Diff of the two buildlogs: -- --- b1/build.log 2025-09-30 22:59:09.099066606 +0000 +++ b2/build.log 2025-09-30 23:00:20.383143722 +0000 @@ -1,6 +1,6 @@ I: pbuilder: network access will be disabled during build -I: Current time: Mon Nov 2 17:20:52 -12 2026 -I: pbuilder-time-stamp: 1793683252 +I: Current time: Wed Oct 1 12:59:10 +14 2025 +I: pbuilder-time-stamp: 1759273150 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/forky-reproducible-base.tgz] I: copying local configuration @@ -24,53 +24,85 @@ dpkg-source: info: applying auto-gitignore I: using fakeroot in build. I: Installing the build-deps -I: user script /srv/workspace/pbuilder/3687536/tmp/hooks/D02_print_environment starting +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/D01_modify_environment starting +debug: Running on codethink04-arm64. +I: Changing host+domainname to test build reproducibility +I: Adding a custom variable just for the fun of it... +I: Changing /bin/sh to bash +'/bin/sh' -> '/bin/bash' +lrwxrwxrwx 1 root root 9 Sep 30 22:59 /bin/sh -> /bin/bash +I: Setting pbuilder2's login shell to /bin/bash +I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/D01_modify_environment finished +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/D02_print_environment starting I: set - BUILDDIR='/build/reproducible-path' - BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' - BUILDUSERNAME='pbuilder1' - BUILD_ARCH='arm64' - DEBIAN_FRONTEND='noninteractive' + BASH=/bin/sh + BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath + BASH_ALIASES=() + BASH_ARGC=() + BASH_ARGV=() + BASH_CMDS=() + BASH_LINENO=([0]="12" [1]="0") + BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:. + BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment") + BASH_VERSINFO=([0]="5" [1]="3" [2]="3" [3]="1" [4]="release" [5]="aarch64-unknown-linux-gnu") + BASH_VERSION='5.3.3(1)-release' + BUILDDIR=/build/reproducible-path + BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other' + BUILDUSERNAME=pbuilder2 + BUILD_ARCH=arm64 + DEBIAN_FRONTEND=noninteractive DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=12 ' - DISTRIBUTION='forky' - HOME='/root' - HOST_ARCH='arm64' + DIRSTACK=() + DISTRIBUTION=forky + EUID=0 + FUNCNAME=([0]="Echo" [1]="main") + GROUPS=() + HOME=/root + HOSTNAME=i-capture-the-hostname + HOSTTYPE=aarch64 + HOST_ARCH=arm64 IFS=' ' - INVOCATION_ID='074dda79d80b4c8188c898edf45d2c23' - LANG='C' - LANGUAGE='en_US:en' - LC_ALL='C' - MAIL='/var/mail/root' - OPTIND='1' - PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' - PBCURRENTCOMMANDLINEOPERATION='build' - PBUILDER_OPERATION='build' - PBUILDER_PKGDATADIR='/usr/share/pbuilder' - PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' - PBUILDER_SYSCONFDIR='/etc' - PPID='3687536' - PS1='# ' - PS2='> ' + INVOCATION_ID=a32c4548f76b4394a759cc55fc26b942 + LANG=C + LANGUAGE=nl_BE:nl + LC_ALL=C + MACHTYPE=aarch64-unknown-linux-gnu + MAIL=/var/mail/root + OPTERR=1 + OPTIND=1 + OSTYPE=linux-gnu + PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path + PBCURRENTCOMMANDLINEOPERATION=build + PBUILDER_OPERATION=build + PBUILDER_PKGDATADIR=/usr/share/pbuilder + PBUILDER_PKGLIBDIR=/usr/lib/pbuilder + PBUILDER_SYSCONFDIR=/etc + PIPESTATUS=([0]="0") + POSIXLY_CORRECT=y + PPID=1612543 PS4='+ ' - PWD='/' - SHELL='/bin/bash' - SHLVL='2' - SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.716kCpoO/pbuilderrc_yVOT --distribution forky --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/forky-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.716kCpoO/b1 --logfile b1/build.log golang-github-google-go-attestation_0.5.1-2.dsc' - SUDO_GID='109' - SUDO_HOME='/var/lib/jenkins' - SUDO_UID='104' - SUDO_USER='jenkins' - TERM='unknown' - TZ='/usr/share/zoneinfo/Etc/GMT+12' - USER='root' - _='/usr/bin/systemd-run' - http_proxy='http://192.168.101.4:3128' + PWD=/ + SHELL=/bin/bash + SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix + SHLVL=3 + SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.716kCpoO/pbuilderrc_yZZ6 --distribution forky --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/forky-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.716kCpoO/b2 --logfile b2/build.log golang-github-google-go-attestation_0.5.1-2.dsc' + SUDO_GID=109 + SUDO_HOME=/var/lib/jenkins + SUDO_UID=104 + SUDO_USER=jenkins + TERM=unknown + TZ=/usr/share/zoneinfo/Etc/GMT-14 + UID=0 + USER=root + _='I: set' + http_proxy=http://192.168.101.4:3128 I: uname -a - Linux codethink03-arm64 6.12.48+deb13-cloud-arm64 #1 SMP Debian 6.12.48-1 (2025-09-20) aarch64 GNU/Linux + Linux i-capture-the-hostname 6.12.48+deb13-cloud-arm64 #1 SMP Debian 6.12.48-1 (2025-09-20) aarch64 GNU/Linux I: ls -l /bin - lrwxrwxrwx 1 root root 7 Aug 10 2025 /bin -> usr/bin -I: user script /srv/workspace/pbuilder/3687536/tmp/hooks/D02_print_environment finished + lrwxrwxrwx 1 root root 7 Aug 10 12:30 /bin -> usr/bin +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy @@ -83,7 +115,7 @@ Depends: debhelper-compat (= 13), dh-sequence-golang, golang-any, golang-github-google-go-tpm-dev, golang-github-google-go-tspi-dev, help2man dpkg-deb: building package 'pbuilder-satisfydepends-dummy' in '/tmp/satisfydepends-aptitude/pbuilder-satisfydepends-dummy.deb'. Selecting previously unselected package pbuilder-satisfydepends-dummy. -(Reading database ... 20000 files and directories currently installed.) +(Reading database ... 20021 files and directories currently installed.) Preparing to unpack .../pbuilder-satisfydepends-dummy.deb ... Unpacking pbuilder-satisfydepends-dummy (0.invalid.0) ... dpkg: pbuilder-satisfydepends-dummy: dependency problems, but configuring anyway as you requested: @@ -210,10 +242,10 @@ Get: 92 http://deb.debian.org/debian forky/main arm64 golang-github-google-go-tpm-dev all 0.9.5-1 [278 kB] Get: 93 http://deb.debian.org/debian forky/main arm64 golang-github-google-go-tspi-dev all 0.3.0-2 [31.8 kB] Get: 94 http://deb.debian.org/debian forky/main arm64 help2man arm64 1.49.3+b1 [198 kB] -Fetched 72.9 MB in 1s (115 MB/s) +Fetched 72.9 MB in 0s (175 MB/s) Preconfiguring packages ... Selecting previously unselected package liblocale-gettext-perl. -(Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 20000 files and directories currently installed.) +(Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 20021 files and directories currently installed.) Preparing to unpack .../00-liblocale-gettext-perl_1.07-7+b1_arm64.deb ... Unpacking liblocale-gettext-perl (1.07-7+b1) ... Selecting previously unselected package tzdata. @@ -526,8 +558,8 @@ Setting up tzdata (2025b-5) ... Current default time zone: 'Etc/UTC' -Local time is now: Tue Nov 3 05:21:23 UTC 2026. -Universal Time is now: Tue Nov 3 05:21:23 UTC 2026. +Local time is now: Tue Sep 30 22:59:40 UTC 2025. +Universal Time is now: Tue Sep 30 22:59:40 UTC 2025. Run 'dpkg-reconfigure tzdata' if you wish to change it. Setting up golang-github-spf13-pflag-dev (1.0.10-1) ... @@ -612,7 +644,11 @@ fakeroot is already the newest version (1.37.1.2-1). 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. I: Building the package -I: Running cd /build/reproducible-path/golang-github-google-go-attestation-0.5.1/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../golang-github-google-go-attestation_0.5.1-2_source.changes +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/A99_set_merged_usr starting +Not re-configuring usrmerge for forky +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/A99_set_merged_usr finished +hostname: Name or service not known +I: Running cd /build/reproducible-path/golang-github-google-go-attestation-0.5.1/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S > ../golang-github-google-go-attestation_0.5.1-2_source.changes dpkg-buildpackage: info: source package golang-github-google-go-attestation dpkg-buildpackage: info: source version 0.5.1-2 dpkg-buildpackage: info: source distribution unstable @@ -631,137 +667,137 @@ dh_auto_configure -O--builddirectory=_build -O--buildsystem=golang dh_auto_build -O--builddirectory=_build -O--buildsystem=golang cd _build && go install -trimpath -v -p 12 github.com/google/go-attestation/attest github.com/google/go-attestation/attest/attest-tool github.com/google/go-attestation/attest/attest-tool/internal github.com/google/go-attestation/attest/attest-tool/internal/eventlog github.com/google/go-attestation/attest/internal github.com/google/go-attestation/attributecert github.com/google/go-attestation/oid github.com/google/go-attestation/x509 -internal/byteorder -internal/unsafeheader -internal/godebugs -internal/coverage/rtcov internal/goos -internal/asan internal/goarch -internal/msan +internal/coverage/rtcov +internal/byteorder +internal/asan internal/profilerecord +internal/runtime/math +internal/msan +internal/unsafeheader +internal/godebugs internal/goexperiment -internal/cpu internal/runtime/syscall +internal/chacha8rand math/bits -unicode +internal/cpu +internal/abi +sync/atomic unicode/utf8 +unicode crypto/internal/fips140/alias -internal/itoa -sync/atomic crypto/internal/fips140deps/byteorder +internal/itoa cmp crypto/internal/boring/sig crypto/internal/fips140/subtle -internal/abi -internal/chacha8rand -internal/runtime/math unicode/utf16 vendor/golang.org/x/crypto/cryptobyte/asn1 internal/nettrace +math encoding log/internal golang.org/x/crypto/cryptobyte/asn1 github.com/google/go-tspi/tspiconst +github.com/google/go-attestation/oid internal/bytealg +internal/runtime/sys internal/runtime/atomic crypto/internal/fips140deps/cpu -internal/runtime/sys -github.com/google/go-attestation/oid -math -internal/stringslite internal/runtime/exithook +internal/stringslite internal/race internal/sync internal/runtime/maps runtime -internal/reflectlite +iter sync +internal/reflectlite crypto/subtle -iter weak -slices maps +slices errors -internal/singleflight +sort internal/bisect internal/testlog -sort +internal/singleflight unique -runtime/cgo io internal/oserror -math/rand/v2 path -vendor/golang.org/x/net/dns/dnsmessage strconv +math/rand/v2 +vendor/golang.org/x/net/dns/dnsmessage +runtime/cgo syscall +internal/godebug +bytes hash strings -internal/godebug +crypto/internal/fips140deps/godebug crypto/internal/randutil -bytes -net/netip -reflect crypto -crypto/internal/fips140deps/godebug math/rand -crypto/internal/fips140 +reflect +net/netip crypto/internal/impl -crypto/internal/fips140/sha3 +crypto/internal/fips140 crypto/internal/fips140/sha256 crypto/internal/fips140/sha512 -internal/syscall/unix +crypto/internal/fips140/sha3 internal/syscall/execenv +internal/syscall/unix time crypto/sha3 crypto/internal/fips140/hmac -crypto/internal/fips140hash crypto/internal/fips140/check +crypto/internal/fips140hash crypto/internal/fips140/aes +crypto/internal/fips140/nistec/fiat crypto/internal/fips140/edwards25519/field crypto/internal/fips140/bigmod -crypto/internal/fips140/nistec/fiat crypto/internal/fips140/edwards25519 -internal/poll -context io/fs +context +internal/poll crypto/internal/fips140/nistec internal/filepathlite os encoding/binary internal/fmtsort crypto/internal/sysrand -path/filepath fmt +path/filepath +net crypto/internal/entropy +encoding/base64 +golang.org/x/sys/unix crypto/internal/fips140/drbg -crypto/internal/fips140/aes/gcm +encoding/pem crypto/internal/fips140only crypto/internal/fips140/ecdh crypto/internal/fips140/ecdsa crypto/internal/fips140/rsa crypto/internal/fips140/ed25519 +crypto/internal/fips140/aes/gcm crypto/md5 -net -encoding/base64 -golang.org/x/sys/unix crypto/cipher +encoding/hex +encoding/json +log +math/big +net/url crypto/internal/boring -encoding/pem crypto/des +flag crypto/ecdh crypto/sha512 +crypto/aes +crypto/sha1 crypto/sha256 crypto/hmac -crypto/sha1 -crypto/aes -encoding/hex -encoding/json -log -net/url -flag -math/big crypto/elliptic crypto/internal/boring/bbig encoding/asn1 @@ -772,19 +808,19 @@ crypto/ed25519 golang.org/x/crypto/ed25519 github.com/google/certificate-transparency-go/x509/pkix -vendor/golang.org/x/crypto/cryptobyte crypto/x509/pkix golang.org/x/crypto/cryptobyte +vendor/golang.org/x/crypto/cryptobyte github.com/google/go-attestation/x509 crypto/ecdsa github.com/google/certificate-transparency-go/tls +github.com/google/certificate-transparency-go/x509 github.com/google/go-tpm/tpmutil crypto/x509 -github.com/google/certificate-transparency-go/x509 -github.com/google/go-tpm/legacy/tpm2 github.com/google/go-tpm/tpm -github.com/google/go-tspi/verification +github.com/google/go-tpm/legacy/tpm2 github.com/google/go-tpm/legacy/tpm2/credactivation +github.com/google/go-tspi/verification github.com/google/go-attestation/attest/internal