diff --git a/CHANGELOG.md b/CHANGELOG.md index 12830d82..41753797 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -4,6 +4,12 @@ All notable changes to this project will be documented in this file. ## [Unreleased] +### Fixed + +- cherry-pick: Add `--locked` flag to `cargo install` commands for reproducible builds ([#1044]). + +[#1044]: https://github.com/stackabletech/docker-images/pull/1044 + ## [24.11.1] - 2025-01-14 ### Changed diff --git a/stackable-base/Dockerfile b/stackable-base/Dockerfile index 74460f53..449ea7af 100644 --- a/stackable-base/Dockerfile +++ b/stackable-base/Dockerfile @@ -32,7 +32,7 @@ microdnf clean all rm -rf /var/cache/yum curl --proto '=https' --tlsv1.2 -sSf https://sh.rustup.rs | sh -s -- -y --default-toolchain "$RUST_DEFAULT_TOOLCHAIN_VERSION" -. "$HOME/.cargo/env" && cargo --quiet install cargo-cyclonedx@"$CARGO_CYCLONEDX_CRATE_VERSION" cargo-auditable@"$CARGO_AUDITABLE_CRATE_VERSION" +. "$HOME/.cargo/env" && cargo --quiet install --locked cargo-cyclonedx@"$CARGO_CYCLONEDX_CRATE_VERSION" cargo-auditable@"$CARGO_AUDITABLE_CRATE_VERSION" git clone --depth 1 --branch "${CONFIG_UTILS_VERSION}" https://github.com/stackabletech/config-utils cd ./config-utils diff --git a/ubi8-rust-builder/Dockerfile b/ubi8-rust-builder/Dockerfile index 8d2825eb..4f09e6d0 100644 --- a/ubi8-rust-builder/Dockerfile +++ b/ubi8-rust-builder/Dockerfile @@ -80,7 +80,7 @@ WORKDIR / RUN <