Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump google-oauth-client from 1.31.0 to 1.33.1 in /plugins/discovery-gce #2524

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 21, 2022

Bumps google-oauth-client from 1.31.0 to 1.33.1.

Release notes

Sourced from google-oauth-client's releases.

v1.33.1

1.33.1 (2022-02-08)

Dependencies

v1.33.0

1.33.0 (2022-01-19)

Features

  • next release from main branch is 1.33.0 (#772) (4c3a639)

Bug Fixes

google-oauth-java-client v1.32.1

Features

  • add gcf-owl-bot[bot] to ignoreAuthors (#690) (2786401)
  • Add HMAC-SHA256 signature method for OAuth 1.0 (#711) (c070f5f)

Bug Fixes

  • release scripts from issuing overlapping phases (#664) (60fec2b)
  • Revert "chore(deps): update dependency com.google.googlejavaformat:google-java-format to v1.10.0" to fix linter (#713) (bbc9ea2)
  • Update dependencies.sh to not break on mac (#706) (39c2777)

google-oauth-java-client v1.32.0

Features

  • add gcf-owl-bot[bot] to ignoreAuthors (#690) (2786401)
  • Add HMAC-SHA256 signature method for OAuth 1.0 (#711) (c070f5f)

Bug Fixes

... (truncated)

Changelog

Sourced from google-oauth-client's changelog.

1.33.1 (2022-02-08)

Dependencies

1.33.0 (2022-01-19)

Features

  • next release from main branch is 1.33.0 (#772) (4c3a639)

Bug Fixes

1.32.1 (2021-08-12)

Features

  • add gcf-owl-bot[bot] to ignoreAuthors (#690) (2786401)
  • Add HMAC-SHA256 signature method for OAuth 1.0 (#711) (c070f5f)

Bug Fixes

  • release scripts from issuing overlapping phases (#664) (60fec2b)
  • Revert "chore(deps): update dependency com.google.googlejavaformat:google-java-format to v1.10.0" to fix linter (#713) (bbc9ea2)
  • Update dependencies.sh to not break on mac (#706) (39c2777)

1.32.0 (2021-08-11)

Features

  • add gcf-owl-bot[bot] to ignoreAuthors (#690) (2786401)
  • Add HMAC-SHA256 signature method for OAuth 1.0 (#711) (c070f5f)

Bug Fixes

  • release scripts from issuing overlapping phases (#664) (60fec2b)
  • Revert "chore(deps): update dependency com.google.googlejavaformat:google-java-format to v1.10.0" to fix linter (#713) (bbc9ea2)

... (truncated)

Commits
  • dfc43f7 chore(main): release 1.33.1 (#826)
  • 7b225fd chore: update auto-release script to fix breaking changes in v5 (#1350) (#830)
  • da419ed chore: enable auto release in java (#1349) (#829)
  • 26a1e8d chore(deps): update dependency org.codehaus.mojo:animal-sniffer-maven-plugin ...
  • 79635a5 chore(main): release 1.33.1-SNAPSHOT (#821)
  • 1f15374 deps(java): update actions/github-script action to v5 (#1339) (#822)
  • 8db783c chore(deps): update project.http.version to v1.41.2 (#824)
  • f488135 chore(deps): update appengine packages to v1.9.94 (#818)
  • e4a04da chore(deps): update dependency com.google.oauth-client:google-oauth-client to...
  • 039831c chore(deps): update dependency com.google.http-client:google-http-client-bom ...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [google-oauth-client](https://github.com/googleapis/google-oauth-java-client) from 1.31.0 to 1.33.1.
- [Release notes](https://github.com/googleapis/google-oauth-java-client/releases)
- [Changelog](https://github.com/googleapis/google-oauth-java-client/blob/main/CHANGELOG.md)
- [Commits](googleapis/google-oauth-java-client@v1.31.0...v1.33.1)

