doRequest(r) + if err != nil { + return nil, nil, err + } + defer closeResponseBody(resp) + if err := requireOK(resp); err != nil { + return nil, nil, err + } + + meta := &QueryMeta{} + parseQueryMeta(resp, meta) + meta.RequestTime = rtt + var out FeatureGate + if err := decodeBody(resp, &out); err != nil { + return nil, nil, err + } + return &out, meta, nil +} + +// FeatureGateSet records explicit operator intent. expectedPolicyIndex zero +// means no caller-supplied CAS; the server still uses internal CAS fencing. +func (op *Operator) FeatureGateSet(name string, enabled bool, expectedPolicyIndex uint64, q *WriteOptions) (*FeatureGateSetResponse, error) { + r := op.c.newRequest("PUT", "/v1/operator/feature/"+url.PathEscape(name)) + r.setWriteOptions(q) + if expectedPolicyIndex != 0 { + r.params.Set("cas", strconv.FormatUint(expectedPolicyIndex, 10)) + } + r.obj = FeatureGateSetRequest{Enabled: enabled} + _, resp, err := op.c.doRequest(r) + if err != nil { + return nil, err + } + defer closeResponseBody(resp) + if err := requireOK(resp); err != nil { + return nil, err + } + + var out FeatureGateSetResponse + if err := decodeBody(resp, &out); err != nil { + return nil, err + } + return &out, nil +} diff --git a/vendor/github.com/mattn/go-shellwords/shellwords.go b/vendor/github.com/mattn/go-shellwords/shellwords.go index 3e211b02d..9c6040e85 100644 --- a/vendor/github.com/mattn/go-shellwords/shellwords.go +++ b/vendor/github.com/mattn/go-shellwords/shellwords.go @@ -362,7 +362,7 @@ loop: break loop } case '#': - if p.ParseComment && len(buf) == 0 && !(escaped || singleQuoted || doubleQuoted || backQuote || dollarQuote) { + if p.ParseComment && got == argNo && !(escaped || singleQuoted || doubleQuoted || backQuote || dollarQuote) { comment = true continue loop } diff --git a/vendor/github.com/onsi/ginkgo/v2/.gitignore b/vendor/github.com/onsi/ginkgo/v2/.gitignore index c9f054620..54fe2bd1f 100644 --- a/vendor/github.com/onsi/ginkgo/v2/.gitignore +++ b/vendor/github.com/onsi/ginkgo/v2/.gitignore @@ -6,4 +6,5 @@ integration/tmp_*/ .vscode .idea/ *.log -*.test \ No newline at end of file +*.test +/.release/ diff --git a/vendor/github.com/onsi/ginkgo/v2/CHANGELOG.md b/vendor/github.com/onsi/ginkgo/v2/CHANGELOG.md index 45fa53434..396f97ce5 100644 --- a/vendor/github.com/onsi/ginkgo/v2/CHANGELOG.md +++ b/vendor/github.com/onsi/ginkgo/v2/CHANGELOG.md @@ -1,3 +1,19 @@ +## Unreleased + +### Features + +### Fixes + +### Maintenance + +## 2.33.0 + +### Features +- The JUnit reporter now records each spec's `ReportEntry`s as `` on its `` element, with the entry's name and its JSON-encoded value. Thanks @pohly! [23db51a] + +### Maintenance +- Releases are now cut by a GitHub Actions workflow (Actions -> Release -> Run workflow) rather than by hand, with changelog entries collected under `## Unreleased` as the work happens. See RELEASING.md. [8616ecb] + ## 2.32.2 ### Fixes diff --git a/vendor/github.com/onsi/ginkgo/v2/README.md b/vendor/github.com/onsi/ginkgo/v2/README.md index ad5e45f67..3d6583460 100644 --- a/vendor/github.com/onsi/ginkgo/v2/README.md +++ b/vendor/github.com/onsi/ginkgo/v2/README.md @@ -1,6 +1,9 @@ -![Ginkgo](https://onsi.github.io/ginkgo/images/ginkgo.png) + + + Ginkgo + -[![test](https://github.com/onsi/ginkgo/actions/workflows/test.yml/badge.svg?branch=master)](https://github.com/onsi/ginkgo/actions?query=workflow%3Atest+branch%3Amaster) | [Ginkgo Docs](https://onsi.github.io/ginkgo/) +[![test](https://github.com/onsi/ginkgo/actions/workflows/test.yml/badge.svg?branch=master)](https://github.com/onsi/ginkgo/actions/workflows/test.yml?query=branch%3Amaster) [![Ginkgo