Input buildinfo: https://buildinfos.debian.net/buildinfo-pool/a/apt-transport-in-toto/apt-transport-in-toto_0.1.1-2_all.buildinfo Use metasnap for getting required timestamps New buildinfo file: /tmp/apt-transport-in-toto-0.1.1-2fve48tw8/apt-transport-in-toto_0.1.1-2_all.buildinfo Get source package info: apt-transport-in-toto=0.1.1-2 Source URL: http://snapshot.notset.fr/mr/package/apt-transport-in-toto/0.1.1-2/srcfiles?fileinfo=1 env -i PATH=/usr/sbin:/usr/bin:/sbin:/bin TMPDIR=/tmp mmdebstrap --arch=amd64 --include=adduser=3.118 autoconf=2.69-14 automake=1:1.16.3-2 autopoint=0.21-3 autotools-dev=20180224.1+nmu1 base-files=11 base-passwd=3.5.48 bash=5.1-2 binutils=2.35.1-7 binutils-common=2.35.1-7 binutils-x86-64-linux-gnu=2.35.1-7 bsdextrautils=2.36.1-6 bsdutils=1:2.36.1-6 build-essential=12.9 bzip2=1.0.8-4 ca-certificates=20210119 coreutils=8.32-4+b1 cpp=4:10.2.1-1 cpp-10=10.2.1-6 dash=0.5.11+git20200708+dd9ef66-5 debconf=1.5.74 debhelper=13.3.2 debianutils=4.11.2 dh-autoreconf=19 dh-exec=0.23.2 dh-python=4.20201102 dh-strip-nondeterminism=1.10.0-1 diffutils=1:3.7-5 dirmngr=2.2.20-1 dpkg=1.20.7.1 dpkg-dev=1.20.7.1 dwz=0.13+20210126-1 file=1:5.39-3 findutils=4.8.0-1 g++=4:10.2.1-1 g++-10=10.2.1-6 gcc=4:10.2.1-1 gcc-10=10.2.1-6 gcc-10-base=10.2.1-6 gettext=0.21-3 gettext-base=0.21-3 gnupg=2.2.20-1 gnupg-l10n=2.2.20-1 gnupg-utils=2.2.20-1 gnupg2=2.2.20-1 gpg=2.2.20-1 gpg-agent=2.2.20-1 gpg-wks-client=2.2.20-1 gpg-wks-server=2.2.20-1 gpgconf=2.2.20-1 gpgsm=2.2.20-1 gpgv=2.2.20-1 grep=3.6-1 groff-base=1.22.4-6 gzip=1.10-2 hostname=3.23 in-toto=1.0.0-2 init-system-helpers=1.60 intltool-debian=0.35.0+20060710.5 libacl1=2.2.53-9 libarchive-zip-perl=1.68-1 libasan6=10.2.1-6 libassuan0=2.5.4-1 libatomic1=10.2.1-6 libattr1=1:2.4.48-6 libaudit-common=1:3.0-2 libaudit1=1:3.0-2 libbinutils=2.35.1-7 libblkid1=2.36.1-6 libbz2-1.0=1.0.8-4 libc-bin=2.31-9 libc-dev-bin=2.31-9 libc6=2.31-9 libc6-dev=2.31-9 libcap-ng0=0.7.9-2.2+b1 libcc1-0=10.2.1-6 libcom-err2=1.45.7-1 libcrypt-dev=1:4.4.17-1 libcrypt1=1:4.4.17-1 libctf-nobfd0=2.35.1-7 libctf0=2.35.1-7 libdb5.3=5.3.28+dfsg1-0.6 libdebconfclient0=0.256 libdebhelper-perl=13.3.2 libdpkg-perl=1.20.7.1 libelf1=0.182-3 libexpat1=2.2.10-1 libffi7=3.3-5 libfile-stripnondeterminism-perl=1.10.0-1 libgcc-10-dev=10.2.1-6 libgcc-s1=10.2.1-6 libgcrypt20=1.8.7-2 libgdbm-compat4=1.19-2 libgdbm6=1.19-2 libgmp10=2:6.2.1+dfsg-1 libgnutls30=3.7.0-5 libgomp1=10.2.1-6 libgpg-error0=1.38-2 libgssapi-krb5-2=1.18.3-4 libhogweed6=3.6-2 libicu67=67.1-6 libidn2-0=2.3.0-5 libisl23=0.23-1 libitm1=10.2.1-6 libk5crypto3=1.18.3-4 libkeyutils1=1.6.1-2 libkrb5-3=1.18.3-4 libkrb5support0=1.18.3-4 libksba8=1.5.0-3 libldap-2.4-2=2.4.57+dfsg-1 liblsan0=10.2.1-6 liblz4-1=1.9.3-1 liblzma5=5.2.5-1.0 libmagic-mgc=1:5.39-3 libmagic1=1:5.39-3 libmount1=2.36.1-6 libmpc3=1.2.0-1 libmpdec3=2.5.1-1 libmpfr6=4.1.0-3 libncursesw6=6.2+20201114-2 libnettle8=3.6-2 libnpth0=1.6-3 libnsl-dev=1.3.0-2 libnsl2=1.3.0-2 libp11-kit0=0.23.22-1 libpam-modules=1.4.0-2 libpam-modules-bin=1.4.0-2 libpam-runtime=1.4.0-2 libpam0g=1.4.0-2 libpcre2-8-0=10.36-2 libpcre3=2:8.39-13 libperl5.32=5.32.0-6 libpipeline1=1.5.3-1 libpython3-stdlib=3.9.1-1 libpython3.9-minimal=3.9.1-3 libpython3.9-stdlib=3.9.1-3 libquadmath0=10.2.1-6 libreadline8=8.1-1 libsasl2-2=2.1.27+dfsg-2 libsasl2-modules-db=2.1.27+dfsg-2 libseccomp2=2.5.1-1 libselinux1=3.1-2+b2 libsemanage-common=3.1-1 libsemanage1=3.1-1+b2 libsepol1=3.1-1 libsigsegv2=2.13-1 libsmartcols1=2.36.1-6 libsodium23=1.0.18-1 libsqlite3-0=3.34.1-1 libssl1.1=1.1.1i-3 libstdc++-10-dev=10.2.1-6 libstdc++6=10.2.1-6 libsub-override-perl=0.09-2 libsystemd0=247.2-5 libtasn1-6=4.16.0-2 libtinfo6=6.2+20201114-2 libtirpc-common=1.3.1-1 libtirpc-dev=1.3.1-1 libtirpc3=1.3.1-1 libtool=2.4.6-15 libtsan0=10.2.1-6 libubsan1=10.2.1-6 libuchardet0=0.0.7-1 libudev1=247.2-5 libunistring2=0.9.10-4 libuuid1=2.36.1-6 libxml2=2.9.10+dfsg-6.3+b1 libzstd1=1.4.8+dfsg-1 linux-libc-dev=5.10.12-1 login=1:4.8.1-1 lsb-base=11.1.0 m4=1.4.18-5 mailcap=3.68 make=4.3-4 man-db=2.9.3-2 mawk=1.3.4.20200120-2 media-types=4.0.0 mime-support=3.66 ncurses-base=6.2+20201114-2 ncurses-bin=6.2+20201114-2 openssl=1.1.1i-3 passwd=1:4.8.1-1 patch=2.7.6-7 perl=5.32.0-6 perl-base=5.32.0-6 perl-modules-5.32=5.32.0-6 pinentry-curses=1.1.0-4 po-debconf=1.0.21+nmu1 python3=3.9.1-1 python3-all=3.9.1-1 python3-attr=20.3.0-1 python3-certifi=2020.6.20-1 python3-cffi-backend=1.14.4-1+b1 python3-chardet=4.0.0-1 python3-colorama=0.4.4-1 python3-coverage=5.1+dfsg.1-2+b2 python3-cryptography=3.3.1-1 python3-dateutil=2.8.1-5 python3-distutils=3.9.1-2 python3-idna=2.10-1 python3-iso8601=0.1.13-1 python3-lib2to3=3.9.1-2 python3-minimal=3.9.1-1 python3-mock=4.0.3-1 python3-nacl=1.4.0-1+b1 python3-pathspec=0.8.1-1 python3-pbr=5.5.0-2 python3-pkg-resources=51.3.3-1 python3-requests=2.25.1+dfsg-2 python3-securesystemslib=0.18.0-1 python3-setuptools=51.3.3-1 python3-six=1.15.0-2 python3-urllib3=1.26.2-1 python3.9=3.9.1-3 python3.9-minimal=3.9.1-3 readline-common=8.1-1 sed=4.7-1 sensible-utils=0.0.14 sysvinit-utils=2.96-5 tar=1.32+dfsg-1 tzdata=2021a-1 util-linux=2.36.1-6 xz-utils=5.2.5-1.0 zlib1g=1:1.2.11.dfsg-2 --variant=apt --aptopt=Acquire::Check-Valid-Until "false" --aptopt=Acquire::http::Dl-Limit "1000"; --aptopt=Acquire::https::Dl-Limit "1000"; --aptopt=Acquire::Retries "5"; --aptopt=APT::Get::allow-downgrades "true"; --keyring=/usr/share/keyrings/ --essential-hook=chroot "$1" sh -c "apt-get --yes install fakeroot util-linux" --essential-hook=copy-in /usr/share/keyrings/debian-archive-bullseye-automatic.gpg /usr/share/keyrings/debian-archive-bullseye-security-automatic.gpg /usr/share/keyrings/debian-archive-bullseye-stable.gpg /usr/share/keyrings/debian-archive-buster-automatic.gpg /usr/share/keyrings/debian-archive-buster-security-automatic.gpg /usr/share/keyrings/debian-archive-buster-stable.gpg /usr/share/keyrings/debian-archive-keyring.gpg /usr/share/keyrings/debian-archive-removed-keys.gpg /usr/share/keyrings/debian-archive-stretch-automatic.gpg /usr/share/keyrings/debian-archive-stretch-security-automatic.gpg /usr/share/keyrings/debian-archive-stretch-stable.gpg /usr/share/keyrings/debian-ports-archive-keyring-removed.gpg /usr/share/keyrings/debian-ports-archive-keyring.gpg /usr/share/keyrings/debian-keyring.gpg /etc/apt/trusted.gpg.d/ --essential-hook=chroot "$1" sh -c "rm /etc/apt/sources.list && echo 'deb http://snapshot.notset.fr/archive/debian/20210814T212851Z/ bookworm main deb-src http://snapshot.notset.fr/archive/debian/20210814T212851Z/ bookworm main deb http://snapshot.notset.fr/archive/debian/20210203T203559Z/ unstable main deb http://snapshot.notset.fr/archive/debian/20210131T204918Z/ unstable main' >> /etc/apt/sources.list && apt-get update" --customize-hook=chroot "$1" useradd --no-create-home -d /nonexistent -p "" builduser -s /bin/bash --customize-hook=chroot "$1" env sh -c "apt-get source --only-source -d apt-transport-in-toto=0.1.1-2 && mkdir -p /build/apt-transport-in-toto-pKT7mz && dpkg-source --no-check -x /*.dsc /build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1 && chown -R builduser:builduser /build/apt-transport-in-toto-pKT7mz" --customize-hook=chroot "$1" env --unset=TMPDIR runuser builduser -c "cd /build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1 && env DEB_BUILD_OPTIONS="parallel=4" LANG="C.UTF-8" LC_ALL="C.UTF-8" SOURCE_DATE_EPOCH="1612199823" dpkg-buildpackage -uc -a amd64 --build=all" --customize-hook=sync-out /build/apt-transport-in-toto-pKT7mz /tmp/apt-transport-in-toto-0.1.1-2fve48tw8 bullseye /dev/null deb http://snapshot.notset.fr/archive/debian/20210131T204918Z unstable main I: automatically chosen mode: root I: chroot architecture amd64 is equal to the host's architecture I: automatically chosen format: tar I: using /tmp/mmdebstrap.6r0ji088TV as tempdir I: running apt-get update... I: downloading packages with apt... I: extracting archives... I: installing essential packages... I: running --essential-hook in shell: sh -c 'chroot "$1" sh -c "apt-get --yes install fakeroot util-linux"' exec /tmp/mmdebstrap.6r0ji088TV Reading package lists... Building dependency tree... util-linux is already the newest version (2.36.1-6). The following NEW packages will be installed: fakeroot libfakeroot 0 upgraded, 2 newly installed, 0 to remove and 0 not upgraded. Need to get 134 kB of archives. After this operation, 397 kB of additional disk space will be used. Get:1 http://snapshot.notset.fr/archive/debian/20210131T204918Z unstable/main amd64 libfakeroot amd64 1.25.3-1.1 [47.0 kB] Get:2 http://snapshot.notset.fr/archive/debian/20210131T204918Z unstable/main amd64 fakeroot amd64 1.25.3-1.1 [87.0 kB] debconf: delaying package configuration, since apt-utils is not installed Fetched 134 kB in 0s (1122 kB/s) Selecting previously unselected package libfakeroot:amd64. (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 4661 files and directories currently installed.) Preparing to unpack .../libfakeroot_1.25.3-1.1_amd64.deb ... Unpacking libfakeroot:amd64 (1.25.3-1.1) ... Selecting previously unselected package fakeroot. Preparing to unpack .../fakeroot_1.25.3-1.1_amd64.deb ... Unpacking fakeroot (1.25.3-1.1) ... Setting up libfakeroot:amd64 (1.25.3-1.1) ... Setting up fakeroot (1.25.3-1.1) ... update-alternatives: using /usr/bin/fakeroot-sysv to provide /usr/bin/fakeroot (fakeroot) in auto mode Processing triggers for libc-bin (2.31-9) ... I: running special hook: copy-in /usr/share/keyrings/debian-archive-bullseye-automatic.gpg /usr/share/keyrings/debian-archive-bullseye-security-automatic.gpg /usr/share/keyrings/debian-archive-bullseye-stable.gpg /usr/share/keyrings/debian-archive-buster-automatic.gpg /usr/share/keyrings/debian-archive-buster-security-automatic.gpg /usr/share/keyrings/debian-archive-buster-stable.gpg /usr/share/keyrings/debian-archive-keyring.gpg /usr/share/keyrings/debian-archive-removed-keys.gpg /usr/share/keyrings/debian-archive-stretch-automatic.gpg /usr/share/keyrings/debian-archive-stretch-security-automatic.gpg /usr/share/keyrings/debian-archive-stretch-stable.gpg /usr/share/keyrings/debian-ports-archive-keyring-removed.gpg /usr/share/keyrings/debian-ports-archive-keyring.gpg /usr/share/keyrings/debian-keyring.gpg /etc/apt/trusted.gpg.d/ I: running --essential-hook in shell: sh -c 'chroot "$1" sh -c "rm /etc/apt/sources.list && echo 'deb http://snapshot.notset.fr/archive/debian/20210814T212851Z/ bookworm main deb-src http://snapshot.notset.fr/archive/debian/20210814T212851Z/ bookworm main deb http://snapshot.notset.fr/archive/debian/20210203T203559Z/ unstable main deb http://snapshot.notset.fr/archive/debian/20210131T204918Z/ unstable main' >> /etc/apt/sources.list && apt-get update"' exec /tmp/mmdebstrap.6r0ji088TV Get:1 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm InRelease [81.6 kB] Get:2 http://snapshot.notset.fr/archive/debian/20210203T203559Z unstable InRelease [153 kB] Hit:3 http://snapshot.notset.fr/archive/debian/20210131T204918Z unstable InRelease Ign:4 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main Sources Ign:5 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main amd64 Packages Ign:4 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main Sources Ign:5 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main amd64 Packages Ign:4 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main Sources Ign:5 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main amd64 Packages Get:4 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main Sources [11.4 MB] Get:5 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main amd64 Packages [11.1 MB] Ign:6 http://snapshot.notset.fr/archive/debian/20210203T203559Z unstable/main amd64 Packages Ign:6 http://snapshot.notset.fr/archive/debian/20210203T203559Z unstable/main amd64 Packages Ign:6 http://snapshot.notset.fr/archive/debian/20210203T203559Z unstable/main amd64 Packages Get:6 http://snapshot.notset.fr/archive/debian/20210203T203559Z unstable/main amd64 Packages [11.6 MB] Fetched 34.4 MB in 28s (1219 kB/s) Reading package lists... I: installing remaining packages inside the chroot... I: running --customize-hook in shell: sh -c 'chroot "$1" useradd --no-create-home -d /nonexistent -p "" builduser -s /bin/bash' exec /tmp/mmdebstrap.6r0ji088TV I: running --customize-hook in shell: sh -c 'chroot "$1" env sh -c "apt-get source --only-source -d apt-transport-in-toto=0.1.1-2 && mkdir -p /build/apt-transport-in-toto-pKT7mz && dpkg-source --no-check -x /*.dsc /build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1 && chown -R builduser:builduser /build/apt-transport-in-toto-pKT7mz"' exec /tmp/mmdebstrap.6r0ji088TV Reading package lists... NOTICE: 'apt-transport-in-toto' packaging is maintained in the 'Git' version control system at: https://github.com/in-toto/apt-transport-in-toto.git -b debian Please use: git clone https://github.com/in-toto/apt-transport-in-toto.git -b debian to retrieve the latest (possibly unreleased) updates to the package. Need to get 52.2 kB of source archives. Get:1 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main apt-transport-in-toto 0.1.1-2 (dsc) [2618 B] Get:2 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main apt-transport-in-toto 0.1.1-2 (tar) [43.6 kB] Get:3 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main apt-transport-in-toto 0.1.1-2 (asc) [874 B] Get:4 http://snapshot.notset.fr/archive/debian/20210814T212851Z bookworm/main apt-transport-in-toto 0.1.1-2 (diff) [5032 B] Fetched 52.2 kB in 0s (305 kB/s) Download complete and in download only mode W: Download is performed unsandboxed as root as file 'apt-transport-in-toto_0.1.1-2.dsc' couldn't be accessed by user '_apt'. - pkgAcquire::Run (13: Permission denied) dpkg-source: info: extracting apt-transport-in-toto in /build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1 dpkg-source: info: unpacking apt-transport-in-toto_0.1.1.orig.tar.gz dpkg-source: info: unpacking apt-transport-in-toto_0.1.1-2.debian.tar.xz I: running --customize-hook in shell: sh -c 'chroot "$1" env --unset=TMPDIR runuser builduser -c "cd /build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1 && env DEB_BUILD_OPTIONS="parallel=4" LANG="C.UTF-8" LC_ALL="C.UTF-8" SOURCE_DATE_EPOCH="1612199823" dpkg-buildpackage -uc -a amd64 --build=all"' exec /tmp/mmdebstrap.6r0ji088TV dpkg-buildpackage: info: source package apt-transport-in-toto dpkg-buildpackage: info: source version 0.1.1-2 dpkg-buildpackage: info: source distribution unstable dpkg-buildpackage: info: source changed by Holger Levsen dpkg-source --before-build . debian/rules clean dh clean dh_clean debian/rules binary-indep dh binary-indep dh_update_autotools_config -i dh_autoreconf -i debian/rules override_dh_auto_test make[1]: Entering directory '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1' python3-coverage run -m unittest discover Skipping unknown config item 'APT::Intoto::NoFail::=false' Prepare in-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/bad/final-product_0.0.0.0-0_all.deb' Create verification directory '/tmp/tmpn989ym5i' Request in-toto metadata from 2 rebuilder(s) (apt config) Request in-toto metadata from http://127.0.0.1:8081/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.5863835e.link' from rebuilder 'http://127.0.0.1:8081' Request in-toto metadata from http://127.0.0.1:8082/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.e946fc60.link' from rebuilder 'http://127.0.0.1:8082' Copy final product to verification directory Load in-toto layout '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/test.layout' (apt config) Load in-toto layout key(s) '['88876A89E3D4698F83D3DB0E72E33CA3E0E04E46']' (apt config) Use gpg keyring '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/gpg_keyring' (apt config) Run in-toto verification In-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/bad/final-product_0.0.0.0-0_all.deb' failed, reason was: 'DISALLOW *.deb' matched the following artifacts: ['final-product_0.0.0.0-0_all.deb'] Full trace for 'expected_materials' of item 'verify-reprobuilds': Available materials (used for queue): ['final-product_0.0.0.0-0_all.deb'] Available products: ['final-product_0.0.0.0-0_all.deb'] Queue after 'MATCH *.deb WITH PRODUCTS FROM rebuild': ['final-product_0.0.0.0-0_all.deb'] .Prepare in-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/bad/final-product_0.0.0.0-0_all.deb' Create verification directory '/tmp/tmplnjl8ttr' Request in-toto metadata from 2 rebuilder(s) (apt config) Request in-toto metadata from http://127.0.0.1:8081/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.5863835e.link' from rebuilder 'http://127.0.0.1:8081' Request in-toto metadata from http://127.0.0.1:8082/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.e946fc60.link' from rebuilder 'http://127.0.0.1:8082' Copy final product to verification directory Load in-toto layout '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/test.layout' (apt config) Load in-toto layout key(s) '['88876A89E3D4698F83D3DB0E72E33CA3E0E04E46']' (apt config) Use gpg keyring '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/gpg_keyring' (apt config) Run in-toto verification In-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/bad/final-product_0.0.0.0-0_all.deb' failed, reason was: 'DISALLOW *.deb' matched the following artifacts: ['final-product_0.0.0.0-0_all.deb'] Full trace for 'expected_materials' of item 'verify-reprobuilds': Available materials (used for queue): ['final-product_0.0.0.0-0_all.deb'] Available products: ['final-product_0.0.0.0-0_all.deb'] Queue after 'MATCH *.deb WITH PRODUCTS FROM rebuild': ['final-product_0.0.0.0-0_all.deb'] .Skipping unknown config item 'APT::Intoto::NoFail::=false' Prepare in-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' Create verification directory '/tmp/tmpj3lct_lz' Request in-toto metadata from 2 rebuilder(s) (apt config) Request in-toto metadata from http://127.0.0.1:8083/sources/final-product/0.0.0.0-0/metadata Could not retrieve in-toto metadata from rebuilder 'http://127.0.0.1:8083', reason was: HTTPConnectionPool(host='127.0.0.1', port=8083): Max retries exceeded with url: /sources/final-product/0.0.0.0-0/metadata (Caused by NewConnectionError(': Failed to establish a new connection: [Errno 111] Connection refused')) Request in-toto metadata from http://127.0.0.1:8082/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.e946fc60.link' from rebuilder 'http://127.0.0.1:8082' Copy final product to verification directory Load in-toto layout '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/test.layout' (apt config) Load in-toto layout key(s) '['88876A89E3D4698F83D3DB0E72E33CA3E0E04E46']' (apt config) Use gpg keyring '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/gpg_keyring' (apt config) Run in-toto verification In-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' failed, reason was: Step 'rebuild' requires '2' link metadata file(s), found '1'. .Skipping unknown config item 'APT::Intoto::NoFail::=false' Prepare in-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' Create verification directory '/tmp/tmp42gmek3m' Request in-toto metadata from 2 rebuilder(s) (apt config) Request in-toto metadata from http://127.0.0.1:8083/sources/final-product/0.0.0.0-0/metadata Could not retrieve in-toto metadata from rebuilder 'http://127.0.0.1:8083', reason was: server response: 404 Request in-toto metadata from http://127.0.0.1:8082/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.e946fc60.link' from rebuilder 'http://127.0.0.1:8082' Copy final product to verification directory Load in-toto layout '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/test.layout' (apt config) Load in-toto layout key(s) '['88876A89E3D4698F83D3DB0E72E33CA3E0E04E46']' (apt config) Use gpg keyring '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/gpg_keyring' (apt config) Run in-toto verification In-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' failed, reason was: Step 'rebuild' requires '2' link metadata file(s), found '1'. .Prepare in-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' Create verification directory '/tmp/tmp6jku6ukx' Request in-toto metadata from 2 rebuilder(s) (apt config) Request in-toto metadata from http://127.0.0.1:8083/sources/final-product/0.0.0.0-0/metadata Could not retrieve in-toto metadata from rebuilder 'http://127.0.0.1:8083', reason was: HTTPConnectionPool(host='127.0.0.1', port=8083): Max retries exceeded with url: /sources/final-product/0.0.0.0-0/metadata (Caused by NewConnectionError(': Failed to establish a new connection: [Errno 111] Connection refused')) Request in-toto metadata from http://127.0.0.1:8082/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.e946fc60.link' from rebuilder 'http://127.0.0.1:8082' Copy final product to verification directory Load in-toto layout '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/test.layout' (apt config) Load in-toto layout key(s) '['88876A89E3D4698F83D3DB0E72E33CA3E0E04E46']' (apt config) Use gpg keyring '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/gpg_keyring' (apt config) Run in-toto verification In-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' failed, reason was: Step 'rebuild' requires '2' link metadata file(s), found '1'. The 'NoFail' setting was configured, installation continues. .Skipping unknown config item 'APT::Intoto::NoFail::=false' Prepare in-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' Create verification directory '/tmp/tmps_cudnn3' Request in-toto metadata from 2 rebuilder(s) (apt config) Request in-toto metadata from http://127.0.0.1:8081/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.5863835e.link' from rebuilder 'http://127.0.0.1:8081' Request in-toto metadata from http://127.0.0.1:8082/sources/final-product/0.0.0.0-0/metadata Successfully downloaded in-toto metadata 'rebuild.e946fc60.link' from rebuilder 'http://127.0.0.1:8082' Copy final product to verification directory Load in-toto layout '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/test.layout' (apt config) Load in-toto layout key(s) '['88876A89E3D4698F83D3DB0E72E33CA3E0E04E46']' (apt config) Use gpg keyring '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/gpg_keyring' (apt config) Run in-toto verification In-toto verification for '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1/tests/data/good/final-product_0.0.0.0-0_all.deb' passed! :) ..Ignoring unknown LogLevel '1.0' Ignoring unknown LogLevel 'abc' .... ---------------------------------------------------------------------- Ran 11 tests in 28.854s OK python3-coverage combine python3-coverage report -m Name Stmts Miss Branch BrPart Cover Missing ------------------------------------------------------- intoto.py 236 7 74 1 97% 430-440, 770->774, 774-775 make[1]: Leaving directory '/build/apt-transport-in-toto-pKT7mz/apt-transport-in-toto-0.1.1' create-stamp debian/debhelper-build-stamp dh_prep -i dh_install -i dh_installdocs -i dh_installchangelogs -i dh_perl -i dh_link -i dh_strip_nondeterminism -i dh_compress -i dh_fixperms -i dh_missing -i dh_installdeb -i dh_gencontrol -i dh_md5sums -i dh_builddeb -i dpkg-deb: building package 'apt-transport-in-toto' in '../apt-transport-in-toto_0.1.1-2_all.deb'. dpkg-genbuildinfo --build=all dpkg-genchanges --build=all >../apt-transport-in-toto_0.1.1-2_all.changes dpkg-genchanges: info: binary-only arch-indep upload (source code and arch-specific packages not included) dpkg-source --after-build . dpkg-buildpackage: info: binary-only upload (no source included) I: running special hook: sync-out /build/apt-transport-in-toto-pKT7mz /tmp/apt-transport-in-toto-0.1.1-2fve48tw8 I: cleaning package lists and apt cache... W: deleting files in /tmp: intoto.log I: creating tarball... I: done I: removing tempdir /tmp/mmdebstrap.6r0ji088TV... I: success in 329.6794 seconds md5: apt-transport-in-toto_0.1.1-2_all.deb: OK sha1: apt-transport-in-toto_0.1.1-2_all.deb: OK sha256: apt-transport-in-toto_0.1.1-2_all.deb: OK Checksums: OK