1ES Transition Items - "Extras"
- Dominant language
- C#
- Stars
- 135
- Forks
- 260
- Avg merge
- 1d 22h
- Merged PRs (30d)
- 115
Description
## Discovered long tail items
- [x] Transition azure-sdk-for-android
- [x] ~~Scan `azure-sdk-build-tools` exes with `1es-templates`~~ -> Remaining to be resolved:
- [x] tools/sdk-generation-pipeline/ci.yml
- [x] tools/oav-traffic-converter/ci.yml
- [x] tools/mock-service-host/ci.yml
- [x] tools/js-sdk-release-tools/ci.yml
- [x] tools/apiview/parsers/js-api-parser/ci.yml
- [x] tools/apiview/emitters/typespec-apiview/ci.yml
- [x] eng/pipelines/templates/stages/archetype-autorest-preview.yml
- [x] tools/tsp-client/ci.yml
- [x] Remove `download-credscan-suppression.yml` in favor of disabling the SDL step on specific jobs or the like
- We can account for the places where the clone is in a different location than the default `SDL` config by utilizing a `templateContext` argument on the deployment. Otherwise I'm not certain we can bypass this.
- ~~We CAN disable `sdl` injected steps when there is no checkout. Unfortunately during our signing stage there absolutely is checkout. [Second section on this page](https://eng.ms/docs/cloud-ai-platform/devdiv/one-engineering-system-1es/1es-docs/1es-pipeline-templates/features/sdlanalysis/sourceanalysisstage)~~ This is for the entire SDL stage, not the injected steps during artifact publish.
- No way to disable this. Only possible thing we could change is update to _generate_ a blank credscan suppression file, then simply reference that via `templateContext` override.
- ```
templateContext:
sdl:
credscan:
suppressionsFile: path/to/generated/file.json
```
- [ ] ~~Eliminate warning for `1es artifact of that name already exists` for matrix-ed test jobs~~ This issue has drug on for 3 weeks with new discovered work. Going to file this as its own thing and pursue it.
## `yml` Builds
- [x] ~~[openapi-alps-PullRequest](https://dev.azure.com/devdiv/DevDiv/_build?definitionId=14420)~~ - One branch already compliant. Not shipped to 3rd parties.
- [x] [openapi-alps-publish](https://dev.azure.com/devdiv/DevDiv/_build?definitionId=13803) -- [PR](https://dev.azure.com/devdiv/DevDiv/_git/openapi-alps/pullrequest/558608?_a=files)
- [x] ~~[openapi-alps-ci](https://dev.azure.com/devdiv/DevDiv/_build?definitionId=13681)~~ Not used as artifact source for release.
- [x] [public.avocado](https://dev.azure.com/azure-sdk/public/_build/index?definitionId=120) - [PR](https://github.com/Azure/avocado/pull/135)
- Will create internal build for release phase.
- [x] [public.openapi-diff](https://dev.azure.com/azure-sdk/public/_build?definitionId=135&_a=summary) - [PR](https://github.com/Azure/openapi-diff/pull/337)
- Will create internal build for release phase.
- [x] [public.rest-api-specs-scripts](https://dev.azure.com/azure-sdk/public/_build/index?definitionId=221)
- Deprecated repo. Likely no-op here.
- [x] [Azure.git-rest-api Build](https://dev.azure.com/azure-sdk/public/_build?definitionId=445&_a=summary)
- ~~This can probably be removed after we swap to releasing using ESRP task.~~ Just going to ignore this for now.
- [x] [oav-merge-validation](https://dev.azure.com/azure-public/azsdk/_build?definitionId=3) - [PR](https://github.com/Azure/oav/pull/1031)
- [x] [regression-tests-full](https://dev.azure.com/azure-public/azsdk/_build?definitionId=36) - [PR](https://github.com/Azure/oav/pull/1031)
- [x] `AutoRest - Publish` - [Azure/autorest](https://github.com/Azure/autorest) - only missing ESRP. Going to ignore for now.
## Designer Builds
The following builds are designer, and will not benefit from the yml updates above.
- [x] mgmt-netsdk-sign. Not used since 2019, can't clean up due to release. Disabled.
- [x] ~~mgmt-NetCore-SDK-Publish~~
- [x] ~~mgmt-netsdk-multiapi-publish~~
- [x] ~~mgmt-netsdk-sdkcommon-publish~~
- [x] ~~mgmt-netsdk-publish~~
- [x] ~~Specs Repo - Update readme.md all-api-versions tags.~~
- [x] ~~Autorest Npm Admin Task~~ Supplanted by `npm admin` build
- [x] ~~tools - Codex - vscode.dev~~
Anything crossed out is deleted. Checkmark otherwise indicates merged PR.
## Release Builds
- [x] [azuresdkpartnerdrops to pypi - esrp release](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=116) - [PR](https://github.com/Azure/azure-sdk-for-python/pull/35798)
- [x] [APIVIew UI Test instance](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=100) - [PR](https://github.com/Azure/azure-sdk-tools/pull/8383)
- [x] [Release to APIView staging](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=91) - [PR](https://github.com/Azure/azure-sdk-tools/pull/8383)
- [x] [APIView to Azure App Service](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=73) - [PR](https://github.com/Azure/azure-sdk-tools/pull/8383)
- [x] [azuresdkpartnerdrops to npm](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=22) - [PR](https://github.com/Azure/azure-sdk-for-js/pull/29852)
- [x] [azure-openapi-validator to npm](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=80) - [PR](https://github.com/Azure/azure-openapi-validator/pull/696)
- [x] [azure-openapi-validator to npm - staging](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=108) - [PR](https://github.com/Azure/azure-openapi-validator/pull/696)
- [x] [azure-uamqp-python - client to pypi](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=23) - [PR](https://github.com/Azure/azure-uamqp-python/pull/392)
- [x] [Publish to npmjs.com (windowsazure)](https://dev.azure.com/azure-public/azsdk/_release?view=mine&definitionId=1&_a=releases) - [PR](https://github.com/Azure/oav/pull/1031)
- [x] [js - tools to npm - publish (@azure)](https://dev.azure.com/azure-sdk/internal/_release?_a=releases&view=mine&definitionId=24)
- [Avocado](https://www.npmjs.com/package/@azure/avocado)
- [oad](https://www.npmjs.com/package/@azure/oad)
- [public.rest-api-specs-scripts](https://dev.azure.com/azure-sdk/public/_build/index?definitionId=221)
- We have transitioned the source of this package from the public repo [here](https://github.com/Azure/rest-api-specs-scripts?tab=readme-ov-file) to the internal repo [here](https://devdiv.visualstudio.com/DevDiv/_git/openapi-alps?path=%2Fpublic%2Frest-api-specs-scripts%2Fpackage.json&_a=contents&version=GBmain).
- [x] [kebab-container-app-release](https://dev.azure.com/devdiv/DevDiv/_release?_a=releases&view=mine&definitionId=3334) -- [PR](https://dev.azure.com/devdiv/DevDiv/_git/openapi-alps/pullrequest/558608?_a=files)
- Feeds off of `openapi-publish`
Need to mark as non-production or otherwise transition each of the above builds. At the very minimum the release builds need to be transitioned to yml.
Contributor guide
Assessment
This issue has not been assessed yet.