github.com/google/go-attestation/attributecert github.com/google/go-attestation/attest @@ -869,7 +905,7 @@ === RUN TestAppendEvents --- PASS: TestAppendEvents (0.00s) === RUN TestSecureBoot ---- PASS: TestSecureBoot (0.01s) +--- PASS: TestSecureBoot (0.00s) === RUN TestSecureBootBug157 --- PASS: TestSecureBootBug157 (0.00s) === RUN TestSecureBootOptionRom @@ -881,13 +917,13 @@ === RUN TestIntelEKURL --- PASS: TestIntelEKURL (0.00s) === RUN TestParseWinEvents ---- PASS: TestParseWinEvents (0.01s) +--- PASS: TestParseWinEvents (0.00s) === RUN TestExampleAK --- SKIP: TestExampleAK (0.00s) === RUN TestExampleTPM --- SKIP: TestExampleTPM (0.00s) PASS -ok github.com/google/go-attestation/attest 0.065s +ok github.com/google/go-attestation/attest 0.037s ? github.com/google/go-attestation/attest/attest-tool [no test files] ? github.com/google/go-attestation/attest/attest-tool/internal [no test files] === RUN TestParseSecureBootWindows @@ -895,17 +931,17 @@ === RUN TestParseSecureBootLinux --- PASS: TestParseSecureBootLinux (0.00s) PASS -ok github.com/google/go-attestation/attest/attest-tool/internal/eventlog 0.024s +ok github.com/google/go-attestation/attest/attest-tool/internal/eventlog 0.020s === RUN TestParseUEFIVariableData --- PASS: TestParseUEFIVariableData (0.00s) PASS -ok github.com/google/go-attestation/attest/internal 0.031s +ok github.com/google/go-attestation/attest/internal 0.019s === RUN TestVerifyAttributeCert --- PASS: TestVerifyAttributeCert (0.00s) === RUN TestParseAttributeCerts ---- PASS: TestParseAttributeCerts (0.01s) +--- PASS: TestParseAttributeCerts (0.00s) PASS -ok github.com/google/go-attestation/attributecert 0.034s +ok github.com/google/go-attestation/attributecert 0.023s ? github.com/google/go-attestation/oid [no test files] ? github.com/google/go-attestation/x509 [no test files] create-stamp debian/debhelper-build-stamp @@ -922,7 +958,7 @@ mkdir -pv /build/reproducible-path/golang-github-google-go-attestation-0.5.1/debian/tmp/usr/share/man/man1 mkdir: created directory '/build/reproducible-path/golang-github-google-go-attestation-0.5.1/debian/tmp/usr/share/man' mkdir: created directory '/build/reproducible-path/golang-github-google-go-attestation-0.5.1/debian/tmp/usr/share/man/man1' -env PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/build/reproducible-path/golang-github-google-go-attestation-0.5.1/debian/tmp/usr/bin \ +env PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path:/build/reproducible-path/golang-github-google-go-attestation-0.5.1/debian/tmp/usr/bin \ help2man \ --no-info \ --no-discard-stderr \ @@ -947,9 +983,9 @@ dh_gencontrol -O--builddirectory=_build -O--buildsystem=golang dh_md5sums -O--builddirectory=_build -O--buildsystem=golang dh_builddeb -O--builddirectory=_build -O--buildsystem=golang -dpkg-deb: building package 'attest-tool-dbgsym' in '../attest-tool-dbgsym_0.5.1-2_arm64.deb'. -dpkg-deb: building package 'attest-tool' in '../attest-tool_0.5.1-2_arm64.deb'. dpkg-deb: building package 'golang-github-google-go-attestation-dev' in '../golang-github-google-go-attestation-dev_0.5.1-2_all.deb'. +dpkg-deb: building package 'attest-tool' in '../attest-tool_0.5.1-2_arm64.deb'. +dpkg-deb: building package 'attest-tool-dbgsym' in '../attest-tool-dbgsym_0.5.1-2_arm64.deb'. dpkg-genbuildinfo --build=binary -O../golang-github-google-go-attestation_0.5.1-2_arm64.buildinfo dpkg-genchanges --build=binary -O../golang-github-google-go-attestation_0.5.1-2_arm64.changes dpkg-genchanges: info: binary-only upload (no source code included) @@ -957,12 +993,14 @@ dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: not including original source code in upload I: copying local configuration +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/B01_cleanup starting +I: user script /srv/workspace/pbuilder/1612543/tmp/hooks/B01_cleanup finished I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env -I: removing directory /srv/workspace/pbuilder/3687536 and its subdirectories -I: Current time: Mon Nov 2 17:22:08 -12 2026 -I: pbuilder-time-stamp: 1793683328 +I: removing directory /srv/workspace/pbuilder/1612543 and its subdirectories +I: Current time: Wed Oct 1 13:00:19 +14 2025 +I: pbuilder-time-stamp: 1759273219