From 594729c4641a40e63327c13bbb4bcb81155a2f82 Mon Sep 17 00:00:00 2001 From: Andrew Polk Date: Fri, 28 Jun 2024 10:39:51 -0700 Subject: [PATCH] chore: Add signing in GHA --- .github/workflows/main.yml | 24 +++++++++++------------- 1 file changed, 11 insertions(+), 13 deletions(-) diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 3d8976b..d6b3e7d 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -42,19 +42,17 @@ jobs: env: in_github_action: "true" - sign-installer: - runs-on: windows-latest - steps: - - name: Sign installer - if: startsWith(github.ref, 'refs/tags/v') - uses: sillsdev/codesign/.github/workflows/sign.yml@v2.1 + - uses: actions/upload-artifact@v4 with: + name: BloomPubViewerSetup path: BloomPub*.exe - description: BloomPUB Viewer installer - secrets: - certificate: ${{ secrets.CODESIGN_LSDEVSECTIGOEV }} + if-no-files-found: error - - name: Confirm signature - uses: sillsdev/codesign/verify-signature@v2.1 - with: - path: BloomPub*.exe + sign-installer: + name: Sign installer + if: startsWith(github.ref, 'refs/tags/v') + uses: sillsdev/codesign/.github/workflows/sign.yml@v2.1 + with: + artifact: BloomPubViewerSetup + secrets: + certificate: ${{ secrets.CODESIGN_LSDEVSECTIGOEV }}