Docs](docs/images/docs-badge.svg)](https://onsi.github.io/ginkgo/) [![Sponsor onsi](docs/images/sponsor-badge.svg)](https://github.com/sponsors/onsi) --- diff --git a/vendor/github.com/onsi/ginkgo/v2/RELEASING.md b/vendor/github.com/onsi/ginkgo/v2/RELEASING.md index 363815d7c..559e7e52f 100644 --- a/vendor/github.com/onsi/ginkgo/v2/RELEASING.md +++ b/vendor/github.com/onsi/ginkgo/v2/RELEASING.md @@ -1,23 +1,85 @@ -A Ginkgo release is a tagged git sha and a GitHub release. To cut a release: - -1. Ensure CHANGELOG.md is up to date. - - Use - ```bash - LAST_VERSION=$(git tag --sort=version:refname | tail -n1) - CHANGES=$(git log --pretty=format:'- %s [%h]' HEAD...$LAST_VERSION) - echo -e "## NEXT\n\n$CHANGES\n\n### Features\n\n### Fixes\n\n### Maintenance\n\n$(cat CHANGELOG.md)" > CHANGELOG.md - ``` - to update the changelog - - Categorize the changes into - - Breaking Changes (requires a major version) - - New Features (minor version) - - Fixes (fix version) - - Maintenance (which in general should not be mentioned in `CHANGELOG.md` as they have no user impact) -1. Update `VERSION` in `types/version.go` -1. Commit, push, and release: - ``` - git commit -m "vM.m.p" - git push - gh release create "vM.m.p" - git fetch --tags origin master - ``` \ No newline at end of file +# Releasing Ginkgo + +A release is one GitHub Actions run: **Actions → Release → Run workflow → bump: patch | minor**, +from `master`. From the command line: + +```bash +gh workflow run release.yml -f bump=patch # or -f bump=minor +``` + +The run: + +1. Runs the whole test workflow (`test.yml`). Nothing else happens unless it passes. +2. Runs `scripts/release.sh`, which + - computes the next version from `VERSION` in `types/version.go`, + - renames `## Unreleased` in `CHANGELOG.md` to `## X.Y.Z` (dropping empty `###` subsections) and + puts a fresh, empty `## Unreleased` above it, + - writes `VERSION` and stamps the version into every plugin manifest + (`plugins/*/.claude-plugin/plugin.json`), so the Claude Code plugin ships in lockstep, + - commits `vX.Y.Z` as `github-actions[bot]`, tags it `vX.Y.Z`, and pushes the commit and the tag + together (`git push --atomic`, fast-forward only), + - creates the GitHub release `vX.Y.Z`, whose notes are the body of `## X.Y.Z`. + +The Go module is released by the `vX.Y.Z` tag. There is no other release tooling. + +## The changelog + +`CHANGELOG.md` starts with an `## Unreleased` section: + +```markdown +## Unreleased + +### Features + +### Fixes + +### Maintenance + +## 2.32.2 +... +``` + +Add an entry under `## Unreleased` with each user-facing change, as you make it. Never edit a +released section. Empty subsections are dropped when the section is released, so leaving +`### Maintenance` empty costs nothing. + +If `## Unreleased` has no entries (only blank lines and `###` headings), the release stops before +changing anything — and so does a re-run after a successful release. + +To draft entries from the commits since the last release: + +```bash +git log --pretty=format:'- %s [%h]' "$(git tag --sort=version:refname | tail -n1)"..HEAD +``` + +Categorize what you keep into + +- Breaking changes (these need a major version, which this workflow does not cut) +- `### Features` (minor version) +- `### Fixes` (patch version) +- `### Maintenance` (in general, changes with no user impact don't belong in the changelog at all) + +## If a release fails + +Open the failed run and click **Re-run failed jobs**. A re-run checks out the same commit as the +first attempt and computes the same version. It