Uploaded image for project: 'AI Platform Core Components'
  1. AI Platform Core Components
  2. AIPCC-1125

konflux hermetic builds of RH AI images

    • True
    • Hide

      None

      Show
      None
    • False
    • 0% To Do, 0% In Progress, 100% Done
    • XL
    • Hide

      Feb 26, 2026: Yellow – 2026-02-26

      The notebook team has successfully configured a lock file with SHAs from our package index to build an image hermetically. The status is yellow because the SHAs change periodically, so we have some sort of bug in our builds (AIPCC-11057).

      Show
      Feb 26, 2026: Yellow – 2026-02-26 The notebook team has successfully configured a lock file with SHAs from our package index to build an image hermetically. The status is yellow because the SHAs change periodically, so we have some sort of bug in our builds ( AIPCC-11057 ).

      We are building RHELAI and RHAIIS without the flags that prevent the image build steps from accessing outside resources. We need to enable those to comply with build security requirements and ensure that all future shared images also build with the hermetic flag enable.

      There is likely to be work to do for both the CI/CD teams, to enable the flag, and the wheels team to make it possible to install wheel collections in that mode.

              mdean@redhat.com Meirav Dean
              dhellman@redhat.com Doug Hellmann
              Votes:
              0 Vote for this issue
              Watchers:
              9 Start watching this issue

                Created:
                Updated: