From b995a7f413158f5b185f6ca6d91433ff2473fbfc Mon Sep 17 00:00:00 2001 From: Ludy87 Date: Tue, 2 Dec 2025 15:07:44 +0100 Subject: [PATCH] Update release workflows for RPM and signing logic Added RPM package to multiOS release artifacts. Improved Windows signing logic in tauri-build workflow with detailed conditions for enabling signing. --- .github/workflows/multiOSReleases.yml | 1 + .github/workflows/tauri-build.yml | 7 ++++++- 2 files changed, 7 insertions(+), 1 deletion(-) diff --git a/.github/workflows/multiOSReleases.yml b/.github/workflows/multiOSReleases.yml index 0625cf90d2..5002dcb7ac 100644 --- a/.github/workflows/multiOSReleases.yml +++ b/.github/workflows/multiOSReleases.yml @@ -654,6 +654,7 @@ jobs: ./artifacts/**/Stirling-PDF-*.msi ./artifacts/**/Stirling-PDF-*.dmg ./artifacts/**/Stirling-PDF-*.deb + ./artifacts/**/Stirling-PDF-*.rpm ./artifacts/**/Stirling-PDF-*.AppImage draft: false prerelease: false diff --git a/.github/workflows/tauri-build.yml b/.github/workflows/tauri-build.yml index ad6f29cd36..ba1562b5b7 100644 --- a/.github/workflows/tauri-build.yml +++ b/.github/workflows/tauri-build.yml @@ -404,7 +404,12 @@ jobs: TAURI_SIGNING_PRIVATE_KEY_PASSWORD: ${{ secrets.TAURI_SIGNING_PRIVATE_KEY_PASSWORD }} VITE_SUPABASE_PUBLISHABLE_DEFAULT_KEY: ${{ secrets.VITE_SUPABASE_PUBLISHABLE_DEFAULT_KEY }} VITE_SAAS_SERVER_URL: ${{ secrets.VITE_SAAS_SERVER_URL }} - # Only enable Windows signing in Tauri when on main + # Enable Windows signing only when ALL of the following are true: + # - The build is running on the Windows platform (matrix.platform == 'windows-latest') + # - The build is triggered from the main branch (github.ref == 'refs/heads/main') + # - The DigiCert KeyLocker HSM is NOT being used (env.SM_API_KEY == '') + # - A Windows certificate is available (env.WINDOWS_CERTIFICATE != '') + # If all conditions are met, SIGN=1 (enable signing); otherwise, SIGN=0 (disable signing). SIGN: ${{ (matrix.platform == 'windows-latest' && github.ref == 'refs/heads/main' && env.SM_API_KEY == '' && env.WINDOWS_CERTIFICATE != '') && '1' || '0' }} CI: true with: