Diff of the two buildlogs: -- --- b1/build.log 2025-08-02 10:25:06.933574884 +0000 +++ b2/build.log 2025-08-02 10:26:36.625689282 +0000 @@ -1,6 +1,6 @@ I: pbuilder: network access will be disabled during build -I: Current time: Fri Sep 4 04:46:44 -12 2026 -I: pbuilder-time-stamp: 1788540404 +I: Current time: Sun Aug 3 00:25:09 +14 2025 +I: pbuilder-time-stamp: 1754130309 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/trixie-reproducible-base.tgz] I: copying local configuration @@ -22,52 +22,84 @@ dpkg-source: info: unpacking golang-github-openpubkey-openpubkey_0.8.0-1.debian.tar.xz I: Not using root during the build. I: Installing the build-deps -I: user script /srv/workspace/pbuilder/566579/tmp/hooks/D02_print_environment starting +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/D01_modify_environment starting +debug: Running on codethink04-arm64. +I: Changing host+domainname to test build reproducibility +I: Adding a custom variable just for the fun of it... +I: Changing /bin/sh to bash +'/bin/sh' -> '/bin/bash' +lrwxrwxrwx 1 root root 9 Aug 2 10:25 /bin/sh -> /bin/bash +I: Setting pbuilder2's login shell to /bin/bash +I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/D01_modify_environment finished +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/D02_print_environment starting I: set - BUILDDIR='/build/reproducible-path' - BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' - BUILDUSERNAME='pbuilder1' - BUILD_ARCH='arm64' - DEBIAN_FRONTEND='noninteractive' + BASH=/bin/sh + BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath + BASH_ALIASES=() + BASH_ARGC=() + BASH_ARGV=() + BASH_CMDS=() + BASH_LINENO=([0]="12" [1]="0") + BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:. + BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment") + BASH_VERSINFO=([0]="5" [1]="2" [2]="37" [3]="1" [4]="release" [5]="aarch64-unknown-linux-gnu") + BASH_VERSION='5.2.37(1)-release' + BUILDDIR=/build/reproducible-path + BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other' + BUILDUSERNAME=pbuilder2 + BUILD_ARCH=arm64 + DEBIAN_FRONTEND=noninteractive DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=12 ' - DISTRIBUTION='trixie' - HOME='/root' - HOST_ARCH='arm64' + DIRSTACK=() + DISTRIBUTION=trixie + EUID=0 + FUNCNAME=([0]="Echo" [1]="main") + GROUPS=() + HOME=/root + HOSTNAME=i-capture-the-hostname + HOSTTYPE=aarch64 + HOST_ARCH=arm64 IFS=' ' - INVOCATION_ID='c6b5d5be18a141a78d2094443bc5155f' - LANG='C' - LANGUAGE='en_US:en' - LC_ALL='C' - MAIL='/var/mail/root' - OPTIND='1' - PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' - PBCURRENTCOMMANDLINEOPERATION='build' - PBUILDER_OPERATION='build' - PBUILDER_PKGDATADIR='/usr/share/pbuilder' - PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' - PBUILDER_SYSCONFDIR='/etc' - PPID='566579' - PS1='# ' - PS2='> ' + INVOCATION_ID=161da0a0886e4c3495e80e5553c9dc26 + LANG=C + LANGUAGE=nl_BE:nl + LC_ALL=C + MACHTYPE=aarch64-unknown-linux-gnu + MAIL=/var/mail/root + OPTERR=1 + OPTIND=1 + OSTYPE=linux-gnu + PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path + PBCURRENTCOMMANDLINEOPERATION=build + PBUILDER_OPERATION=build + PBUILDER_PKGDATADIR=/usr/share/pbuilder + PBUILDER_PKGLIBDIR=/usr/lib/pbuilder + PBUILDER_SYSCONFDIR=/etc + PIPESTATUS=([0]="0") + POSIXLY_CORRECT=y + PPID=1484755 PS4='+ ' - PWD='/' - SHELL='/bin/bash' - SHLVL='2' - SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.2X1CJ5Um/pbuilderrc_Gqzl --distribution trixie --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/trixie-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.2X1CJ5Um/b1 --logfile b1/build.log golang-github-openpubkey-openpubkey_0.8.0-1.dsc' - SUDO_GID='109' - SUDO_UID='104' - SUDO_USER='jenkins' - TERM='unknown' - TZ='/usr/share/zoneinfo/Etc/GMT+12' - USER='root' - _='/usr/bin/systemd-run' - http_proxy='http://192.168.101.4:3128' + PWD=/ + SHELL=/bin/bash + SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix + SHLVL=3 + SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.2X1CJ5Um/pbuilderrc_78qk --distribution trixie --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/trixie-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.2X1CJ5Um/b2 --logfile b2/build.log golang-github-openpubkey-openpubkey_0.8.0-1.dsc' + SUDO_GID=109 + SUDO_UID=104 + SUDO_USER=jenkins + TERM=unknown + TZ=/usr/share/zoneinfo/Etc/GMT-14 + UID=0 + USER=root + _='I: set' + http_proxy=http://192.168.101.4:3128 I: uname -a - Linux codethink03-arm64 6.1.0-37-cloud-arm64 #1 SMP Debian 6.1.140-1 (2025-05-22) aarch64 GNU/Linux + Linux i-capture-the-hostname 6.1.0-37-cloud-arm64 #1 SMP Debian 6.1.140-1 (2025-05-22) aarch64 GNU/Linux I: ls -l /bin - lrwxrwxrwx 1 root root 7 May 12 2025 /bin -> usr/bin -I: user script /srv/workspace/pbuilder/566579/tmp/hooks/D02_print_environment finished + lrwxrwxrwx 1 root root 7 May 12 19:25 /bin -> usr/bin +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy @@ -281,7 +313,7 @@ Get: 152 http://deb.debian.org/debian trixie/main arm64 golang-opentelemetry-proto-dev all 1.3.1-2 [48.3 kB] Get: 153 http://deb.debian.org/debian trixie/main arm64 golang-opentelemetry-otel-dev all 1.31.0-4 [519 kB] Get: 154 http://deb.debian.org/debian trixie/main arm64 golang-github-zitadel-oidc-dev all 3.37.0-1 [141 kB] -Fetched 136 MB in 1s (132 MB/s) +Fetched 136 MB in 1s (233 MB/s) Preconfiguring packages ... Selecting previously unselected package golang-golang-x-sys-dev. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 19965 files and directories currently installed.) @@ -912,7 +944,11 @@ Building tag database... -> Finished parsing the build-deps I: Building the package -I: Running cd /build/reproducible-path/golang-github-openpubkey-openpubkey-0.8.0/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../golang-github-openpubkey-openpubkey_0.8.0-1_source.changes +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/A99_set_merged_usr starting +Not re-configuring usrmerge for trixie +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/A99_set_merged_usr finished +hostname: Name or service not known +I: Running cd /build/reproducible-path/golang-github-openpubkey-openpubkey-0.8.0/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S > ../golang-github-openpubkey-openpubkey_0.8.0-1_source.changes dpkg-buildpackage: info: source package golang-github-openpubkey-openpubkey dpkg-buildpackage: info: source version 0.8.0-1 dpkg-buildpackage: info: source distribution unstable @@ -931,51 +967,51 @@ dh_auto_configure -O--builddirectory=_build -O--buildsystem=golang dh_auto_build -O--builddirectory=_build -O--buildsystem=golang cd _build && go install -trimpath -v -p 12 github.com/openpubkey/openpubkey/cert github.com/openpubkey/openpubkey/client github.com/openpubkey/openpubkey/client/choosers github.com/openpubkey/openpubkey/cosigner github.com/openpubkey/openpubkey/cosigner/mocks github.com/openpubkey/openpubkey/cosigner/msgs github.com/openpubkey/openpubkey/discover github.com/openpubkey/openpubkey/gq github.com/openpubkey/openpubkey/oidc github.com/openpubkey/openpubkey/pktoken github.com/openpubkey/openpubkey/pktoken/clientinstance github.com/openpubkey/openpubkey/pktoken/mocks github.com/openpubkey/openpubkey/providers github.com/openpubkey/openpubkey/providers/mocks github.com/openpubkey/openpubkey/util github.com/openpubkey/openpubkey/verifier +internal/msan internal/byteorder -internal/godebugs -internal/unsafeheader -internal/goarch +internal/asan +internal/goos internal/coverage/rtcov +internal/goarch internal/goexperiment -internal/asan -internal/msan -math/bits internal/profilerecord -sync/atomic +internal/unsafeheader internal/runtime/syscall -internal/cpu -internal/goos -internal/runtime/math -internal/abi -internal/chacha8rand +sync/atomic +internal/godebugs +math/bits unicode/utf8 -crypto/internal/fips140/alias unicode -crypto/internal/fips140deps/byteorder internal/itoa +crypto/internal/fips140/alias +crypto/internal/fips140deps/byteorder +internal/cpu cmp crypto/internal/boring/sig +internal/abi +internal/runtime/math +crypto/internal/fips140/subtle +internal/chacha8rand unicode/utf16 +math vendor/golang.org/x/crypto/cryptobyte/asn1 -crypto/internal/fips140/subtle internal/nettrace encoding container/list -math -internal/runtime/atomic -internal/bytealg -internal/runtime/sys -crypto/internal/fips140deps/cpu vendor/golang.org/x/crypto/internal/alias log/internal github.com/openpubkey/openpubkey/cosigner/msgs golang.org/x/crypto/internal/alias -log/slog/internal golang.org/x/crypto/salsa20/salsa +log/slog/internal go.opentelemetry.io/otel/metric/embedded go.opentelemetry.io/otel/trace/embedded golang.org/x/exp/maps github.com/zitadel/oidc/pkg/oidc/grants/tokenexchange +internal/bytealg +internal/runtime/sys +crypto/internal/fips140deps/cpu +internal/runtime/atomic internal/runtime/exithook internal/stringslite internal/race @@ -983,42 +1019,45 @@ internal/runtime/maps go.opentelemetry.io/otel/internal runtime +iter internal/reflectlite -crypto/subtle weak -iter sync -slices +crypto/subtle maps +slices +errors +sort internal/bisect +log/slog/internal/buffer internal/testlog internal/singleflight unique -log/slog/internal/buffer -errors -sort runtime/cgo io -strconv internal/oserror +strconv path math/rand/v2 vendor/golang.org/x/net/dns/dnsmessage syscall internal/godebug hash +crypto/internal/fips140deps/godebug bytes crypto -internal/saferio -strings crypto/internal/randutil +net/netip +internal/saferio reflect -crypto/internal/fips140deps/godebug +strings math/rand golang.org/x/text/internal/tag -net/netip hash/crc32 vendor/golang.org/x/text/transform +internal/syscall/execenv +time +internal/syscall/unix crypto/internal/fips140 crypto/internal/impl bufio @@ -1026,107 +1065,104 @@ regexp/syntax net/http/internal/testcert html +crypto/internal/fips140/sha256 crypto/tls/internal/fips140tls crypto/internal/fips140/sha3 -crypto/internal/fips140/sha256 crypto/internal/fips140/sha512 -internal/syscall/unix -time -internal/syscall/execenv crypto/sha3 crypto/internal/fips140/hmac crypto/internal/fips140hash crypto/internal/fips140/check crypto/internal/fips140/aes +crypto/internal/fips140/nistec/fiat crypto/internal/fips140/edwards25519/field crypto/internal/fips140/bigmod crypto/internal/fips140/hkdf crypto/internal/fips140/tls12 -crypto/internal/fips140/nistec/fiat -crypto/internal/fips140/tls13 regexp +crypto/internal/fips140/tls13 crypto/internal/fips140/edwards25519 io/fs -context internal/poll +context +go.opentelemetry.io/otel/internal/baggage internal/filepathlite embed -go.opentelemetry.io/otel/internal/baggage os crypto/internal/fips140/nistec internal/fmtsort go.opentelemetry.io/otel/internal/attribute encoding/binary encoding/base64 -vendor/golang.org/x/crypto/internal/poly1305 -golang.org/x/crypto/internal/poly1305 golang.org/x/crypto/blake2b +golang.org/x/crypto/internal/poly1305 +vendor/golang.org/x/crypto/internal/poly1305 golang.org/x/sys/unix -golang.org/x/crypto/nacl/secretbox -encoding/pem crypto/internal/sysrand +fmt path/filepath golang.org/x/sys/cpu -io/ioutil -fmt os/signal +io/ioutil +golang.org/x/crypto/nacl/secretbox internal/sysinfo +encoding/pem crypto/internal/entropy crypto/internal/fips140/drbg -crypto/internal/fips140/aes/gcm +os/exec +golang.org/x/crypto/sha3 crypto/internal/fips140only -crypto/internal/fips140/ed25519 crypto/internal/fips140/rsa -golang.org/x/crypto/sha3 +crypto/internal/fips140/ed25519 crypto/internal/fips140/mlkem -os/exec +crypto/internal/fips140/aes/gcm crypto/md5 crypto/rc4 crypto/internal/fips140/ecdh -crypto/internal/fips140/ecdsa net -crypto/cipher +crypto/internal/fips140/ecdsa encoding/hex +github.com/lestrrat-go/iter/mapiter net/url math/big encoding/json -github.com/lestrrat-go/option github.com/lestrrat-go/jwx/internal/base64 -github.com/lestrrat-go/httpcc +github.com/lestrrat-go/option github.com/lestrrat-go/blackmagic -github.com/lestrrat-go/iter/mapiter +crypto/cipher github.com/lestrrat-go/jwx/jwa +github.com/lestrrat-go/httpcc compress/flate +log +github.com/lestrrat-go/jwx/internal/iter +vendor/golang.org/x/text/unicode/norm +vendor/golang.org/x/net/http2/hpack crypto/internal/boring crypto/des vendor/golang.org/x/crypto/chacha20 -github.com/lestrrat-go/jwx/internal/iter -log +mime +mime/quotedprintable crypto/aes crypto/ecdh crypto/sha512 crypto/sha1 crypto/sha256 crypto/hmac -vendor/golang.org/x/text/unicode/norm -vendor/golang.org/x/net/http2/hpack -mime -vendor/golang.org/x/text/unicode/bidi +compress/gzip vendor/golang.org/x/crypto/chacha20poly1305 -mime/quotedprintable +vendor/golang.org/x/text/unicode/bidi net/http/internal github.com/lestrrat-go/iter/arrayiter golang.org/x/crypto/curve25519 database/sql/driver github.com/go-jose/go-jose/json golang.org/x/crypto/pbkdf2 -compress/gzip encoding/gob github.com/muhlemmer/gu github.com/zitadel/schema -vendor/golang.org/x/text/secure/bidirule golang.org/x/text/internal/language go.opentelemetry.io/otel/baggage +vendor/golang.org/x/text/secure/bidirule github.com/davecgh/go-spew/spew github.com/pmezard/go-difflib/difflib gopkg.in/yaml.v3 @@ -1134,55 +1170,55 @@ flag runtime/debug github.com/lestrrat-go/jwx/internal/json -log/slog crypto/rand -go.opentelemetry.io/otel/attribute crypto/dsa crypto/elliptic crypto/internal/boring/bbig encoding/asn1 -crypto/ed25519 -crypto/internal/hpke github.com/lestrrat-go/jwx/internal/pool +github.com/awnumar/memcall +filippo.io/bigmod +log/slog +github.com/sirupsen/logrus +crypto/ed25519 crypto/rsa +crypto/internal/hpke github.com/lestrrat-go/jwx/x25519 +github.com/awnumar/memguard/core golang.org/x/crypto/ed25519 -github.com/awnumar/memcall github.com/lestrrat-go/jwx/internal/ecutil -filippo.io/bigmod -github.com/sirupsen/logrus golang.org/x/text/internal/language/compact -github.com/awnumar/memguard/core +go.opentelemetry.io/otel/attribute go.opentelemetry.io/otel/codes -go.opentelemetry.io/otel/metric runtime/trace -go.opentelemetry.io/otel/trace -github.com/go-logr/logr -vendor/golang.org/x/crypto/cryptobyte -crypto/x509/pkix golang.org/x/text/language +text/template/parse +testing github.com/awnumar/memguard github.com/gorilla/securecookie -testing -text/template/parse -github.com/go-logr/logr/funcr +go.opentelemetry.io/otel/metric +go.opentelemetry.io/otel/trace +vendor/golang.org/x/crypto/cryptobyte +crypto/x509/pkix +github.com/go-logr/logr crypto/ecdsa -github.com/go-logr/stdr +github.com/go-logr/logr/funcr github.com/stretchr/testify/assert/yaml text/template +github.com/go-logr/stdr github.com/go-jose/go-jose/cipher html/template +vendor/golang.org/x/net/http/httpproxy net/textproto crypto/x509 -vendor/golang.org/x/net/http/httpproxy github.com/google/uuid vendor/golang.org/x/net/http/httpguts mime/multipart -github.com/openpubkey/openpubkey/util -crypto/tls github.com/lestrrat-go/jwx/cert -github.com/go-jose/go-jose github.com/lestrrat-go/jwx/jwk/internal/x509 +github.com/openpubkey/openpubkey/util +github.com/go-jose/go-jose +crypto/tls github.com/openpubkey/openpubkey/oidc github.com/zitadel/oidc/pkg/crypto net/http/httptrace @@ -1190,19 +1226,19 @@ github.com/lestrrat-go/httprc github.com/zitadel/logging golang.org/x/oauth2/internal -net/http/httptest go.opentelemetry.io/otel/propagation -go.opentelemetry.io/otel/internal/global +net/http/httptest golang.org/x/oauth2 -github.com/lestrrat-go/jwx/jwk +go.opentelemetry.io/otel/internal/global github.com/stretchr/testify/assert +github.com/lestrrat-go/jwx/jwk github.com/zitadel/oidc/pkg/oidc golang.org/x/oauth2/clientcredentials go.opentelemetry.io/otel github.com/zitadel/oidc/pkg/http github.com/zitadel/oidc/pkg/client -github.com/zitadel/oidc/pkg/client/rp github.com/stretchr/testify/require +github.com/zitadel/oidc/pkg/client/rp github.com/lestrrat-go/jwx/internal/keyconv github.com/lestrrat-go/jwx/jws github.com/openpubkey/openpubkey/pktoken/clientinstance @@ -1223,9 +1259,9 @@ dh_auto_test -- -skip='TestGoogleSelection/select_(google|azure|gitlab)' cd _build && go test -vet=off -v -p 12 -skip=TestGoogleSelection/select_\(google\|azure\|gitlab\) github.com/openpubkey/openpubkey/cert github.com/openpubkey/openpubkey/client github.com/openpubkey/openpubkey/client/choosers github.com/openpubkey/openpubkey/cosigner github.com/openpubkey/openpubkey/cosigner/mocks github.com/openpubkey/openpubkey/cosigner/msgs github.com/openpubkey/openpubkey/discover github.com/openpubkey/openpubkey/gq github.com/openpubkey/openpubkey/oidc github.com/openpubkey/openpubkey/pktoken github.com/openpubkey/openpubkey/pktoken/clientinstance github.com/openpubkey/openpubkey/pktoken/mocks github.com/openpubkey/openpubkey/providers github.com/openpubkey/openpubkey/providers/mocks github.com/openpubkey/openpubkey/util github.com/openpubkey/openpubkey/verifier === RUN TestCreateX509Cert ---- PASS: TestCreateX509Cert (0.94s) +--- PASS: TestCreateX509Cert (0.98s) PASS -ok github.com/openpubkey/openpubkey/cert 0.953s +ok github.com/openpubkey/openpubkey/cert 0.995s === RUN TestCosSimple --- PASS: TestCosSimple (0.00s) === RUN TestClient @@ -1235,49 +1271,49 @@ === RUN TestClient/with_GQ,_with_signer,_with_empty_extraClaims === RUN TestClient/with_GQ,_with_signer,_with_extraClaims === RUN TestClient/with_GQ,_with_extraClaims ---- PASS: TestClient (7.19s) - --- PASS: TestClient/without_GQ (0.62s) - --- PASS: TestClient/with_GQ (1.73s) - --- PASS: TestClient/with_GQ,_with_signer (1.66s) - --- PASS: TestClient/with_GQ,_with_signer,_with_empty_extraClaims (0.74s) - --- PASS: TestClient/with_GQ,_with_signer,_with_extraClaims (1.06s) - --- PASS: TestClient/with_GQ,_with_extraClaims (1.39s) +--- PASS: TestClient (7.51s) + --- PASS: TestClient/without_GQ (0.45s) + --- PASS: TestClient/with_GQ (0.85s) + --- PASS: TestClient/with_GQ,_with_signer (2.78s) + --- PASS: TestClient/with_GQ,_with_signer,_with_empty_extraClaims (1.26s) + --- PASS: TestClient/with_GQ,_with_signer,_with_extraClaims (0.58s) + --- PASS: TestClient/with_GQ,_with_extraClaims (1.58s) === RUN TestClientRefreshErrorHandling ---- PASS: TestClientRefreshErrorHandling (1.26s) +--- PASS: TestClientRefreshErrorHandling (0.98s) === RUN TestClientRefreshNotSupported ---- PASS: TestClientRefreshNotSupported (0.52s) +--- PASS: TestClientRefreshNotSupported (0.79s) PASS -ok github.com/openpubkey/openpubkey/client 8.989s +ok github.com/openpubkey/openpubkey/client 9.292s === RUN TestGoogleSelection === RUN TestGoogleSelection/select_bad_provider === RUN TestGoogleSelection/select_no_provider --- PASS: TestGoogleSelection (0.21s) - --- PASS: TestGoogleSelection/select_bad_provider (0.11s) + --- PASS: TestGoogleSelection/select_bad_provider (0.10s) --- PASS: TestGoogleSelection/select_no_provider (0.10s) === RUN TestDuplicateProviderError --- PASS: TestDuplicateProviderError (0.00s) === RUN TestIssuerToName --- PASS: TestIssuerToName (0.00s) PASS -ok github.com/openpubkey/openpubkey/client/choosers 0.242s +ok github.com/openpubkey/openpubkey/client/choosers 0.243s === RUN TestAuthIDs --- PASS: TestAuthIDs (0.00s) === RUN TestInitAuth ---- PASS: TestInitAuth (1.18s) +--- PASS: TestInitAuth (0.97s) === RUN TestRedeemAuthcode ---- PASS: TestRedeemAuthcode (1.63s) +--- PASS: TestRedeemAuthcode (1.55s) === RUN TestCanOnlyRedeemAuthcodeOnce ---- PASS: TestCanOnlyRedeemAuthcodeOnce (0.87s) +--- PASS: TestCanOnlyRedeemAuthcodeOnce (0.44s) === RUN TestNewAuthcodeFailure --- PASS: TestNewAuthcodeFailure (0.00s) === RUN TestAuthState ---- PASS: TestAuthState (0.62s) +--- PASS: TestAuthState (0.97s) === RUN TestSimpleCosigner ---- PASS: TestSimpleCosigner (1.28s) +--- PASS: TestSimpleCosigner (0.55s) === RUN TestCosignerVerifier ---- PASS: TestCosignerVerifier (0.88s) +--- PASS: TestCosignerVerifier (0.84s) PASS -ok github.com/openpubkey/openpubkey/cosigner 6.481s +ok github.com/openpubkey/openpubkey/cosigner 5.354s ? github.com/openpubkey/openpubkey/cosigner/mocks [no test files] ? github.com/openpubkey/openpubkey/cosigner/msgs [no test files] === RUN TestNewPublicKeyRecord @@ -1289,35 +1325,35 @@ discover_test.go:94: TestNewPublicKeyRecord: keyJson: map[string]string{"e":"AQAB", "kty":"RSA", "n":"vRIL3aZt-xVqOZgMOr71ltWe9YY2Wf_B28C4Jl2nBSTEcFnf_eqOHZ8yzUBbLc4Nti2_ETcCsTUNuzS368BWkSgxc45JBH1wFSoWNFUSXaPt8mRwJYTF0H32iNhw_tBb9mvdQVgVs4Ci0dVJRYiz-ilk3PeO8wzlwRuwWIsaKFYlMyOKG9DVFbg93DmP5Tjq3C3oJlATyhAiJJc1T2trEP8960an33dDEaWwVAHh3c_34meAO4R6kLzIq0JnSsZMYB9O_6bMyIlzxmdZ8F442SynCUHxhnIh3yZew-xDdeHr6Ofl7KeVUcvSiZP9X44CaVJvknXQbBYNl-H7YF5RgQ", "use":"sig"} === RUN TestNewPublicKeyRecord/alg_is_unknown discover_test.go:94: TestNewPublicKeyRecord: keyJson: map[string]string{"alg":"RS512", "e":"AQAB", "kty":"RSA", "n":"vRIL3aZt-xVqOZgMOr71ltWe9YY2Wf_B28C4Jl2nBSTEcFnf_eqOHZ8yzUBbLc4Nti2_ETcCsTUNuzS368BWkSgxc45JBH1wFSoWNFUSXaPt8mRwJYTF0H32iNhw_tBb9mvdQVgVs4Ci0dVJRYiz-ilk3PeO8wzlwRuwWIsaKFYlMyOKG9DVFbg93DmP5Tjq3C3oJlATyhAiJJc1T2trEP8960an33dDEaWwVAHh3c_34meAO4R6kLzIq0JnSsZMYB9O_6bMyIlzxmdZ8F442SynCUHxhnIh3yZew-xDdeHr6Ofl7KeVUcvSiZP9X44CaVJvknXQbBYNl-H7YF5RgQ", "use":"sig"} ---- PASS: TestNewPublicKeyRecord (0.00s) +--- PASS: TestNewPublicKeyRecord (0.01s) --- PASS: TestNewPublicKeyRecord/alg=RS256 (0.00s) --- PASS: TestNewPublicKeyRecord/alg=ES256 (0.00s) --- PASS: TestNewPublicKeyRecord/alg_is_missing (0.00s) --- PASS: TestNewPublicKeyRecord/alg_is_unknown (0.00s) === RUN TestPublicKeyFinder ---- PASS: TestPublicKeyFinder (1.84s) +--- PASS: TestPublicKeyFinder (2.33s) === RUN TestByTokenWhenOnePublicKey ---- PASS: TestByTokenWhenOnePublicKey (0.27s) +--- PASS: TestByTokenWhenOnePublicKey (0.34s) === RUN TestGQTokens ---- PASS: TestGQTokens (3.26s) +--- PASS: TestGQTokens (3.48s) PASS -ok github.com/openpubkey/openpubkey/discover 5.422s +ok github.com/openpubkey/openpubkey/discover 6.190s === RUN TestSignerISO --- PASS: TestSignerISO (0.00s) === RUN TestVerifierISO --- PASS: TestVerifierISO (0.00s) === RUN TestSignVerifyJWT ---- PASS: TestSignVerifyJWT (0.74s) +--- PASS: TestSignVerifyJWT (1.34s) === RUN TestGQ256SignJWT ---- PASS: TestGQ256SignJWT (0.75s) +--- PASS: TestGQ256SignJWT (1.94s) === RUN TestVerifyModifiedIdPayload ---- PASS: TestVerifyModifiedIdPayload (0.39s) +--- PASS: TestVerifyModifiedIdPayload (0.65s) === RUN TestVerifyModifiedGqPayload ---- PASS: TestVerifyModifiedGqPayload (0.58s) +--- PASS: TestVerifyModifiedGqPayload (0.49s) === RUN TestRejectUnsupportedPublicKey ---- PASS: TestRejectUnsupportedPublicKey (0.18s) +--- PASS: TestRejectUnsupportedPublicKey (0.50s) PASS -ok github.com/openpubkey/openpubkey/gq 2.664s +ok github.com/openpubkey/openpubkey/gq 4.952s === RUN TestJwsMarshaling === RUN TestJwsMarshaling/with_only_payload {"payload":"eyJhIjogIjEiLCAiYiI6IDJ9","signatures":[]} @@ -1349,7 +1385,7 @@ --- PASS: TestJwtCompare/Different_Issuers (0.00s) --- PASS: TestJwtCompare/Age_mismatch_t1_issued_after_t2 (0.00s) PASS -ok github.com/openpubkey/openpubkey/oidc 0.046s +ok github.com/openpubkey/openpubkey/oidc 0.025s === RUN TestBuildCompact === RUN TestBuildCompact/happy_case_one_tokens === RUN TestBuildCompact/happy_case_two_tokens @@ -1377,9 +1413,9 @@ --- PASS: TestFromCompact/malformed_Compact_PK_Token_(invalid_number_of_segments) (0.00s) --- PASS: TestFromCompact/malformed_Compact_PK_Token_(invalid_refreshed_ID_Token) (0.00s) === RUN TestVerifySignedMessage_TypOverride ---- PASS: TestVerifySignedMessage_TypOverride (0.32s) +--- PASS: TestVerifySignedMessage_TypOverride (0.57s) === RUN TestPkToken ---- PASS: TestPkToken (1.04s) +--- PASS: TestPkToken (0.62s) === RUN TestPkTokenJwsUnchanged === RUN TestPkTokenJwsUnchanged/with_alphabetical_order === RUN TestPkTokenJwsUnchanged/with_reverse_alphabetical_order @@ -1399,33 +1435,33 @@ === RUN TestThumprintCalculation --- PASS: TestThumprintCalculation (0.00s) PASS -ok github.com/openpubkey/openpubkey/pktoken 1.375s +ok github.com/openpubkey/openpubkey/pktoken 1.204s ? github.com/openpubkey/openpubkey/pktoken/clientinstance [no test files] ? github.com/openpubkey/openpubkey/pktoken/mocks [no test files] === RUN TestGithubOpTableTest ---- PASS: TestGithubOpTableTest (0.71s) +--- PASS: TestGithubOpTableTest (1.20s) === RUN TestGithubOpSimpleRequest --- PASS: TestGithubOpSimpleRequest (0.00s) === RUN TestGithubOpFullGQ ---- PASS: TestGithubOpFullGQ (0.48s) +--- PASS: TestGithubOpFullGQ (0.96s) === RUN TestBuildTokenURL --- PASS: TestBuildTokenURL (0.00s) === RUN TestGitlabSimpleRequest ---- PASS: TestGitlabSimpleRequest (0.63s) +--- PASS: TestGitlabSimpleRequest (0.79s) === RUN TestGQ === RUN TestGQ/happy_case_(nonce_commit) === RUN TestGQ/happy_case_(GQ_bound) === RUN TestGQ/change_alg_to_ES256,_should_fail === RUN TestGQ/ID_Token_has_kid_that_exist_in_OP's_JWKS === RUN TestGQ/cicHash_set_but_not_GQ_bound ---- PASS: TestGQ (2.19s) - --- PASS: TestGQ/happy_case_(nonce_commit) (0.91s) - --- PASS: TestGQ/happy_case_(GQ_bound) (0.30s) - --- PASS: TestGQ/change_alg_to_ES256,_should_fail (0.34s) - --- PASS: TestGQ/ID_Token_has_kid_that_exist_in_OP's_JWKS (0.34s) - --- PASS: TestGQ/cicHash_set_but_not_GQ_bound (0.30s) +--- PASS: TestGQ (2.06s) + --- PASS: TestGQ/happy_case_(nonce_commit) (0.60s) + --- PASS: TestGQ/happy_case_(GQ_bound) (0.96s) + --- PASS: TestGQ/change_alg_to_ES256,_should_fail (0.09s) + --- PASS: TestGQ/ID_Token_has_kid_that_exist_in_OP's_JWKS (0.05s) + --- PASS: TestGQ/cicHash_set_but_not_GQ_bound (0.35s) === RUN TestMockProviderTest ---- PASS: TestMockProviderTest (0.19s) +--- PASS: TestMockProviderTest (1.20s) === RUN TestGetEnvVar --- PASS: TestGetEnvVar (0.00s) === RUN TestProviderVerifier @@ -1442,21 +1478,21 @@ === RUN TestProviderVerifier/GQ_Commitment_providerVerifier_not_using_GQ_Commitment === RUN TestProviderVerifier/GQ_Commitment_wrong_CIC === RUN TestProviderVerifier/GQ_Commitment_check_client_id ---- PASS: TestProviderVerifier (12.11s) - --- PASS: TestProviderVerifier/Claim_Commitment_happy_case (0.48s) - --- PASS: TestProviderVerifier/Claim_Commitment_(aud)_happy_case (0.45s) - --- PASS: TestProviderVerifier/Claim_Commitment_wrong_audience (0.25s) - --- PASS: TestProviderVerifier/Claim_Commitment_no_commitment_claim (0.85s) - --- PASS: TestProviderVerifier/Claim_Commitment_wrong_CIC (1.26s) - --- PASS: TestProviderVerifier/Claim_Commitment_GQ_happy_case (1.43s) - --- PASS: TestProviderVerifier/Claim_Commitment_GQ_wrong_CIC (1.14s) +--- PASS: TestProviderVerifier (14.69s) + --- PASS: TestProviderVerifier/Claim_Commitment_happy_case (0.93s) + --- PASS: TestProviderVerifier/Claim_Commitment_(aud)_happy_case (1.29s) + --- PASS: TestProviderVerifier/Claim_Commitment_wrong_audience (1.46s) + --- PASS: TestProviderVerifier/Claim_Commitment_no_commitment_claim (1.28s) + --- PASS: TestProviderVerifier/Claim_Commitment_wrong_CIC (1.02s) + --- PASS: TestProviderVerifier/Claim_Commitment_GQ_happy_case (1.13s) + --- PASS: TestProviderVerifier/Claim_Commitment_GQ_wrong_CIC (0.79s) --- PASS: TestProviderVerifier/GQ_Commitment_happy_case (1.15s) - --- PASS: TestProviderVerifier/GQ_Commitment_wrong_aud_prefix (2.10s) - --- PASS: TestProviderVerifier/GQ_Commitment_providerVerifier_not_using_GQ_Commitment (1.09s) - --- PASS: TestProviderVerifier/GQ_Commitment_wrong_CIC (0.62s) - --- PASS: TestProviderVerifier/GQ_Commitment_check_client_id (1.28s) + --- PASS: TestProviderVerifier/GQ_Commitment_wrong_aud_prefix (1.41s) + --- PASS: TestProviderVerifier/GQ_Commitment_providerVerifier_not_using_GQ_Commitment (0.92s) + --- PASS: TestProviderVerifier/GQ_Commitment_wrong_CIC (2.14s) + --- PASS: TestProviderVerifier/GQ_Commitment_check_client_id (1.16s) === RUN TestGoogleSimpleRequest ---- PASS: TestGoogleSimpleRequest (0.66s) +--- PASS: TestGoogleSimpleRequest (0.36s) === RUN TestFindAvailablePort === RUN TestFindAvailablePort/Happy_case === RUN TestFindAvailablePort/Happy_case:_first_port_in_use @@ -1470,11 +1506,11 @@ === RUN TestConfigCookieHandler --- PASS: TestConfigCookieHandler (0.00s) PASS -ok github.com/openpubkey/openpubkey/providers 16.995s +ok github.com/openpubkey/openpubkey/providers 21.292s === RUN TestSimpleBackendOverride ---- PASS: TestSimpleBackendOverride (1.92s) +--- PASS: TestSimpleBackendOverride (0.55s) === RUN TestKeySetCreatorsConvenience ---- PASS: TestKeySetCreatorsConvenience (1.07s) +--- PASS: TestKeySetCreatorsConvenience (0.67s) === RUN TestKeySetCreators === RUN TestKeySetCreators/Happy_case_(RS256):_1_key(s) === RUN TestKeySetCreators/Happy_case_(ES256):_1_key(s) @@ -1482,15 +1518,15 @@ === RUN TestKeySetCreators/Happy_case_(RS256):_2_key(s) === RUN TestKeySetCreators/Happy_case_(ES256):_2_key(s) === RUN TestKeySetCreators/Unsupported_alg_(ZZ404):_2_key(s) ---- PASS: TestKeySetCreators (1.36s) - --- PASS: TestKeySetCreators/Happy_case_(RS256):_1_key(s) (0.47s) +--- PASS: TestKeySetCreators (1.01s) + --- PASS: TestKeySetCreators/Happy_case_(RS256):_1_key(s) (0.32s) --- PASS: TestKeySetCreators/Happy_case_(ES256):_1_key(s) (0.00s) --- PASS: TestKeySetCreators/Unsupported_alg_(ZZ404):_1_key(s) (0.00s) - --- PASS: TestKeySetCreators/Happy_case_(RS256):_2_key(s) (0.89s) + --- PASS: TestKeySetCreators/Happy_case_(RS256):_2_key(s) (0.69s) --- PASS: TestKeySetCreators/Happy_case_(ES256):_2_key(s) (0.00s) --- PASS: TestKeySetCreators/Unsupported_alg_(ZZ404):_2_key(s) (0.00s) PASS -ok github.com/openpubkey/openpubkey/providers/mocks 4.363s +ok github.com/openpubkey/openpubkey/providers/mocks 2.247s ? github.com/openpubkey/openpubkey/util [no test files] === RUN TestExpirationPolicy --- PASS: TestExpirationPolicy (0.00s) @@ -1499,33 +1535,33 @@ === RUN TestMaxAgeExpiration --- PASS: TestMaxAgeExpiration (0.00s) === RUN TestVerifier ---- PASS: TestVerifier (3.53s) +--- PASS: TestVerifier (3.30s) === RUN TestVerifierRefreshedIDToken ---- PASS: TestVerifierRefreshedIDToken (1.29s) +--- PASS: TestVerifierRefreshedIDToken (1.00s) === RUN TestVerifierExpirationPolicy ---- PASS: TestVerifierExpirationPolicy (1.89s) +--- PASS: TestVerifierExpirationPolicy (0.61s) === RUN TestCICSignature === RUN TestCICSignature/happy_case === RUN TestCICSignature/bad_sig:_nonce === RUN TestCICSignature/bad_sig:_aud ---- PASS: TestCICSignature (2.24s) - --- PASS: TestCICSignature/happy_case (1.07s) - --- PASS: TestCICSignature/bad_sig:_nonce (0.43s) - --- PASS: TestCICSignature/bad_sig:_aud (0.74s) +--- PASS: TestCICSignature (2.22s) + --- PASS: TestCICSignature/happy_case (0.71s) + --- PASS: TestCICSignature/bad_sig:_nonce (0.59s) + --- PASS: TestCICSignature/bad_sig:_aud (0.91s) === RUN TestGQCommitment === RUN TestGQCommitment/happy_case === RUN TestGQCommitment/wrong_aud_prefix === RUN TestGQCommitment/gqSign_is_false === RUN TestGQCommitment/gqCommitment_is_false === RUN TestGQCommitment/gqOnly_is_false ---- PASS: TestGQCommitment (4.74s) - --- PASS: TestGQCommitment/happy_case (1.02s) - --- PASS: TestGQCommitment/wrong_aud_prefix (1.10s) - --- PASS: TestGQCommitment/gqSign_is_false (0.69s) - --- PASS: TestGQCommitment/gqCommitment_is_false (1.17s) - --- PASS: TestGQCommitment/gqOnly_is_false (0.75s) +--- PASS: TestGQCommitment (3.53s) + --- PASS: TestGQCommitment/happy_case (0.88s) + --- PASS: TestGQCommitment/wrong_aud_prefix (0.61s) + --- PASS: TestGQCommitment/gqSign_is_false (0.64s) + --- PASS: TestGQCommitment/gqCommitment_is_false (0.50s) + --- PASS: TestGQCommitment/gqOnly_is_false (0.89s) PASS -ok github.com/openpubkey/openpubkey/verifier 13.702s +ok github.com/openpubkey/openpubkey/verifier 10.673s make[1]: Leaving directory '/build/reproducible-path/golang-github-openpubkey-openpubkey-0.8.0' create-stamp debian/debhelper-build-stamp dh_testroot -O--builddirectory=_build -O--buildsystem=golang @@ -1553,12 +1589,14 @@ dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: including full source code in upload I: copying local configuration +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/B01_cleanup starting +I: user script /srv/workspace/pbuilder/1484755/tmp/hooks/B01_cleanup finished I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env -I: removing directory /srv/workspace/pbuilder/566579 and its subdirectories -I: Current time: Fri Sep 4 04:48:05 -12 2026 -I: pbuilder-time-stamp: 1788540485 +I: removing directory /srv/workspace/pbuilder/1484755 and its subdirectories +I: Current time: Sun Aug 3 00:26:35 +14 2025 +I: pbuilder-time-stamp: 1754130395