Pacemaker Configuration System
Go to file
Michal Pospíšil 552ef44f2f fix bundling metadata
This should help ProdSec accurately detect versions of bundled
components in pcs. Security analysts usually filter the database based
on ecosystem. The ecosystem detection has been done from RPM metadata
for some time and that is when ProdSec stopped creating trackers
accurately. The problem is that we didn't follow the Fedora Packaging
Guidelines and didn't name the bundled components with package names as
if they were entering Fedora. The ecosystem detection in Deptopia (the
tool that ProdSec uses) expects "rubygem-" prefix for rubygems and
"python[X]-" prefix for Python ecosystem. See PSDEVOPS-4408 for more
details.

This commit also changes metadata for bundling JavaScript libraries. The
Packaging guidelines suggest the `js-` prefix. While Deptopia doesn't
handle JS filtering, the tool that ProdSec uses doesn't require a strict
match, so searching for jquery should also return js-jquery unless a
strict flag is specified.
2025-10-23 10:06:18 +02:00
.fmf migrate gating tests to fmf 2023-11-02 15:45:41 +01:00
.gitignore pcs-0.10.18-2.el8_10.6 2025-06-23 18:38:02 +02:00
do-not-support-cluster-setup-with-udp-u-transport.patch pcs-0.10.18-1 2024-01-11 15:18:24 +01:00
gating.fmf migrate gating tests to fmf 2023-11-02 15:45:41 +01:00
gating.yaml Bring gating.yaml over from Brew dist-git 2023-03-10 11:12:34 -08:00
HAM-logo.png Cleanup of c8s branch 2023-05-25 18:17:01 +02:00
pcs.spec fix bundling metadata 2025-10-23 10:06:18 +02:00
prepare-env.sh pcs-0.10.18-1 2024-01-11 15:18:24 +01:00
RHEL-17280-01-disable-new-webui-routes.patch pcs-0.10.18-1 2024-01-11 15:18:24 +01:00
RHEL-65595-stop-sending-http-headers-to-ruby-part-of-pcsd.patch pcs-0.10.18-2.el8_10.3 2024-12-05 18:12:45 +01:00
RHEL-90147-support-for-query-limits-in-rack.patch pcs-0.10.18-2.el8_10.5 2025-05-22 17:30:57 +02:00
rpminspect.yaml Bring rpminspect.yaml over from Brew dist-git 2023-03-10 11:12:34 -08:00
sources pcs-0.10.18-2.el8_10.6 2025-06-23 18:38:02 +02:00