From a01da30fa1b3fef10d3537cafd05e393719b7aa9 Mon Sep 17 00:00:00 2001 From: Anthony Rossi <41394064+anrossi@users.noreply.github.com> Date: Mon, 24 Nov 2025 15:48:41 -0800 Subject: [PATCH 1/8] Refactor dependabot.yml to use single directory entries for docker Updated dependabot configuration to use single directory entries for Ubuntu Docker images. --- .github/dependabot.yml | 6 ++---- 1 file changed, 2 insertions(+), 4 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 7c541feb39..d842d71552 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -36,8 +36,7 @@ updates: # When combined, dependabot seems to only update when both meet the criteria, # which is impossible, since they're different versions. - package-ecosystem: "docker" - directories: - - "/.docker/ubuntu-22.04" + directory: "/.docker/ubuntu-22.04" schedule: interval: "weekly" day: "saturday" @@ -46,8 +45,7 @@ updates: update-types: ["version-update:semver-major", "version-update:semver-minor"] - package-ecosystem: "docker" - directories: - - "/.docker/ubuntu-24.04" + directory: "/.docker/ubuntu-24.04" schedule: interval: "weekly" day: "saturday" From 0be10e43834146ce1c13c5f902be4a4da187f4d2 Mon Sep 17 00:00:00 2001 From: Anthony Rossi <41394064+anrossi@users.noreply.github.com> Date: Mon, 24 Nov 2025 18:49:43 -0800 Subject: [PATCH 2/8] Let's try this again --- .github/dependabot.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index d842d71552..c60ec30cfc 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -42,7 +42,7 @@ updates: day: "saturday" ignore: - dependency-name: "ubuntu" - update-types: ["version-update:semver-major", "version-update:semver-minor"] + versions: ["> 22.04"] - package-ecosystem: "docker" directory: "/.docker/ubuntu-24.04" @@ -51,4 +51,4 @@ updates: day: "saturday" ignore: - dependency-name: "ubuntu" - update-types: ["version-update:semver-major", "version-update:semver-minor"] + versions: ["> 24.04"] From 6059a008679759c8a9ee0fe945bfb40e767bd7c0 Mon Sep 17 00:00:00 2001 From: Anthony Rossi <41394064+anrossi@users.noreply.github.com> Date: Mon, 24 Nov 2025 19:05:03 -0800 Subject: [PATCH 3/8] Sure why not try this again --- .github/dependabot.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index c60ec30cfc..9110031b5b 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -42,7 +42,7 @@ updates: day: "saturday" ignore: - dependency-name: "ubuntu" - versions: ["> 22.04"] + versions: [">= 22.10"] - package-ecosystem: "docker" directory: "/.docker/ubuntu-24.04" @@ -51,4 +51,4 @@ updates: day: "saturday" ignore: - dependency-name: "ubuntu" - versions: ["> 24.04"] + versions: [">= 24.10"] From 26d3d2d343ab6eca420555bd0508bd9408512b12 Mon Sep 17 00:00:00 2001 From: anrossi <41394064+anrossi@users.noreply.github.com> Date: Tue, 25 Nov 2025 03:22:11 +0000 Subject: [PATCH 4/8] Does the space matter? --- .github/dependabot.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 9110031b5b..5b64b57b48 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -42,7 +42,7 @@ updates: day: "saturday" ignore: - dependency-name: "ubuntu" - versions: [">= 22.10"] + versions: [">=22.10"] - package-ecosystem: "docker" directory: "/.docker/ubuntu-24.04" @@ -51,4 +51,4 @@ updates: day: "saturday" ignore: - dependency-name: "ubuntu" - versions: [">= 24.10"] + versions: [">=24.10"] From 4fb1dfc1ca532988853679261a8b00d30385fd5a Mon Sep 17 00:00:00 2001 From: anrossi <41394064+anrossi@users.noreply.github.com> Date: Tue, 25 Nov 2025 03:33:27 +0000 Subject: [PATCH 5/8] Try an allow statement? --- .github/dependabot.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 5b64b57b48..4a5e9a61f8 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -40,9 +40,9 @@ updates: schedule: interval: "weekly" day: "saturday" - ignore: + allow: - dependency-name: "ubuntu" - versions: [">=22.10"] + dependency-type: "direct" - package-ecosystem: "docker" directory: "/.docker/ubuntu-24.04" From fc0176231a62b1ea67cda155c2097922ec162c38 Mon Sep 17 00:00:00 2001 From: Anthony Rossi <41394064+anrossi@users.noreply.github.com> Date: Tue, 25 Nov 2025 15:48:57 -0800 Subject: [PATCH 6/8] Maybe it'll work only if both use the same configuration? --- .github/dependabot.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 4a5e9a61f8..5664bc0a5f 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -49,6 +49,6 @@ updates: schedule: interval: "weekly" day: "saturday" - ignore: + allow: - dependency-name: "ubuntu" - versions: [">=24.10"] + dependency-type: "direct" From cb889f75a1d7a811051897366f73ef82d2cc91ef Mon Sep 17 00:00:00 2001 From: Anthony Rossi <41394064+anrossi@users.noreply.github.com> Date: Tue, 25 Nov 2025 16:01:25 -0800 Subject: [PATCH 7/8] Let's try only allowing digest changes --- .github/dependabot.yml | 2 ++ 1 file changed, 2 insertions(+) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 5664bc0a5f..f8292ec97c 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -43,6 +43,7 @@ updates: allow: - dependency-name: "ubuntu" dependency-type: "direct" + update-types: ["version-update:semver-digest"] - package-ecosystem: "docker" directory: "/.docker/ubuntu-24.04" @@ -52,3 +53,4 @@ updates: allow: - dependency-name: "ubuntu" dependency-type: "direct" + update-types: ["version-update:semver-digest"] From ed6c028c4dfae6a912bfb938be507eb58150562a Mon Sep 17 00:00:00 2001 From: Anthony Rossi <41394064+anrossi@users.noreply.github.com> Date: Tue, 25 Nov 2025 16:14:23 -0800 Subject: [PATCH 8/8] Try allowing digest updates and ignoring all other kinds --- .github/dependabot.yml | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index f8292ec97c..2d70f388c0 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -42,8 +42,10 @@ updates: day: "saturday" allow: - dependency-name: "ubuntu" - dependency-type: "direct" update-types: ["version-update:semver-digest"] + ignore: + - dependency-name: "ubuntu" + update-types: ["version-update:semver-major", "version-update:semver-minor"] - package-ecosystem: "docker" directory: "/.docker/ubuntu-24.04" @@ -52,5 +54,7 @@ updates: day: "saturday" allow: - dependency-name: "ubuntu" - dependency-type: "direct" update-types: ["version-update:semver-digest"] + ignore: + - dependency-name: "ubuntu" + update-types: ["version-update:semver-major", "version-update:semver-minor"]