• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

wrouesnel / netboot / 36373570632
45%
main: 45%

Build:
Build:
LAST BUILD BRANCH: wrouesnel/secure-boot-features
DEFAULT BRANCH: main
Ran 28 Sep 2026 03:25AM UTC
Jobs 1
Files 42
Run time 1min
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

28 Sep 2026 03:20AM UTC coverage: 34.596%. First build
36373570632

push

github

wrouesnel
Fork as github.com/wrouesnel/netboot, move to mage, secure API mode

Rename the module to github.com/wrouesnel/netboot and note in the
README that this is a fork of danderson/netboot.

Build and CI:
- Replace the Makefiles, scripts/ and dockerfiles/ with a mage build
  (magefile.go, run with `go run mage.go`) and GitHub workflows for
  integration, releases, multi-arch container images and CodeQL,
  based on wrouesnel/golang-template.
- Add a version package stamped at build time.
- `mage binary` names its symlink with a -bin suffix when a non-symlink
  (such as the pixiecore/ source directory) already has the name, and
  `mage clean` only removes symlinks.
- Replace `make update-ipxe` with `mage updateIpxe`, and bump iPXE to
  v2.0.0 (the old pin no longer builds with current toolchains).
- Fix the vet, errcheck and staticcheck findings from golangci-lint.

API mode:
- Support HTTPS API servers with a custom CA (--api-ca-cert), HTTP
  basic auth (--api-username, --api-password-file or
  PIXIECORE_API_PASSWORD), and mTLS with a client certificate from files
  (--api-client-cert/--api-client-key) or with a TPM-resident key
  (--api-client-tpm). Basic auth is only sent to the API server's
  origin. The same flags work for ipv6api.
- Kernel/initrd fetches and boot file writes now use the configured
  client instead of http.DefaultClient, without the API request
  timeout.
- Add `pixiecore tpm-cert`, which creates the TPM key (a TSS2 keyfile)
  and a self-signed client certificate if needed, and prints the
  certificate so the API server can trust it. --csr prints a CSR for
  CA signing instead, and --renew issues a new certificate.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>

201 of 417 new or added lines in 28 files covered. (48.2%)

1215 of 3512 relevant lines covered (34.6%)

2.78 hits per line

Uncovered Changes

Lines Coverage ∆ File
62
10.14
pixiecore/cli/tpmcertcmd.go
46
66.91
pixiecore/tpmkey/tpmkey.go
36
55.0
pixiecore/cli/apiclient.go
10
0.0
pixiecore/dhcpv6.go
8
0.0
pixiecore/tpmkey/open_other.go
8
0.0
tftp/tftp.go
6
86.05
pixiecore/apiclient.go
5
57.67
dhcp6/options.go
4
0.0
dhcp6/conn.go
3
38.98
dhcp6/packet.go
3
0.0
pixiecore/boot_configuration.go
3
53.91
pixiecore/booters.go
3
18.31
pixiecore/cli/ipv6apicmd.go
3
56.25
pixiecore/http.go
3
0.0
pixiecore/tftp.go
2
0.0
pixiecore/dhcp.go
2
0.0
pixiecore/pxe.go
1
67.82
dhcp4/packet.go
1
85.19
dhcp6/pool/random_address_pool.go
1
79.03
pcap/reader.go
1
0.0
pixiecore/api-example/main.go
1
23.53
pixiecore/cli/apicmd.go
1
13.1
pixiecore/cli/cli.go
1
18.18
pixiecore/cli/debugcmd.go
1
0.0
pixiecore/cli/v1compat.go
1
0.0
tftp/handlers.go
Jobs
ID Job ID Ran Files Coverage
1 36373570632.1 28 Sep 2026 03:25AM UTC 42
34.6
GitHub Action Run
Source Files on build 36373570632
  • Tree
  • List 42
  • Changed 0
  • Source Changed 0
  • Coverage Changed 0
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Repo
  • ec381bec on github
  • Next Build on wrouesnel/secure-boot-features (#37203770096)
  • Delete
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE TRIAL · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc