Diff of the two buildlogs: -- --- b1/build.log 2024-12-13 04:44:34.301296387 +0000 +++ b2/build.log 2024-12-13 04:53:04.253945726 +0000 @@ -1,6 +1,6 @@ I: pbuilder: network access will be disabled during build -I: Current time: Thu Dec 12 16:42:01 -12 2024 -I: pbuilder-time-stamp: 1734064921 +I: Current time: Fri Dec 13 18:44:45 +14 2024 +I: pbuilder-time-stamp: 1734065085 I: Building the build Environment I: extracting base tarball [/var/cache/pbuilder/unstable-reproducible-base.tgz] I: copying local configuration @@ -26,52 +26,84 @@ dpkg-source: info: unpacking golang-github-coreos-go-oidc_2.1.0-4.debian.tar.xz I: Not using root during the build. I: Installing the build-deps -I: user script /srv/workspace/pbuilder/29686/tmp/hooks/D02_print_environment starting +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/D01_modify_environment starting +debug: Running on ff4a. +I: Changing host+domainname to test build reproducibility +I: Adding a custom variable just for the fun of it... +I: Changing /bin/sh to bash +'/bin/sh' -> '/bin/bash' +lrwxrwxrwx 1 root root 9 Dec 13 04:45 /bin/sh -> /bin/bash +I: Setting pbuilder2's login shell to /bin/bash +I: Setting pbuilder2's GECOS to second user,second room,second work-phone,second home-phone,second other +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/D01_modify_environment finished +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/D02_print_environment starting I: set - BUILDDIR='/build/reproducible-path' - BUILDUSERGECOS='first user,first room,first work-phone,first home-phone,first other' - BUILDUSERNAME='pbuilder1' - BUILD_ARCH='armhf' - DEBIAN_FRONTEND='noninteractive' - DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=3 ' - DISTRIBUTION='unstable' - HOME='/root' - HOST_ARCH='armhf' + BASH=/bin/sh + BASHOPTS=checkwinsize:cmdhist:complete_fullquote:extquote:force_fignore:globasciiranges:globskipdots:hostcomplete:interactive_comments:patsub_replacement:progcomp:promptvars:sourcepath + BASH_ALIASES=() + BASH_ARGC=() + BASH_ARGV=() + BASH_CMDS=() + BASH_LINENO=([0]="12" [1]="0") + BASH_LOADABLES_PATH=/usr/local/lib/bash:/usr/lib/bash:/opt/local/lib/bash:/usr/pkg/lib/bash:/opt/pkg/lib/bash:. + BASH_SOURCE=([0]="/tmp/hooks/D02_print_environment" [1]="/tmp/hooks/D02_print_environment") + BASH_VERSINFO=([0]="5" [1]="2" [2]="37" [3]="1" [4]="release" [5]="arm-unknown-linux-gnueabihf") + BASH_VERSION='5.2.37(1)-release' + BUILDDIR=/build/reproducible-path + BUILDUSERGECOS='second user,second room,second work-phone,second home-phone,second other' + BUILDUSERNAME=pbuilder2 + BUILD_ARCH=armhf + DEBIAN_FRONTEND=noninteractive + DEB_BUILD_OPTIONS='buildinfo=+all reproducible=+all parallel=4 ' + DIRSTACK=() + DISTRIBUTION=unstable + EUID=0 + FUNCNAME=([0]="Echo" [1]="main") + GROUPS=() + HOME=/root + HOSTNAME=i-capture-the-hostname + HOSTTYPE=arm + HOST_ARCH=armhf IFS=' ' - INVOCATION_ID='34e198c72e114b078906f6832e860e56' - LANG='C' - LANGUAGE='en_US:en' - LC_ALL='C' - MAIL='/var/mail/root' - OPTIND='1' - PATH='/usr/sbin:/usr/bin:/sbin:/bin:/usr/games' - PBCURRENTCOMMANDLINEOPERATION='build' - PBUILDER_OPERATION='build' - PBUILDER_PKGDATADIR='/usr/share/pbuilder' - PBUILDER_PKGLIBDIR='/usr/lib/pbuilder' - PBUILDER_SYSCONFDIR='/etc' - PPID='29686' - PS1='# ' - PS2='> ' + INVOCATION_ID=8964d14d378e4def9e6192d0d4a64ae8 + LANG=C + LANGUAGE=it_CH:it + LC_ALL=C + MACHTYPE=arm-unknown-linux-gnueabihf + MAIL=/var/mail/root + OPTERR=1 + OPTIND=1 + OSTYPE=linux-gnueabihf + PATH=/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path + PBCURRENTCOMMANDLINEOPERATION=build + PBUILDER_OPERATION=build + PBUILDER_PKGDATADIR=/usr/share/pbuilder + PBUILDER_PKGLIBDIR=/usr/lib/pbuilder + PBUILDER_SYSCONFDIR=/etc + PIPESTATUS=([0]="0") + POSIXLY_CORRECT=y + PPID=22877 PS4='+ ' - PWD='/' - SHELL='/bin/bash' - SHLVL='2' - SUDO_COMMAND='/usr/bin/timeout -k 18.1h 18h /usr/bin/ionice -c 3 /usr/bin/nice /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.P8HbTs8k/pbuilderrc_dWuh --distribution unstable --hookdir /etc/pbuilder/first-build-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/unstable-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.P8HbTs8k/b1 --logfile b1/build.log golang-github-coreos-go-oidc_2.1.0-4.dsc' - SUDO_GID='110' - SUDO_UID='103' - SUDO_USER='jenkins' - TERM='unknown' - TZ='/usr/share/zoneinfo/Etc/GMT+12' - USER='root' - _='/usr/bin/systemd-run' - http_proxy='http://10.0.0.15:3142/' + PWD=/ + SHELL=/bin/bash + SHELLOPTS=braceexpand:errexit:hashall:interactive-comments:posix + SHLVL=3 + SUDO_COMMAND='/usr/bin/timeout -k 24.1h 24h /usr/bin/ionice -c 3 /usr/bin/nice -n 11 /usr/bin/unshare --uts -- /usr/sbin/pbuilder --build --configfile /srv/reproducible-results/rbuild-debian/r-b-build.P8HbTs8k/pbuilderrc_6QYo --distribution unstable --hookdir /etc/pbuilder/rebuild-hooks --debbuildopts -b --basetgz /var/cache/pbuilder/unstable-reproducible-base.tgz --buildresult /srv/reproducible-results/rbuild-debian/r-b-build.P8HbTs8k/b2 --logfile b2/build.log golang-github-coreos-go-oidc_2.1.0-4.dsc' + SUDO_GID=113 + SUDO_UID=107 + SUDO_USER=jenkins + TERM=unknown + TZ=/usr/share/zoneinfo/Etc/GMT-14 + UID=0 + USER=root + _='I: set' + http_proxy=http://10.0.0.15:3142/ I: uname -a - Linux virt64z 6.1.0-28-arm64 #1 SMP Debian 6.1.119-1 (2024-11-22) aarch64 GNU/Linux + Linux i-capture-the-hostname 6.1.0-28-armmp-lpae #1 SMP Debian 6.1.119-1 (2024-11-22) armv7l GNU/Linux I: ls -l /bin lrwxrwxrwx 1 root root 7 Nov 22 14:40 /bin -> usr/bin -I: user script /srv/workspace/pbuilder/29686/tmp/hooks/D02_print_environment finished +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/D02_print_environment finished -> Attempting to satisfy build-dependencies -> Creating pbuilder-satisfydepends-dummy package Package: pbuilder-satisfydepends-dummy @@ -180,7 +212,7 @@ Get: 53 http://deb.debian.org/debian unstable/main armhf golang-golang-x-net-dev all 1:0.27.0-1 [898 kB] Get: 54 http://deb.debian.org/debian unstable/main armhf golang-golang-x-oauth2-dev all 0.15.0-1 [38.0 kB] Get: 55 http://deb.debian.org/debian unstable/main armhf golang-gopkg-square-go-jose.v2-dev all 2.6.3-3 [267 kB] -Fetched 71.0 MB in 1s (51.4 MB/s) +Fetched 71.0 MB in 6s (11.4 MB/s) debconf: delaying package configuration, since apt-utils is not installed Selecting previously unselected package sensible-utils. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 19680 files and directories currently installed.) @@ -415,7 +447,11 @@ Building tag database... -> Finished parsing the build-deps I: Building the package -I: Running cd /build/reproducible-path/golang-github-coreos-go-oidc-2.1.0/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games" HOME="/nonexistent/first-build" dpkg-genchanges -S > ../golang-github-coreos-go-oidc_2.1.0-4_source.changes +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/A99_set_merged_usr starting +Not re-configuring usrmerge for unstable +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/A99_set_merged_usr finished +hostname: Name or service not known +I: Running cd /build/reproducible-path/golang-github-coreos-go-oidc-2.1.0/ && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-buildpackage -us -uc -b && env PATH="/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/i/capture/the/path" HOME="/nonexistent/second-build" dpkg-genchanges -S > ../golang-github-coreos-go-oidc_2.1.0-4_source.changes dpkg-buildpackage: info: source package golang-github-coreos-go-oidc dpkg-buildpackage: info: source version 2.1.0-4 dpkg-buildpackage: info: source distribution unstable @@ -433,155 +469,155 @@ dh_autoreconf -O--builddirectory=_build -O--buildsystem=golang dh_auto_configure -O--builddirectory=_build -O--buildsystem=golang dh_auto_build -O--builddirectory=_build -O--buildsystem=golang - cd _build && go install -trimpath -v -p 3 github.com/coreos/go-oidc github.com/coreos/go-oidc/example/idtoken github.com/coreos/go-oidc/example/nonce github.com/coreos/go-oidc/example/userinfo + cd _build && go install -trimpath -v -p 4 github.com/coreos/go-oidc github.com/coreos/go-oidc/example/idtoken github.com/coreos/go-oidc/example/nonce github.com/coreos/go-oidc/example/userinfo internal/goarch internal/unsafeheader internal/byteorder internal/cpu -internal/abi -internal/chacha8rand -internal/bytealg internal/coverage/rtcov +internal/abi internal/godebugs +internal/chacha8rand internal/goexperiment internal/goos internal/profilerecord +internal/bytealg internal/runtime/atomic internal/runtime/syscall internal/stringslite runtime/internal/math runtime/internal/sys -internal/runtime/exithook internal/race sync/atomic +internal/runtime/exithook unicode -runtime unicode/utf8 -internal/asan internal/itoa +internal/asan internal/msan math/bits -math crypto/internal/alias crypto/internal/boring/sig cmp encoding +math unicode/utf16 container/list vendor/golang.org/x/crypto/cryptobyte/asn1 +runtime vendor/golang.org/x/crypto/internal/alias internal/nettrace log/internal internal/reflectlite -sync crypto/subtle iter +sync slices internal/weak maps -internal/testlog internal/bisect internal/singleflight +internal/testlog errors +sort runtime/cgo -internal/godebug io -bytes +internal/godebug internal/oserror syscall +bytes hash strconv -crypto crypto/cipher -time +path +strings +crypto crypto/internal/boring crypto/sha256 crypto/sha512 +time reflect -path internal/syscall/unix internal/syscall/execenv -strings -context -io/fs -internal/poll -internal/filepathlite bufio -os -sort hash/crc32 crypto/internal/randutil math/rand crypto/aes -encoding/binary -internal/fmtsort crypto/des crypto/internal/edwards25519/field -fmt +context crypto/internal/nistec/fiat -encoding/base64 +io/fs +internal/poll +internal/filepathlite crypto/internal/edwards25519 +os crypto/hmac -encoding/json -compress/flate -compress/gzip -math/big -vendor/golang.org/x/crypto/chacha20 -vendor/golang.org/x/crypto/internal/poly1305 -vendor/golang.org/x/crypto/chacha20poly1305 vendor/golang.org/x/crypto/hkdf -vendor/golang.org/x/sys/cpu -crypto/internal/nistec -vendor/golang.org/x/crypto/sha3 crypto/md5 crypto/rc4 crypto/sha1 -crypto/ecdh -crypto/rand -crypto/elliptic -crypto/internal/bigmod -crypto/internal/boring/bbig -encoding/asn1 -crypto/ed25519 -crypto/internal/hpke -crypto/internal/mlkem768 -crypto/rsa -crypto/dsa -encoding/hex -encoding/pem -vendor/golang.org/x/crypto/cryptobyte -crypto/x509/pkix +encoding/binary +internal/fmtsort vendor/golang.org/x/net/dns/dnsmessage +fmt +encoding/base64 +vendor/golang.org/x/crypto/chacha20 +vendor/golang.org/x/crypto/internal/poly1305 +vendor/golang.org/x/sys/cpu +vendor/golang.org/x/crypto/chacha20poly1305 +vendor/golang.org/x/crypto/sha3 +encoding/pem math/rand/v2 +path/filepath +crypto/internal/nistec internal/concurrent -crypto/ecdsa unique -net/url +encoding/json +compress/flate +math/big +compress/gzip +crypto/ecdh +encoding/hex net/netip -path/filepath +net/url vendor/golang.org/x/text/transform log vendor/golang.org/x/text/unicode/norm vendor/golang.org/x/text/unicode/bidi net +crypto/rand +crypto/elliptic +crypto/internal/bigmod +crypto/internal/boring/bbig +crypto/ed25519 +encoding/asn1 +crypto/internal/hpke +crypto/internal/mlkem768 +crypto/rsa +crypto/dsa vendor/golang.org/x/text/secure/bidirule +vendor/golang.org/x/net/idna vendor/golang.org/x/net/http2/hpack +vendor/golang.org/x/crypto/cryptobyte +crypto/x509/pkix mime -vendor/golang.org/x/net/idna +crypto/ecdsa mime/quotedprintable net/http/internal net/http/internal/ascii io/ioutil golang.org/x/crypto/ed25519 golang.org/x/crypto/pbkdf2 -gopkg.in/square/go-jose.v2/cipher gopkg.in/square/go-jose.v2/json golang.org/x/net/context -crypto/x509 +gopkg.in/square/go-jose.v2/cipher net/textproto vendor/golang.org/x/net/http/httpproxy -vendor/golang.org/x/net/http/httpguts +crypto/x509 mime/multipart +vendor/golang.org/x/net/http/httpguts gopkg.in/square/go-jose.v2 crypto/tls net/http/httptrace @@ -595,20 +631,20 @@ github.com/coreos/go-oidc/example/nonce github.com/coreos/go-oidc/example/userinfo dh_auto_test -O--builddirectory=_build -O--buildsystem=golang - cd _build && go test -vet=off -v -p 3 github.com/coreos/go-oidc github.com/coreos/go-oidc/example/idtoken github.com/coreos/go-oidc/example/nonce github.com/coreos/go-oidc/example/userinfo + cd _build && go test -vet=off -v -p 4 github.com/coreos/go-oidc github.com/coreos/go-oidc/example/idtoken github.com/coreos/go-oidc/example/nonce github.com/coreos/go-oidc/example/userinfo ? github.com/coreos/go-oidc/example/idtoken [no test files] ? github.com/coreos/go-oidc/example/nonce [no test files] ? github.com/coreos/go-oidc/example/userinfo [no test files] === RUN TestRSAVerify ---- PASS: TestRSAVerify (0.65s) +--- PASS: TestRSAVerify (0.80s) === RUN TestECDSAVerify ---- PASS: TestECDSAVerify (0.04s) +--- PASS: TestECDSAVerify (0.08s) === RUN TestMultipleKeysVerify ---- PASS: TestMultipleKeysVerify (0.33s) +--- PASS: TestMultipleKeysVerify (1.21s) === RUN TestMismatchedKeyID ---- PASS: TestMismatchedKeyID (0.61s) +--- PASS: TestMismatchedKeyID (3.34s) === RUN TestCacheControl ---- PASS: TestCacheControl (0.39s) +--- PASS: TestCacheControl (2.11s) === RUN TestAccessTokenVerification === RUN TestAccessTokenVerification/goodRS256 === RUN TestAccessTokenVerification/goodES384 @@ -635,64 +671,64 @@ === RUN TestVerify/nbf_in_future === RUN TestVerify/nbf_in_past === RUN TestVerify/nbf_in_future_within_clock_skew_tolerance ---- PASS: TestVerify (2.28s) - --- PASS: TestVerify/good_token (0.01s) - --- PASS: TestVerify/invalid_issuer (0.01s) - --- PASS: TestVerify/skip_issuer_check (0.01s) - --- PASS: TestVerify/invalid_sig (0.01s) - --- PASS: TestVerify/google_accounts_without_scheme (0.01s) - --- PASS: TestVerify/expired_token (0.01s) - --- PASS: TestVerify/unexpired_token (0.01s) - --- PASS: TestVerify/expiry_as_float (0.01s) - --- PASS: TestVerify/nbf_in_future (0.01s) - --- PASS: TestVerify/nbf_in_past (0.01s) - --- PASS: TestVerify/nbf_in_future_within_clock_skew_tolerance (0.01s) +--- PASS: TestVerify (9.02s) + --- PASS: TestVerify/good_token (0.03s) + --- PASS: TestVerify/invalid_issuer (0.04s) + --- PASS: TestVerify/skip_issuer_check (0.03s) + --- PASS: TestVerify/invalid_sig (0.03s) + --- PASS: TestVerify/google_accounts_without_scheme (0.03s) + --- PASS: TestVerify/expired_token (0.03s) + --- PASS: TestVerify/unexpired_token (0.03s) + --- PASS: TestVerify/expiry_as_float (0.03s) + --- PASS: TestVerify/nbf_in_future (0.03s) + --- PASS: TestVerify/nbf_in_past (0.03s) + --- PASS: TestVerify/nbf_in_future_within_clock_skew_tolerance (0.03s) === RUN TestVerifyAudience === RUN TestVerifyAudience/good_audience === RUN TestVerifyAudience/mismatched_audience === RUN TestVerifyAudience/multiple_audiences,_one_matches ---- PASS: TestVerifyAudience (0.61s) - --- PASS: TestVerifyAudience/good_audience (0.01s) - --- PASS: TestVerifyAudience/mismatched_audience (0.01s) - --- PASS: TestVerifyAudience/multiple_audiences,_one_matches (0.01s) +--- PASS: TestVerifyAudience (4.59s) + --- PASS: TestVerifyAudience/good_audience (0.04s) + --- PASS: TestVerifyAudience/mismatched_audience (0.03s) + --- PASS: TestVerifyAudience/multiple_audiences,_one_matches (0.03s) === RUN TestVerifySigningAlg === RUN TestVerifySigningAlg/default_signing_alg === RUN TestVerifySigningAlg/bad_signing_alg === RUN TestVerifySigningAlg/ecdsa_signing === RUN TestVerifySigningAlg/one_of_many_supported === RUN TestVerifySigningAlg/not_in_requiredAlgs ---- PASS: TestVerifySigningAlg (0.47s) - --- PASS: TestVerifySigningAlg/default_signing_alg (0.01s) - --- PASS: TestVerifySigningAlg/bad_signing_alg (0.00s) - --- PASS: TestVerifySigningAlg/ecdsa_signing (0.01s) - --- PASS: TestVerifySigningAlg/one_of_many_supported (0.01s) - --- PASS: TestVerifySigningAlg/not_in_requiredAlgs (0.00s) +--- PASS: TestVerifySigningAlg (1.59s) + --- PASS: TestVerifySigningAlg/default_signing_alg (0.03s) + --- PASS: TestVerifySigningAlg/bad_signing_alg (0.01s) + --- PASS: TestVerifySigningAlg/ecdsa_signing (0.03s) + --- PASS: TestVerifySigningAlg/one_of_many_supported (0.03s) + --- PASS: TestVerifySigningAlg/not_in_requiredAlgs (0.01s) === RUN TestAccessTokenHash === RUN TestAccessTokenHash/at_hash ---- PASS: TestAccessTokenHash (0.41s) - --- PASS: TestAccessTokenHash/at_hash (0.01s) +--- PASS: TestAccessTokenHash (0.61s) + --- PASS: TestAccessTokenHash/at_hash (0.02s) === RUN TestDistributedClaims === RUN TestDistributedClaims/NoDistClaims === RUN TestDistributedClaims/1DistClaim === RUN TestDistributedClaims/2DistClaims1Src === RUN TestDistributedClaims/1Name0Src === RUN TestDistributedClaims/NoNames1Src ---- PASS: TestDistributedClaims (1.00s) +--- PASS: TestDistributedClaims (3.74s) --- PASS: TestDistributedClaims/NoDistClaims (0.01s) --- PASS: TestDistributedClaims/1DistClaim (0.01s) - --- PASS: TestDistributedClaims/2DistClaims1Src (0.01s) - --- PASS: TestDistributedClaims/1Name0Src (0.01s) - --- PASS: TestDistributedClaims/NoNames1Src (0.01s) + --- PASS: TestDistributedClaims/2DistClaims1Src (0.02s) + --- PASS: TestDistributedClaims/1Name0Src (0.02s) + --- PASS: TestDistributedClaims/NoNames1Src (0.02s) === RUN TestDistClaimResolver === RUN TestDistClaimResolver/noAccessToken === RUN TestDistClaimResolver/rightAccessToken === RUN TestDistClaimResolver/wrongAccessToken ---- PASS: TestDistClaimResolver (0.70s) - --- PASS: TestDistClaimResolver/noAccessToken (0.04s) - --- PASS: TestDistClaimResolver/rightAccessToken (0.04s) - --- PASS: TestDistClaimResolver/wrongAccessToken (0.03s) +--- PASS: TestDistClaimResolver (2.81s) + --- PASS: TestDistClaimResolver/noAccessToken (0.19s) + --- PASS: TestDistClaimResolver/rightAccessToken (0.13s) + --- PASS: TestDistClaimResolver/wrongAccessToken (0.18s) PASS -ok github.com/coreos/go-oidc 7.499s +ok github.com/coreos/go-oidc 29.933s create-stamp debian/debhelper-build-stamp dh_testroot -O--builddirectory=_build -O--buildsystem=golang dh_prep -O--builddirectory=_build -O--buildsystem=golang @@ -723,12 +759,14 @@ dpkg-buildpackage: info: binary-only upload (no source included) dpkg-genchanges: info: not including original source code in upload I: copying local configuration +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/B01_cleanup starting +I: user script /srv/workspace/pbuilder/22877/tmp/hooks/B01_cleanup finished I: unmounting dev/ptmx filesystem I: unmounting dev/pts filesystem I: unmounting dev/shm filesystem I: unmounting proc filesystem I: unmounting sys filesystem I: cleaning the build env -I: removing directory /srv/workspace/pbuilder/29686 and its subdirectories -I: Current time: Thu Dec 12 16:44:30 -12 2024 -I: pbuilder-time-stamp: 1734065070 +I: removing directory /srv/workspace/pbuilder/22877 and its subdirectories +I: Current time: Fri Dec 13 18:53:00 +14 2024 +I: pbuilder-time-stamp: 1734065580