resumes based on what already exists: + +| Where it failed | What a re-run does | +|---|---| +| Tests, or before the push | Nothing reached GitHub. The re-run starts over. | +| The push (master moved during the run) | The re-run fails the same way. Start a new run from the current master. | +| After the push (the tag `vX.Y.Z` is on GitHub) | The re-run builds from the tag instead of making a new commit. | +| Creating the GitHub release | The release is created, or its notes are refreshed if it already exists. | + +The commit and the tag are pushed together, so the tag being on GitHub means the release commit is +on master too. + +## Trying the release script locally + +`GINKGO_RELEASE_DRY_RUN=1 scripts/release.sh patch` does the whole release locally — the changelog +and version rewrites, the commit and the tag — then skips the push and the GitHub release. It still +checks `origin` for an existing tag, so run it in a throwaway clone whose `origin` is a local bare +repository, not in your working copy. + +The version and changelog logic lives in `scripts/release`, with its own Ginkgo suite +(`scripts/release/release_test.go`) that runs with the rest of the suites. diff --git a/vendor/github.com/onsi/ginkgo/v2/reporters/junit_report.go b/vendor/github.com/onsi/ginkgo/v2/reporters/junit_report.go index d4720ee94..b7ef42c23 100644 --- a/vendor/github.com/onsi/ginkgo/v2/reporters/junit_report.go +++ b/vendor/github.com/onsi/ginkgo/v2/reporters/junit_report.go @@ -11,6 +11,7 @@ The schema used for the generated JUnit xml file was adapted from https://llg.cu package reporters import ( + "encoding/json" "encoding/xml" "fmt" "maps" @@ -136,6 +137,8 @@ type JUnitTestCase struct { SystemOut string `xml:"system-out,omitempty"` //SystemOut maps onto any captured GinkgoWriter output - maps onto SpecReport.CapturedGinkgoWriterOutput SystemErr string `xml:"system-err,omitempty"` + //Properties captures any ReportEntries attached to the spec via AddReportEntry, as key/value pairs with the JSON dump of the value as value. + Properties *JUnitProperties `xml:"properties,omitempty"` } type JUnitSkipped struct { @@ -241,6 +244,20 @@ func GenerateJUnitReportWithConfig(report types.Report, dst string, config Junit if !config.OmitCapturedStdOutErr { test.SystemOut = systemOutForUnstructuredReporters(spec) } + if len(spec.ReportEntries) > 0 { + properties := JUnitProperties{} + for _, entry := range spec.ReportEntries { + value, err := json.Marshal(entry.GetRawValue()) + if err != nil { + value = []byte(fmt.Sprintf("%q", err.Error())) + } + properties.Properties = append(properties.Properties, JUnitProperty{ + Name: entry.Name, + Value: string(value), + }) + } + test.Properties = &properties + } suite.Tests += 1 switch spec.State { diff --git a/vendor/github.com/onsi/ginkgo/v2/types/version.go b/vendor/github.com/onsi/ginkgo/v2/types/version.go index a34f1f3a3..9fb4938e3 100644 --- a/vendor/github.com/onsi/ginkgo/v2/types/version.go +++ b/vendor/github.com/onsi/ginkgo/v2/types/version.go @@ -1,3 +1,3 @@ package types -const VERSION = "2.32.2" +const VERSION = "2.33.0" diff --git a/vendor/github.com/onsi/gomega/.gitignore b/vendor/github.com/onsi/gomega/.gitignore index 425d0a509..b3003b4e0 100644 --- a/vendor/github.com/onsi/gomega/.gitignore +++ b/vendor/github.com/onsi/gomega/.gitignore @@ -4,4 +4,5 @@ .idea gomega.iml TODO -.vscode \ No newline at end of file +.vscode +/.release/ diff --git a/vendor/github.com/onsi/gomega/CHANGELOG.md b/vendor/github.com/onsi/gomega/CHANGELOG.md index 8f1d34e38..51239dafa 100644 --- a/vendor/github.com/onsi/gomega/CHANGELOG.md +++ b/vendor/github.com/onsi/gomega/CHANGELOG.md @@ -1,3 +1,17 @@ +## Unreleased + +### Features + +### Fixes + +### Maintenance + +## 1.43.1 + +### Maintenance +- Update go.yaml.in/yaml/v3 to v3.0.5 [d547015] +- Releases are now cut by a GitHub Actions workflow (Actions -> Release -> Run workflow) rather than by hand, with changelog entries collected under `## Unreleased` as the work happens. Releases still ship the stripped-down tree on `master-lite` - tests removed and Ginkgo dropped from `go.mod` - and the workflow now builds it and checks it on every push. See RELEASING.md. [e9dc84d] + ## 1.43.0 ### Features diff --git a/vendor/github.com/onsi/gomega/README.md b/vendor/github.com/onsi/gomega/README.md index 6eb36fdf8..ac545907f 100644 --- a/vendor/github.com/onsi/gomega/README.md +++ b/vendor/github.com/onsi/gomega/README.md @@ -1,6 +1,9 @@ -![Gomega: Ginkgo's Preferred Matcher Library](http://onsi.github.io/gomega/images/gomega.png) + + + Gomega: Ginkgo's Preferred Matcher Library + -[![test](https://github.com/onsi/gomega/actions/workflows/test.yml/badge.svg)](https://github.com/onsi/gomega/actions/workflows/test.yml) +[![test](https://github.com/onsi/gomega/actions/workflows/test.yml/badge.svg?branch=master)](https://github.com/onsi/gomega/actions/workflows/test.yml?query=branch%3Amaster) [![Gomega Docs](docs/images/docs-badge.svg)](https://onsi.github.io/gomega/) [![Sponsor onsi](docs/images/sponsor-badge.svg)](https://github.com/sponsors/onsi) Jump straight to the [docs](http://onsi.github.io/gomega/) to learn about Gomega, including a list of [all available matchers](http://onsi.github.io/gomega/#provided-matchers). diff --git a/vendor/github.com/onsi/gomega/RELEASING.md b/vendor/github.com/onsi/gomega/RELEASING.md index 9973fff49..fdbeb37cc 100644 --- a/vendor/github.com/onsi/gomega/RELEASING.md +++ b/vendor/github.com/onsi/gomega/RELEASING.md @@ -1,23 +1,143 @@ -A Gomega release is a tagged sha and a GitHub release. To cut a release: - -1. Ensure CHANGELOG.md is up to date. - - Use - ```bash - LAST_VERSION=$(git tag --sort=version:refname | tail -n1) - CHANGES=$(git log --pretty=format:'- %s [%h]' HEAD...$LAST_VERSION) - echo -e "## NEXT\n\n$CHANGES\n\n### Features\n\n### Fixes\n\n### Maintenance\n\n$(cat CHANGELOG.md)" > CHANGELOG.md - ``` - to update the changelog - - Categorize the changes into - - Breaking Changes (requires a major version) - - New Features (minor version) - - Fixes (fix version) - - Maintenance (which in general should not be mentioned in `CHANGELOG.md` as they have no user impact) -1. Update GOMEGA_VERSION in `gomega_dsl.go` -1. Commit, push, and release: - ``` - git commit -m "vM.m.p" - git push - gh release create "vM.m.p" - git fetch --tags origin master - ``` \ No newline at end of file +# Releasing Gomega + +A release is one GitHub Actions run: **Actions → Release → Run workflow → bump: patch | minor**, +from `master`. From the command line: + +```bash +gh workflow run release.yml -f bump=patch # or -f bump=minor +``` + +The run: + +1. Runs the whole test workflow (`test.yml`). Nothing else happens unless it passes. +2. Runs `scripts/release.sh`, which + - computes the next version from `GOMEGA_VERSION` in `gomega_dsl.go`, + - renames `## Unreleased` in `CHANGELOG.md` to `## X.Y.Z` (dropping empty `###` subsections) and + puts a fresh, empty `## Unreleased` above it, + - writes `GOMEGA_VERSION` and stamps the version into every plugin manifest + (`plugins/*/.claude-plugin/plugin.json`), so the Claude Code plugin ships in lockstep, + - commits that on `master` as `vX.Y.Z (full)`, as `github-actions[bot]`, + - builds the released tree on `master-lite` and tags **that** commit `vX.Y.Z` (see below), + - pushes `master`, `master-lite`, and the tag together (`git push --atomic`, fast-forward only), + - creates the GitHub release `vX.Y.Z`, whose notes are the body of `## X.Y.Z`. + +## master and master-lite + +Gomega uses Ginkgo for its own tests, and the go toolchain pulls a dependency's *test* dependencies +into consuming projects as indirect requirements — so a project that uses only Gomega would end up +with all of Ginkgo in its `go.mod`. Since 1.40.0, releases therefore ship a stripped-down tree: + +- `master` holds the real repository, tests and all. The release commit there is `vX.Y.Z (full)`, + and it is **not** what the go toolchain resolves. +- `master-lite` holds the released trees: the same tree with every `_test.go` file deleted and + `go.mod` re-tidied, which drops Ginkgo. `scripts/strip-tests.sh` does that, and asserts that the + result still builds and no longer requires Ginkgo. +- Each release adds one commit to `master-lite`: a merge whose tree is the stripped tree and whose + parents are the previous `master-lite` commit and the `vX.Y.Z (full)` commit on `master`. So + `master-lite`'s history connects to master's, and `git log master-lite` reads as the release + history. +- The `vX.Y.Z` tag is on that `master-lite` commit. It is what `go get github.com/onsi/gomega` + resolves, so `go build` never even sees the test files. + +The test workflow's **Check the released (lite) tree** job runs `scripts/strip-tests.sh` on every +push. If a non-test file ever imports Ginkgo, that job fails long before release day — the released +module could not be built otherwise. + +Release tags are not on `master`, so `git describe` on master does not find them. `GOMEGA_VERSION` +in `gomega_dsl.go` is the version of record, and `git tag --sort=version:refname | tail -n1` names +the latest release. + +If this release process ever causes unexpected changes for a project, please open an issue. + +### Never merge master-lite into master + +`master-lite` always looks ahead of `master`, because its newest commit merges master's release +commit. But its *tree* has the tests taken out, so merging or rebasing it back into master deletes +every `_test.go` file and drops Ginkgo from `go.mod` — cleanly, with no conflicts. GitHub's +"master-lite had recent pushes — Compare & pull request" banner is the one click to avoid. + +Nothing you do locally needs `master-lite`: the release workflow writes it from a fresh checkout. A +stale local `master-lite` branch is harmless, and you can delete it. + +`scripts/check-full-tree.sh` guards against a stripped master: it asserts that a checkout has +`_test.go` files and that `go.mod` requires Ginkgo. The test workflow runs it on every push and +`scripts/release.sh` runs it before cutting a release, so a stripped master gets reported plainly +instead of turning into a test run with nothing in it. + +### Cutting one release after another + +Work on master as usual between releases. The `vX.Y.Z (full)` commit the workflow pushed is an +ordinary commit: `git pull` fast-forwards onto it, it carries the released `CHANGELOG.md` and +`GOMEGA_VERSION`, and you add new `## Unreleased` entries above it. The next release repeats the +same two steps — a new `vX.Y.Z (full)` commit on master, and a new merge on `master-lite` whose +tree is the stripped version of it, carrying the tag. + +Nothing accumulates between releases, and nothing needs reconciling in either direction: each +`master-lite` commit's tree is