dryang / rpms / systemd

Forked from rpms/systemd 2 years ago
Clone
8d419f
From 433d2036ecf211e9a7c85d57e4c91d8723f80cbb Mon Sep 17 00:00:00 2001
8d419f
From: Frantisek Sumsal <frantisek@sumsal.cz>
8d419f
Date: Wed, 13 Jul 2022 11:12:36 +0200
8d419f
Subject: [PATCH] ci: limit which env variables we pass through `sudo`
8d419f
8d419f
to work around #23987.
8d419f
8d419f
(cherry picked from commit d46e7c7cfd6c286a38298c067f16ac784c2a26f0)
8d419f
8d419f
Related: #2087652
8d419f
---
8d419f
 .github/workflows/unit_tests.yml | 10 ++++++++--
8d419f
 1 file changed, 8 insertions(+), 2 deletions(-)
8d419f
8d419f
diff --git a/.github/workflows/unit_tests.yml b/.github/workflows/unit_tests.yml
8d419f
index 2afde5d59d..58b7b7cdb2 100644
8d419f
--- a/.github/workflows/unit_tests.yml
8d419f
+++ b/.github/workflows/unit_tests.yml
8d419f
@@ -28,8 +28,14 @@ jobs:
8d419f
       - name: Repository checkout
8d419f
         uses: actions/checkout@ec3a7ce113134d7a93b817d10a8272cb61118579
8d419f
       - name: Install build dependencies
8d419f
-        run: sudo -E .github/workflows/unit_tests.sh SETUP
8d419f
+        run: |
8d419f
+          # Drop XDG_* stuff from /etc/environment, so we don't get the user
8d419f
+          # XDG_* variables when running under sudo
8d419f
+          sudo sed -i '/^XDG_/d' /etc/environment
8d419f
+          # Pass only specific env variables through sudo, to avoid having
8d419f
+          # the already existing XDG_* stuff on the "other side"
8d419f
+          sudo --preserve-env=CRYPTOLIB,GITHUB_ACTIONS,CI .github/workflows/unit_tests.sh SETUP
8d419f
       - name: Build & test (${{ matrix.run_phase }}-${{ matrix.cryptolib }})
8d419f
-        run: sudo -E .github/workflows/unit_tests.sh RUN_${{ matrix.run_phase }}
8d419f
+        run: sudo --preserve-env=CRYPTOLIB,GITHUB_ACTIONS,CI .github/workflows/unit_tests.sh RUN_${{ matrix.run_phase }}
8d419f
         env:
8d419f
           CRYPTOLIB: ${{ matrix.cryptolib }}