From 89cb9dc4661289d4c86f514bbe8b9e4d12343b76 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Fri, 17 Jul 2026 17:32:01 +0200 Subject: [PATCH 01/17] [release/9.0-staging] Migrate devdiv/dotnet-core-internal-tooling to WIF service connection (#130917) Backport of #130264 to release/9.0-staging --- eng/pipelines/common/restore-internal-tools.yml | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/eng/pipelines/common/restore-internal-tools.yml b/eng/pipelines/common/restore-internal-tools.yml index fdec41da53da55..f9f169dc4f63c2 100644 --- a/eng/pipelines/common/restore-internal-tools.yml +++ b/eng/pipelines/common/restore-internal-tools.yml @@ -1,7 +1,9 @@ steps: - task: NuGetAuthenticate@1 + displayName: Authenticate devdiv/dotnet-core-internal-tooling feed (WIF) inputs: - nuGetServiceConnections: 'devdiv/dotnet-core-internal-tooling' + azureDevOpsServiceConnection: dnceng-devdiv-dotnet-core-internal-tooling-feed-rw-wif + feedUrl: https://pkgs.dev.azure.com/devdiv/_packaging/dotnet-core-internal-tooling/nuget/v3/index.json forceReinstallCredentialProvider: true - script: $(Build.SourcesDirectory)$(dir)build$(scriptExt) From 19693e8951c823cd27afdb5ee6f6ddbaf4ed8aa3 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Tue, 21 Jul 2026 15:38:42 +0200 Subject: [PATCH 02/17] [release/9.0-staging] Update dependencies from dotnet/arcade (#130944) This pull request updates the following dependencies [marker]: <> (Begin:943c2154-7e47-4fed-bb40-3e772747daf7) ## From https://github.com/dotnet/arcade - **Subscription**: [943c2154-7e47-4fed-bb40-3e772747daf7](https://maestro.dot.net/subscriptions?search=943c2154-7e47-4fed-bb40-3e772747daf7) - **Build**: [20260716.5](https://dev.azure.com/dnceng/internal/_build/results?buildId=3024233) ([323187](https://maestro.dot.net/channel/5175/github:dotnet:arcade/build/323187)) - **Date Produced**: July 16, 2026 6:50:31 PM UTC - **Commit**: [b1448f6afdd8d543e6452c293ce99c68c745b200](https://github.com/dotnet/arcade/commit/b1448f6afdd8d543e6452c293ce99c68c745b200) - **Branch**: [release/9.0](https://github.com/dotnet/arcade/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-beta.26301.4 to 9.0.0-beta.26366.5][1] - Microsoft.SourceBuild.Intermediate.arcade - Microsoft.DotNet.Arcade.Sdk - Microsoft.DotNet.Build.Tasks.Archives - Microsoft.DotNet.Build.Tasks.Feed - Microsoft.DotNet.Build.Tasks.Installers - Microsoft.DotNet.Build.Tasks.Packaging - Microsoft.DotNet.Build.Tasks.TargetFramework - Microsoft.DotNet.Build.Tasks.Templating - Microsoft.DotNet.Build.Tasks.Workloads - Microsoft.DotNet.CodeAnalysis - Microsoft.DotNet.GenAPI - Microsoft.DotNet.GenFacades - Microsoft.DotNet.Helix.Sdk - Microsoft.DotNet.PackageTesting - Microsoft.DotNet.RemoteExecutor - Microsoft.DotNet.SharedFramework.Sdk - Microsoft.DotNet.VersionTools.Tasks - Microsoft.DotNet.XliffTasks - Microsoft.DotNet.XUnitExtensions - From [2.9.0-beta.26301.4 to 2.9.0-beta.26366.5][1] - Microsoft.DotNet.XUnitAssert - Microsoft.DotNet.XUnitConsoleRunner [1]: https://github.com/dotnet/arcade/compare/efce34e9f9...b1448f6afd [DependencyUpdate]: <> (End) [marker]: <> (End:943c2154-7e47-4fed-bb40-3e772747daf7) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 84 +++++++++---------- eng/Versions.props | 32 +++---- eng/common/core-templates/job/onelocbuild.yml | 21 ++++- eng/common/tools.ps1 | 2 +- eng/common/tools.sh | 2 +- global.json | 6 +- 6 files changed, 83 insertions(+), 64 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 52c3e92c7ad680..beb4fe29a3205b 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -93,87 +93,87 @@ - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 https://github.com/dotnet/runtime-assets @@ -333,9 +333,9 @@ https://github.com/dotnet/xharness 4da0015e9dd1ed7d3992db7d1eb6878a5ee11ab2 - + https://github.com/dotnet/arcade - efce34e9f9f25af27e2b471fbbf8c21f1ac2e318 + b1448f6afdd8d543e6452c293ce99c68c745b200 https://dev.azure.com/dnceng/internal/_git/dotnet-optimization diff --git a/eng/Versions.props b/eng/Versions.props index ccd61361e72c21..ae953266c224a2 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -84,22 +84,22 @@ 9.0.109 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 2.9.0-beta.26301.4 - 9.0.0-beta.26301.4 - 2.9.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 - 9.0.0-beta.26301.4 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 2.9.0-beta.26366.5 + 9.0.0-beta.26366.5 + 2.9.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 + 9.0.0-beta.26366.5 1.4.0 diff --git a/eng/common/core-templates/job/onelocbuild.yml b/eng/common/core-templates/job/onelocbuild.yml index edefa789d360f3..79386ab08638e8 100644 --- a/eng/common/core-templates/job/onelocbuild.yml +++ b/eng/common/core-templates/job/onelocbuild.yml @@ -8,6 +8,12 @@ parameters: CeapexPat: $(dn-bot-ceapex-package-r) # PAT for the loc AzDO instance https://dev.azure.com/ceapex GithubPat: $(BotAccount-dotnet-bot-repo-PAT) + # Service connection for WIF-based Entra authentication to ceapex feeds (replaces CeapexPat). + # When set, dnceng/internal builds acquire a federated Entra token instead of using a PAT. + # All other projects (e.g. DevDiv, public), where this dnceng-scoped service connection does not + # exist, and any pipeline that sets this to '' fall back to PAT-based auth via the CeapexPat parameter. + CeapexServiceConnection: 'dnceng-onelocbuild-ceapex' + SourcesDirectory: $(System.DefaultWorkingDirectory) CreatePr: true AutoCompletePr: false @@ -73,6 +79,16 @@ jobs: displayName: Generate LocProject.json condition: ${{ parameters.condition }} + # Acquire an Entra token for ceapex feed access via WIF (dnceng/internal only). + # All other projects use PAT-based auth, since the ceapex service connection is scoped to dnceng/internal. + - ${{ if and(ne(parameters.CeapexServiceConnection, ''), eq(variables['System.TeamProject'], 'internal')) }}: + - template: /eng/common/core-templates/steps/get-federated-access-token.yml + parameters: + is1ESPipeline: ${{ parameters.is1ESPipeline }} + federatedServiceConnection: ${{ parameters.CeapexServiceConnection }} + outputVariableName: 'CeapexEntraToken' + condition: ${{ parameters.condition }} + - task: OneLocBuild@2 displayName: OneLocBuild env: @@ -89,7 +105,10 @@ jobs: ${{ if eq(parameters.RepoType, 'gitHub') }}: isShouldReusePrSelected: ${{ parameters.ReusePr }} packageSourceAuth: patAuth - patVariable: ${{ parameters.CeapexPat }} + ${{ if and(ne(parameters.CeapexServiceConnection, ''), eq(variables['System.TeamProject'], 'internal')) }}: + patVariable: $(CeapexEntraToken) + ${{ if or(eq(parameters.CeapexServiceConnection, ''), ne(variables['System.TeamProject'], 'internal')) }}: + patVariable: ${{ parameters.CeapexPat }} ${{ if eq(parameters.RepoType, 'gitHub') }}: repoType: ${{ parameters.RepoType }} gitHubPatVariable: "${{ parameters.GithubPat }}" diff --git a/eng/common/tools.ps1 b/eng/common/tools.ps1 index a06513a5940717..d89aa48781b141 100644 --- a/eng/common/tools.ps1 +++ b/eng/common/tools.ps1 @@ -727,7 +727,7 @@ function InitializeToolset() { '' | Set-Content $proj - MSBuild-Core $proj $bl /t:__WriteToolsetLocation /clp:ErrorsOnly`;NoSummary /p:__ToolsetLocationOutputFile=$toolsetLocationFile + MSBuild-Core $proj $bl /t:__WriteToolsetLocation /clp:ErrorsOnly`;NoSummary /p:__ToolsetLocationOutputFile=$toolsetLocationFile /p:RestoreIgnoreFailedSources=true $path = Get-Content $toolsetLocationFile -Encoding UTF8 -TotalCount 1 if (!(Test-Path $path)) { diff --git a/eng/common/tools.sh b/eng/common/tools.sh index 01b09b65796c17..c412703d1bae9c 100755 --- a/eng/common/tools.sh +++ b/eng/common/tools.sh @@ -410,7 +410,7 @@ function InitializeToolset { fi echo '' > "$proj" - MSBuild-Core "$proj" $bl /t:__WriteToolsetLocation /clp:ErrorsOnly\;NoSummary /p:__ToolsetLocationOutputFile="$toolset_location_file" + MSBuild-Core "$proj" $bl /t:__WriteToolsetLocation /clp:ErrorsOnly\;NoSummary /p:__ToolsetLocationOutputFile="$toolset_location_file" /p:RestoreIgnoreFailedSources=true local toolset_build_proj=`cat "$toolset_location_file"` diff --git a/global.json b/global.json index 3c436df5ae6544..703ade28ca725a 100644 --- a/global.json +++ b/global.json @@ -8,9 +8,9 @@ "dotnet": "9.0.116" }, "msbuild-sdks": { - "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26301.4", - "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26301.4", - "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26301.4", + "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26366.5", + "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26366.5", + "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26366.5", "Microsoft.Build.NoTargets": "3.7.0", "Microsoft.Build.Traversal": "3.4.0", "Microsoft.NET.Sdk.IL": "9.0.0-rtm.24511.16" From f02ded063cb2eea8dfcf38f31bf94e9d15e35203 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Tue, 21 Jul 2026 15:55:21 +0200 Subject: [PATCH 03/17] [release/9.0-staging] Update dependencies from dotnet/cecil (#131128) This pull request updates the following dependencies [marker]: <> (Begin:b609d3b5-ab6f-473c-9ce1-f266baef16fc) ## From https://github.com/dotnet/cecil - **Subscription**: [b609d3b5-ab6f-473c-9ce1-f266baef16fc](https://maestro.dot.net/subscriptions?search=b609d3b5-ab6f-473c-9ce1-f266baef16fc) - **Build**: [20260720.3](https://dev.azure.com/dnceng/internal/_build/results?buildId=3027220) ([323618](https://maestro.dot.net/channel/3883/github:dotnet:cecil/build/323618)) - **Date Produced**: July 20, 2026 7:03:45 PM UTC - **Commit**: [5f5467733ed31554098a46a4f5b8d03e1a098847](https://github.com/dotnet/cecil/commit/5f5467733ed31554098a46a4f5b8d03e1a098847) - **Branch**: [release/9.0](https://github.com/dotnet/cecil/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [0.11.5-alpha.26353.2 to 0.11.5-alpha.26370.3][1] - Microsoft.SourceBuild.Intermediate.cecil - Microsoft.DotNet.Cecil [1]: https://github.com/dotnet/cecil/compare/d98c55d136...5f5467733e [DependencyUpdate]: <> (End) [marker]: <> (End:b609d3b5-ab6f-473c-9ce1-f266baef16fc) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 8 ++++---- eng/Versions.props | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index beb4fe29a3205b..9d522066adab65 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -55,14 +55,14 @@ 803d8598f98fb4efd94604b32627ee9407f246db - + https://github.com/dotnet/cecil - d98c55d1363411ee1a0ff0c76c6e5d798e8147ec + 5f5467733ed31554098a46a4f5b8d03e1a098847 - + https://github.com/dotnet/cecil - d98c55d1363411ee1a0ff0c76c6e5d798e8147ec + 5f5467733ed31554098a46a4f5b8d03e1a098847 diff --git a/eng/Versions.props b/eng/Versions.props index ae953266c224a2..2167f05bb21ce5 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -222,7 +222,7 @@ 9.0.0-preview-20241010.1 - 0.11.5-alpha.26353.2 + 0.11.5-alpha.26370.3 9.0.0-rtm.24511.16 From b6e59109366f9ac6526c3c3c1c629d8cdd82a0cf Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Tue, 21 Jul 2026 15:55:53 +0200 Subject: [PATCH 04/17] [release/9.0-staging] Update dependencies from dotnet/icu (#131127) This pull request updates the following dependencies [marker]: <> (Begin:5e3f9b88-faad-436c-a580-ac009d20bb33) ## From https://github.com/dotnet/icu - **Subscription**: [5e3f9b88-faad-436c-a580-ac009d20bb33](https://maestro.dot.net/subscriptions?search=5e3f9b88-faad-436c-a580-ac009d20bb33) - **Build**: [20260720.1](https://dev.azure.com/dnceng/internal/_build/results?buildId=3027222) ([323626](https://maestro.dot.net/channel/3883/github:dotnet:icu/build/323626)) - **Date Produced**: July 20, 2026 7:22:31 PM UTC - **Commit**: [2cd4b2930f3e101aeda11d3c4fd0a9a3fc154c9f](https://github.com/dotnet/icu/commit/2cd4b2930f3e101aeda11d3c4fd0a9a3fc154c9f) - **Branch**: [dotnet/release/9.0](https://github.com/dotnet/icu/tree/dotnet/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-rtm.26358.1 to 9.0.0-rtm.26370.1][1] - Microsoft.NETCore.Runtime.ICU.Transport [1]: https://github.com/dotnet/icu/compare/be3dd61370...2cd4b2930f [DependencyUpdate]: <> (End) [marker]: <> (End:5e3f9b88-faad-436c-a580-ac009d20bb33) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 4 ++-- eng/Versions.props | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 9d522066adab65..5fadfa0108ab3e 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -1,9 +1,9 @@ - + https://github.com/dotnet/icu - be3dd61370b56cf0e0fadfb486cc3eafb82f910c + 2cd4b2930f3e101aeda11d3c4fd0a9a3fc154c9f https://github.com/dotnet/msquic diff --git a/eng/Versions.props b/eng/Versions.props index 2167f05bb21ce5..3068cc18aa5a27 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -226,7 +226,7 @@ 9.0.0-rtm.24511.16 - 9.0.0-rtm.26358.1 + 9.0.0-rtm.26370.1 2.5.9 From 9282d5da970effd9a07afb9d59a9bbbb17566458 Mon Sep 17 00:00:00 2001 From: Radek Zikmund <32671551+rzikm@users.noreply.github.com> Date: Wed, 22 Jul 2026 09:26:21 +0200 Subject: [PATCH 05/17] [release/9.0-staging] Fix flaky MalformedPacketsDuringHandshake test (#131149) Fixes Issue https://github.com/dotnet/runtime/issues/130887 main PR https://github.com/dotnet/runtime/pull/130756 # Description Test-only change. The test `MalformedPacketsDuringHandshake_ThrowsAuthenticationException` was added to `release/9.0-staging` as part of an internal fix. It intermittently fails during the initial handshake with `System.Security.Authentication.AuthenticationException : The remote certificate is invalid because of errors in the certificate chain: PartialChain`. This backports the test fix already merged to `main` in #130756: - Force `SslProtocols.Tls12` on both endpoints so the test exercises TLS renegotiation rather than TLS 1.3 post-handshake authentication, and rename the test to `MalformedPacketsDuringRenegotiation_ThrowsAuthenticationException` to match. - Set `CertificateRevocationCheckMode = X509RevocationMode.NoCheck` on both endpoints to avoid the certificate chain-building / revocation lookups that cause the `PartialChain` failure