built from the release commit rather than merged into the previous +one, so `git diff vX.Y.Z vX.Y.Z+1` over two releases shows only the real changes. + +## The changelog + +`CHANGELOG.md` starts with an `## Unreleased` section: + +```markdown +## Unreleased + +### Features + +### Fixes + +### Maintenance + +## 1.43.0 +... +``` + +Add an entry under `## Unreleased` with each user-facing change, as you make it. Never edit a +released section. Empty subsections are dropped when the section is released, so leaving +`### Maintenance` empty costs nothing. + +If `## Unreleased` has no entries (only blank lines and `###` headings), the release stops before +changing anything — and so does a re-run after a successful release. + +To draft entries from the commits since the last release: + +```bash +git log --pretty=format:'- %s [%h]' "$(git tag --sort=version:refname | tail -n1)"..HEAD +``` + +Categorize what you keep into + +- Breaking changes (these need a major version, which this workflow does not cut) +- `### Features` (minor version) +- `### Fixes` (patch version) +- `### Maintenance` (in general, changes with no user impact don't belong in the changelog at all) + +## If a release fails + +Open the failed run and click **Re-run failed jobs**. A re-run checks out the same commit as the +first attempt and computes the same version. It resumes based on what already exists: + +| Where it failed | What a re-run does | +|---|---| +| Tests, or before the push | Nothing reached GitHub. The re-run starts over. | +| The push (master or master-lite moved during the run) | The re-run fails the same way. Start a new run from the current master. | +| After the push (the tag `vX.Y.Z` is on GitHub) | The re-run builds from the tag instead of making new commits. | +| Creating the GitHub release | The release is created, or its notes are refreshed if it already exists. | + +Both branches and the tag are pushed together, so the tag being on GitHub means both release +commits are there too. + +## Trying the release script locally + +`GOMEGA_RELEASE_DRY_RUN=1 scripts/release.sh patch` does the whole release locally — the changelog +and version rewrites, the `master` commit, the stripped `master-lite` commit and the tag on it — +then skips the push and the GitHub release. It still checks `origin` for an existing tag and needs +`origin/master-lite`, so run it in a throwaway clone whose `origin` is a local bare repository, not +in your working copy. + +`scripts/strip-tests.sh` rewrites the working tree in place, so run *it* only on a throwaway +checkout too. + +The version and changelog logic lives in `scripts/release`, with its own Ginkgo suite +(`scripts/release/release_test.go`) that runs with the rest of the suites. diff --git a/vendor/github.com/onsi/gomega/gomega_dsl.go b/vendor/github.com/onsi/gomega/gomega_dsl.go index 3206e05da..dd1511f2e 100644 --- a/vendor/github.com/onsi/gomega/gomega_dsl.go +++ b/vendor/github.com/onsi/gomega/gomega_dsl.go @@ -22,7 +22,7 @@ import ( "github.com/onsi/gomega/types" ) -const GOMEGA_VERSION = "1.43.0" +const GOMEGA_VERSION = "1.43.1" const nilGomegaPanic = `You are trying to make an assertion, but haven't registered Gomega's fail handler. If you're using Ginkgo then you probably forgot to put your assertion in an It(). diff --git a/vendor/google.golang.org/api/internal/version.go b/vendor/google.golang.org/api/internal/version.go index f352e1dc7..8eeaa21b4 100644 --- a/vendor/google.golang.org/api/internal/version.go +++ b/vendor/google.golang.org/api/internal/version.go @@ -5,4 +5,4 @@ package internal // Version is the current tagged release of the library. -const Version = "0.297.0" +const Version = "0.298.0" diff --git a/vendor/modules.txt b/vendor/modules.txt index 6fbdd185e..360fa26ba 100644 --- a/vendor/modules.txt +++ b/vendor/modules.txt @@ -77,11 +77,11 @@ github.com/aws/aws-sdk-go-v2/internal/timeouts ## explicit; go 1.24 github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream github.com/aws/aws-sdk-go-v2/aws/protocol/eventstream/eventstreamapi -# github.com/aws/aws-sdk-go-v2/config v1.33.4 +# github.com/aws/aws-sdk-go-v2/config v1.33.5 ## explicit; go 1.24 github.com/aws/aws-sdk-go-v2/config github.com/aws/aws-sdk-go-v2/config/internal/ini -# github.com/aws/aws-sdk-go-v2/credentials v1.20.4 +# github.com/aws/aws-sdk-go-v2/credentials v1.20.5 ## explicit; go 1.24 github.com/aws/aws-sdk-go-v2/credentials github.com/aws/aws-sdk-go-v2/credentials/ec2rolecreds @@ -120,7 +120,7 @@ github.com/aws/aws-sdk-go-v2/service/internal/presigned-url github.com/aws/aws-sdk-go-v2/service/internal/s3shared github.com/aws/aws-sdk-go-v2/service/internal/s3shared/arn github.com/aws/aws-sdk-go-v2/service/internal/s3shared/config -# github.com/aws/aws-sdk-go-v2/service/s3 v1.113.0 +# github.com/aws/aws-sdk-go-v2/service/s3 v1.113.1 ## explicit; go 1.24 github.com/aws/aws-sdk-go-v2/service/s3 github.com/aws/aws-sdk-go-v2/service/s3/internal/arn @@ -142,7 +142,7 @@ github.com/aws/aws-sdk-go-v2/service/sso/types github.com/aws/aws-sdk-go-v2/service/ssooidc github.com/aws/aws-sdk-go-v2/service/ssooidc/internal/endpoints github.com/aws/aws-sdk-go-v2/service/ssooidc/types -# github.com/aws/aws-sdk-go-v2/service/sts v1.50.0 +# github.com/aws/aws-sdk-go-v2/service/sts v1.51.0 ## explicit; go 1.24 github.com/aws/aws-sdk-go-v2/service/sts github.com/aws/aws-sdk-go-v2/service/sts/internal/endpoints @@ -320,8 +320,8 @@ github.com/grpc-ecosystem/grpc-gateway/v2/protoc-gen-openapiv2/options # github.com/hashicorp/cap v0.13.0 ## explicit; go 1.24.0 github.com/hashicorp/cap/util -# github.com/hashicorp/consul/api v1.34.4 -## explicit; go 1.26 +# github.com/hashicorp/consul/api v1.34.5 +## explicit; go 1.26.7 github.com/hashicorp/consul/api # github.com/hashicorp/errwrap v1.1.0 ## explicit @@ -438,7 +438,7 @@ github.com/mattn/go-colorable # github.com/mattn/go-isatty v0.0.24 ## explicit; go 1.20 github.com/mattn/go-isatty -# github.com/mattn/go-shellwords v1.0.14 +# github.com/mattn/go-shellwords v1.0.15 ## explicit; go 1.13 github.com/mattn/go-shellwords # github.com/mattn/go-sqlite3 v1.14.52 @@ -494,7 +494,7 @@ github.com/okta/okta-jwt-verifier-golang/discovery github.com/okta/okta-jwt-verifier-golang/discovery/oidc github.com/okta/okta-jwt-verifier-golang/errors github.com/okta/okta-jwt-verifier-golang/utils -# github.com/onsi/ginkgo/v2 v2.32.2 +# github.com/onsi/ginkgo/v2 v2.33.0 ## explicit; go 1.25.0 github.com/onsi/ginkgo/v2 github.com/onsi/ginkgo/v2/config @@ -518,7 +518,7 @@ github.com/onsi/ginkgo/v2/internal/reporters github.com/onsi/ginkgo/v2/internal/testingtproxy github.com/onsi/ginkgo/v2/reporters github.com/onsi/ginkgo/v2/types -# github.com/onsi/gomega v1.43.0 +# github.com/onsi/gomega v1.43.1 ## explicit; go 1.25.0 github.com/onsi/gomega github.com/onsi/gomega/format @@ -771,8 +771,8 @@ golang.org/x/tools/internal/pkgbits golang.org/x/tools/internal/stdlib golang.org/x/tools/internal/typesinternal golang.org/x/tools/internal/versions -# google.golang.org/api v0.297.0 -## explicit; go 1.26.0 +# google.golang.org/api v0.298.0 +## explicit; go 1.25.0 google.golang.org/api/googleapi google.golang.org/api/googleapi/transport google.golang.org/api/internal