Repository navigation
Revert "fix: bypass expired Debian 11 security repo in Dockerfile.build" - #7789
Conversation
|
This pull request does not have a backport label. Could you fix it @ycombinator? 🙏
|
There was a problem hiding this comment.
🟡 Changes recommended
The revert can reintroduce CI/build failures unless the upstream golang-crossbuild:*debian11 images used by CI have been republished with fixed apt sources (or the base image usage is updated/pinned accordingly).
Once you've addressed the issues Copilot identified, you can request another Copilot review.
Pull request overview
Reverts the previously-added temporary apt-get update validity-bypass in Dockerfile.build, returning the builder image setup to the default apt behavior when building Fleet Server’s cross-compile builder container.
Changes:
- Removed the
Acquire::Check-Valid-Until=falseworkaround fromapt-get updateinDockerfile.build. - Removed the associated “temporary workaround” comment block explaining the Debian 11 EOL repository expiry.
File summaries
| File | Description |
|---|---|
| Dockerfile.build | Removes the temporary apt validity-bypass during builder image creation. |
Review details
- Files reviewed: 1/1 changed files
- Comments generated: 1
- Review effort level: Lite
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
TL;DRThe Buildkite E2E failure is a code/config regression introduced by this PR: reverting Remediation
Investigation detailsRoot CausePR #7789 changes only
This is consistent with the PR title/body (revert of #7782) and with the known Debian 11 security repo expiry issue that #7782 explicitly worked around. Evidence
Although the attached excerpt mostly shows toxiproxy connection-closure warnings, the deterministic signal in this run is the suite-level fail anchored on Verification
Follow-up
What is this? | From workflow: PR Buildkite Detective Give us feedback! React with 🚀 if perfect, 👍 if helpful, 👎 if not. |
Reverts #7782
See #7782 (comment)