From e4e07a0fc9fd5376492542e96e69dfb1c482978f Mon Sep 17 00:00:00 2001 From: Kat Suricata Date: Thu, 13 Aug 2026 23:45:21 -0400 Subject: [PATCH] checksums as SHA256SUMS.txt: Pages 308s extensionless paths into a 404 --- .tangled/workflows/release.yml | 4 +++- README.md | 6 +++--- 2 files changed, 6 insertions(+), 4 deletions(-) diff --git a/.tangled/workflows/release.yml b/.tangled/workflows/release.yml index e973ddc..5dfe140 100644 --- a/.tangled/workflows/release.yml +++ b/.tangled/workflows/release.yml @@ -126,7 +126,9 @@ steps: # (depth 1) and only the tag ref exists. git archive --format=tar.gz --prefix="hecapte-${VERSION}/" \ -o "$DIST/hecapte-${VERSION}-source.tar.gz" "v${VERSION}" - (cd "$DIST" && sha256sum *.tar.gz > SHA256SUMS) + # .txt suffix: Tangled Pages 308-redirects extensionless paths into a + # 404, so a bare `SHA256SUMS` file would be undownloadable (lesson L13). + (cd "$DIST" && sha256sum *.tar.gz > SHA256SUMS.txt) ls -la "$DIST" - name: "Publish to pages repo (auto-deploys katsuricata.tngl.io)" diff --git a/README.md b/README.md index 054c1d7..c479a22 100644 --- a/README.md +++ b/README.md @@ -143,13 +143,13 @@ Run a prebuilt release binary, or build from source. Both layouts put the `hecap ### Option 1: Prebuilt Release -Every release publishes at [katsuricata.tngl.io/hecapte](https://katsuricata.tngl.io/hecapte/): one directory per version with a `hecapte-linux-amd64.tar.gz`, a `hecapte-linux-arm64.tar.gz`, a source tarball, and a `SHA256SUMS` checksum file. A binary tarball contains the `hecapte` server binary, the `web/static` assets, and the license. +Every release publishes at [katsuricata.tngl.io/hecapte](https://katsuricata.tngl.io/hecapte/): one directory per version with a `hecapte-linux-amd64.tar.gz`, a `hecapte-linux-arm64.tar.gz`, a source tarball, and a `SHA256SUMS.txt` checksum file. A binary tarball contains the `hecapte` server binary, the `web/static` assets, and the license. ```bash # substitute the version and the architecture you want curl -LO https://katsuricata.tngl.io/hecapte/v4.0.1/hecapte-linux-amd64.tar.gz -curl -LO https://katsuricata.tngl.io/hecapte/v4.0.1/SHA256SUMS -sha256sum --check --ignore-missing SHA256SUMS +curl -LO https://katsuricata.tngl.io/hecapte/v4.0.1/SHA256SUMS.txt +sha256sum --check --ignore-missing SHA256SUMS.txt tar -xzf hecapte-linux-amd64.tar.gz cd hecapte-4.0.1-linux-amd64 ``` -- 2.51.2