---
updated-dependencies:
- dependency-name: com.google.oauth-client:google-oauth-client
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot requested a review from a team as a code owner March 21, 2022 13:23
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Mar 21, 2022
Signed-off-by: dependabot[bot] <support@github.com>
@opensearch-ci-bot
Copy link
Collaborator

❌   Gradle Check failure 15e555e
Log 3586

Reports 3586

@opensearch-ci-bot
Copy link
Collaborator

❌   Gradle Check failure 6f2db7d
Log 3589

Reports 3589

@nknize nknize added the v2.0.0 Version 2.0.0 label Mar 21, 2022
@saratvemulapalli
Copy link
Member

Precommit failing due to:

==end of forbidden APIs==
Missing classes:
  * com.google.common.io.BaseEncoding

FAILURE: Build failed with an exception.

* What went wrong:
Execution failed for task ':plugins:discovery-gce:thirdPartyAudit'.
> Audit of third party dependencies failed

* Try:
> Run with --stacktrace option to get the stack trace.
> Run with --info or --debug option to get more log output.
> Run with --scan to get full insights.

* Get more help at https://help.gradle.org/

@dblock
Copy link
Member

dblock commented Mar 21, 2022

@saratvemulapalli What's the process for these?

Signed-off-by: Vacha Shah <vachshah@amazon.com>
@opensearch-ci-bot
Copy link
Collaborator

❌   Gradle Check failure 864538a
Log 3638

Reports 3638

@VachaShah
Copy link
Collaborator

❌   Gradle Check failure 864538a Log 3638

Reports 3638

REPRODUCE WITH: ./gradlew ':qa:remote-clusters:integTest' --tests "org.opensearch.cluster.remote.test.RemoteClustersIT.testHAProxyModeConnectionWorks" -Dtests.seed=4312132E5AFB6C09 -Dtests.security.manager=true -Dtests.jvm.argline="-XX:TieredStopAtLevel=1 -XX:ReservedCodeCacheSize=64m" -Dtests.locale=es-PE -Dtests.timezone=Asia/Kabul -Druntime.java=17

#1703

@VachaShah
Copy link
Collaborator

start gradle check

@opensearch-ci-bot
Copy link
Collaborator

❌   Gradle Check failure 864538a
Log 3644

Reports 3644

@VachaShah
Copy link
Collaborator

❌   Gradle Check failure 864538a Log 3644

Reports 3644

Execution failed for task ':qa:multi-cluster-search:remote-cluster'.
> `cluster{:qa:multi-cluster-search:remote-cluster}` failed to wait for cluster health yellow after 40 SECONDS
    IO error while waiting cluster
    503 Service Unavailable

@VachaShah
Copy link
Collaborator

start gradle check

@opensearch-ci-bot
Copy link
Collaborator

✅   Gradle Check success 864538a
Log 3648

Reports 3648

@saratvemulapalli saratvemulapalli merged commit 7d9cd31 into main Mar 22, 2022
@dependabot dependabot bot deleted the dependabot/gradle/plugins/discovery-gce/com.google.oauth-client-google-oauth-client-1.33.1 branch March 22, 2022 01:03
@saratvemulapalli
Copy link
Member

@saratvemulapalli What's the process for these?

Looks like the only way for now is to manually commit to dependabot branch.
Its going to be tricky to find the dependency and add it as part of the workflow. But we can take this as an enhancement.
@VachaShah would probably know the feasibility of this.

@VachaShah
Copy link
Collaborator

@saratvemulapalli What's the process for these?

Looks like the only way for now is to manually commit to dependabot branch. Its going to be tricky to find the dependency and add it as part of the workflow. But we can take this as an enhancement. @VachaShah would probably know the feasibility of this.

Yeah currently it is manual. It wasn't added as of now since the number of PRs needing this change was much less than the ones succeeding with the current automation. And as you mentioned, it is tricky to do this as part of the workflow. I haven't explored what it will take to add this as part of the workflow though.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file v2.0.0 Version 2.0.0
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants