[Qa-jenkins-scm] Build failed in Jenkins: reproducible_fdroid_test #232

jenkins at jenkins.debian.net jenkins at jenkins.debian.net
Thu Jul 4 00:44:40 BST 2019


See <https://jenkins.debian.net/job/reproducible_fdroid_test/232/display/redirect?page=changes>

Changes:

[hans] gitlab-ci: disable bandit fail on standard debug keystore password

[hans] gitlab-ci: move pip job to Xenial, Trusty is over

[hans] gitlab-ci: the ubuntu_lts test also tests the PPA

[hans] tests: handle when apksigner considers MD5 signatures valid

[hans] tests: common.test_sign_apk requires aapt to run

[hans] travis: purge "linux" test now that the runner was upgraded to Xenial

[hans] travis: upgrade Java to newest release if old enough to still use MD5

[hans] travis: uninstall mercurial since it requires Python2 and is unused

[hans] travis: use travis_retry to retry failed sdkmanager/pip3 downloads

[hans] travis: tame unneeded messages in log to prevent job terminiation

[hans] travis: purge xcode9.2 runner, it has flaky networking

[hans] update test badges in README

------------------------------------------
[...truncated 214.37 KB...]

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore keystore.jks -destkeystore keystore.jks -deststoretype pkcs12".
INFO: Creating signed index with this key (SHA256):
INFO: 41 52 20 2C 98 17 74 0F FC FF 0E 19 83 10 2C A1 FC C6 B5 15 31 0E D0 0C 25 4B 69 7F 6B C9 D0 EF
DEBUG: Directory: repo
DEBUG: > jar cf index.jar index.xml
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA repo/index.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA repo/index-v1.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/keytool -exportcert -alias osuosl-build168-amd64.debian.net -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore keystore.jks -destkeystore keystore.jks -deststoretype pkcs12".
INFO: Creating signed index with this key (SHA256):
INFO: 41 52 20 2C 98 17 74 0F FC FF 0E 19 83 10 2C A1 FC C6 B5 15 31 0E D0 0C 25 4B 69 7F 6B C9 D0 EF
DEBUG: Directory: archive
DEBUG: > jar cf index.jar index.xml
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA archive/index.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA archive/index-v1.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
INFO: Finished
==============================================================================
test config checks of local_copy_dir
+ echo_header 'test config checks of local_copy_dir'
++ create_test_dir
++ test -e /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles
++ mktemp -d /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.XXXX
+ REPOROOT=/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.Oahb
+ cd /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.Oahb
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid init
INFO: Generating a new key in "keystore.jks"...
INFO: Alias name: osuosl-build168-amd64.debian.net
Creation date: Jul 3, 2019
Entry type: PrivateKeyEntry
Certificate chain length: 1
Certificate[1]:
Owner: CN=osuosl-build168-amd64.debian.net, OU=F-Droid
Issuer: CN=osuosl-build168-amd64.debian.net, OU=F-Droid
Serial number: 7a9bd0f
Valid from: Wed Jul 03 23:44:28 UTC 2019 until: Sun Nov 18 23:44:28 UTC 2046
Certificate fingerprints:
	 MD5:  23:0D:50:98:39:53:A4:77:96:3A:4A:9E:21:24:26:EF
	 SHA1: 8A:45:1D:C3:86:F0:3B:3E:14:4A:36:91:AA:0D:A5:8C:07:76:30:2E
	 SHA256: 6F:05:36:32:43:35:75:3E:C8:00:3D:4C:66:07:36:59:47:69:82:DD:4B:08:BE:54:84:C5:69:29:6F:FB:85:EF
Signature algorithm name: SHA256withRSA
Subject Public Key Algorithm: 4096-bit RSA key
Version: 3

Extensions: 

#1: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: 2E 6E 89 57 C0 C0 46 58   71 20 F5 99 87 6A 5C 1C  .n.W..FXq ...j\.
0010: B4 D2 0C 6C                                        ...l
]
]


Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore keystore.jks -destkeystore keystore.jks -deststoretype pkcs12".


INFO: 
Built repo based in "/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.Oahb" with this config:

  Android SDK:			/usr/lib/android-sdk
  Android NDK r12b (optional):	$ANDROID_NDK
  Keystore for signing key:	keystore.jks

To complete the setup, add your APKs to "/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.Oahb/repo"
then run "fdroid update -c; fdroid update".  You might also want to edit
"config.py" to set the URL, repo name, and more.  You should also set up
a signing key (a temporary one might have been automatically generated).

For more info: https://f-droid.org/docs/Setup_an_F-Droid_App_Repo
and https://f-droid.org/docs/Signing_Process
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid update --create-metadata --verbose
DEBUG: Reading 'config.py'
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/keytool -exportcert -alias osuosl-build168-amd64.debian.net -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore keystore.jks -destkeystore keystore.jks -deststoretype pkcs12".
INFO: Creating signed index with this key (SHA256):
INFO: 6F 05 36 32 43 35 75 3E C8 00 3D 4C 66 07 36 59 47 69 82 DD 4B 08 BE 54 84 C5 69 29 6F FB 85 EF
DEBUG: Directory: repo
DEBUG: > jar cf index.jar index.xml
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA repo/index.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA repo/index-v1.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/keytool -exportcert -alias osuosl-build168-amd64.debian.net -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore keystore.jks -destkeystore keystore.jks -deststoretype pkcs12".
INFO: Creating signed index with this key (SHA256):
INFO: 6F 05 36 32 43 35 75 3E C8 00 3D 4C 66 07 36 59 47 69 82 DD 4B 08 BE 54 84 C5 69 29 6F FB 85 EF
DEBUG: Directory: archive
DEBUG: > jar cf index.jar index.xml
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA archive/index.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA archive/index-v1.jar osuosl-build168-amd64.debian.net -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
INFO: Finished
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid readmeta
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid server update --local-copy-dir=/tmp/fdroid
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid deploy --local-copy-dir=/tmp/fdroid --verbose
DEBUG: Reading 'config.py'
DEBUG: rsync --recursive --safe-links --times --perms --one-file-system --delete --chmod=Da+rx,Fa-x,a+r,u+w --checksum --verbose repo /tmp/fdroid/
sending incremental file list

sent 492 bytes  received 24 bytes  1,032.00 bytes/sec
total size is 14,722  speedup is 28.53
DEBUG: rsync --recursive --safe-links --times --perms --one-file-system --delete --chmod=Da+rx,Fa-x,a+r,u+w --checksum --verbose archive /tmp/fdroid/
sending incremental file list

sent 449 bytes  received 24 bytes  946.00 bytes/sec
total size is 14,092  speedup is 29.79
+ set +e
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid server update --local-copy-dir=thisisnotanabsolutepath
ERROR: The root dir for local_copy_dir "" does not exist!
testing absolute path checker passed
+ '[' 1 -eq 0 ']'
+ echo 'testing absolute path checker passed'
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid server update --local-copy-dir=/tmp/IReallyDoubtThisPathExistsasdfasdf
ERROR: local_copy_dir does not end with "fdroid", perhaps you meant: "/tmp/IReallyDoubtThisPathExistsasdfasdf/fdroid"
testing dirname exists checker passed
+ '[' 1 -eq 0 ']'
+ echo 'testing dirname exists checker passed'
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid server update --local-copy-dir=/tmp/IReallyDoubtThisPathExistsasdfasdf/fdroid
ERROR: The root dir for local_copy_dir "/tmp/IReallyDoubtThisPathExistsasdfasdf" does not exist!
testing dirname exists checker passed
+ '[' 1 -eq 0 ']'
+ echo 'testing dirname exists checker passed'
==============================================================================
setup a new repo from scratch using ANDROID_HOME and do a local sync
+ set -e
+ echo_header 'setup a new repo from scratch using ANDROID_HOME and do a local sync'
++ create_test_dir
++ test -e /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles
++ mktemp -d /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.XXXX
+ REPOROOT=/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.DAJP
+ cd /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.DAJP
+ fdroid_init_with_prebuilt_keystore
+ '[' -z '' ']'
+ keystore=/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid init --keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks --repo-keyalias=sova
WARNING: 
Using existing keystore "/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks"
Now set these in config.py: keystorepass, keypass, keydname

INFO: 
Built repo based in "/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.DAJP" with this config:

  Android SDK:			/usr/lib/android-sdk
  Android NDK r12b (optional):	$ANDROID_NDK
  Keystore for signing key:	/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks
  Alias for key in store:	sova

To complete the setup, add your APKs to "/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.DAJP/repo"
then run "fdroid update -c; fdroid update".  You might also want to edit
"config.py" to set the URL, repo name, and more.  You should also set up
a signing key (a temporary one might have been automatically generated).

For more info: https://f-droid.org/docs/Setup_an_F-Droid_App_Repo
and https://f-droid.org/docs/Signing_Process
+ echo 'keystorepass = "r9aquRHYoI8+dYz6jKrLntQ5/NJNASFBacJh7Jv2BlI="'
+ echo 'keypass = "r9aquRHYoI8+dYz6jKrLntQ5/NJNASFBacJh7Jv2BlI="'
+ copy_apks_into_repo /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/.testfiles/run-tests.DAJP
+ set +x
find: ‘/var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroiddata/repo’: No such file or directory
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid update --create-metadata --verbose
DEBUG: Reading 'config.py'
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/keytool -exportcert -alias sova -keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -storepass:env FDROID_KEY_STORE_PASS

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -destkeystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -deststoretype pkcs12".
INFO: Creating signed index with this key (SHA256):
INFO: F4 9A F3 F1 1E FD DF 20 DF FD 70 F5 E3 11 7B 99 76 67 41 67 AD CA 28 0E 6B 19 32 A0 60 1B 26 F6
DEBUG: Directory: repo
DEBUG: > jar cf index.jar index.xml
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA repo/index.jar sova -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA repo/index-v1.jar sova -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/keytool -exportcert -alias sova -keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -storepass:env FDROID_KEY_STORE_PASS

Warning:
The JKS keystore uses a proprietary format. It is recommended to migrate to PKCS12 which is an industry standard format using "keytool -importkeystore -srckeystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -destkeystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -deststoretype pkcs12".
INFO: Creating signed index with this key (SHA256):
INFO: F4 9A F3 F1 1E FD DF 20 DF FD 70 F5 E3 11 7B 99 76 67 41 67 AD CA 28 0E 6B 19 32 A0 60 1B 26 F6
DEBUG: Directory: archive
DEBUG: > jar cf index.jar index.xml
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA archive/index.jar sova -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
DEBUG: > /usr/lib/jvm/java-8-openjdk-amd64/bin/jarsigner -keystore /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/tests/keystore.jks -storepass:env FDROID_KEY_STORE_PASS -digestalg SHA1 -sigalg SHA1withRSA archive/index-v1.jar sova -keypass:env FDROID_KEY_PASS
jar signed.

Warning: 
The signer's certificate is self-signed.
INFO: Finished
+ /var/lib/jenkins/userContent/reproducible/reproducible_fdroid_build_apps/fdroid readmeta
+ grep -F '<application id=' repo/index.xml
+ cleanup_all
++ date -u
Wed Jul  3 23:44:40 UTC 2019 - cleanup in progress...
+ echo 'Wed Jul  3 23:44:40 UTC 2019 - cleanup in progress...'
+ killall adb
adb: no process found
Wed Jul  3 23:44:40 UTC 2019 - /srv/jenkins/bin/reproducible_fdroid_test.sh stopped running as /tmp/jenkins-script-tTtOj9oc, which will now be removed.

SSH EXIT CODE: 1
Build step 'Execute shell' marked build as failure



More information about the Qa-jenkins-scm mailing list