in the offline CI environment. # Customer Impact None. This is a test-only change that fixes a flaky/unreliable test in the CI. # Regression No. This fixes flakiness in a newly added test; it is not a regression in shipping product behavior. # Testing The identical change was merged and validated in CI on `main` (#130756). Relying on this PR's CI to confirm the test passes reliably in the renegotiation (TLS 1.2) configuration. # Risk Low. Test-only change (`SslStreamStreamToStreamTest.cs`), no product code affected. It mirrors a fix already merged and CI-validated on `main`. # Package authoring signed off? N/A - test-only change, no shipping package is affected. > [!NOTE] > This content was generated with the assistance of GitHub Copilot. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --- .../FunctionalTests/SslStreamStreamToStreamTest.cs | 11 ++++++++--- 1 file changed, 8 insertions(+), 3 deletions(-) diff --git a/src/libraries/System.Net.Security/tests/FunctionalTests/SslStreamStreamToStreamTest.cs b/src/libraries/System.Net.Security/tests/FunctionalTests/SslStreamStreamToStreamTest.cs index ca0a526a19d57f..74ca86549a92f7 100644 --- a/src/libraries/System.Net.Security/tests/FunctionalTests/SslStreamStreamToStreamTest.cs +++ b/src/libraries/System.Net.Security/tests/FunctionalTests/SslStreamStreamToStreamTest.cs @@ -735,7 +735,7 @@ public async Task AuthenticateAsServerAsync_Sockets_CanceledAfterStart_ThrowsOpe } [ConditionalFact(typeof(TestConfiguration), nameof(TestConfiguration.SupportsRenegotiation))] - public async Task MalformedPacketsDuringHandshake_ThrowsAuthenticationException() + public async Task MalformedPacketsDuringRenegotiation_ThrowsAuthenticationException() { (Stream client, Stream server) = TestHelper.GetConnectedStreams(); @@ -749,11 +749,16 @@ public async Task MalformedPacketsDuringHandshake_ThrowsAuthenticationException( Task t1 = clientSslStream.AuthenticateAsClientAsync(new SslClientAuthenticationOptions() { TargetHost = serverCert.GetNameInfo(X509NameType.SimpleName, false), - ClientCertificates = new X509CertificateCollection() { clientCert } + ClientCertificates = new X509CertificateCollection() { clientCert }, + // Force TLS 1.2 so the test exercises renegotiation rather than TLS 1.3 post-handshake auth. + EnabledSslProtocols = SslProtocols.Tls12, + CertificateRevocationCheckMode = X509RevocationMode.NoCheck }, CancellationToken.None); Task t2 = serverSslStream.AuthenticateAsServerAsync(new SslServerAuthenticationOptions() { - ServerCertificate = serverCert + ServerCertificate = serverCert, + EnabledSslProtocols = SslProtocols.Tls12, + CertificateRevocationCheckMode = X509RevocationMode.NoCheck }, CancellationToken.None); await TestConfiguration.WhenAllOrAnyFailedWithTimeout(t1, t2); From 5c5c0f999cf86043e8eaaea6268c6ac0f9de3113 Mon Sep 17 00:00:00 2001 From: Stefan-Alin Pahontu <56953855+alinpahontu2912@users.noreply.github.com> Date: Wed, 22 Jul 2026 11:15:43 +0200 Subject: [PATCH 06/17] Fix exception check .NET 9 (#131079) Fixes #131053 ## Customer Impact Flaky tar tests. Found internally - Windows symlinks are always created as files, not directories. Depending on the build, it can throw either during creation of a symlink that represents directory structure or when parsing it. This change fixes the flaky test. ## Regression Caused by earlier change in the area. ## Testing Reenabled failing CI tests. ## Risk Low. --- .../TarFile.ExtractToDirectory.File.Tests.cs | 13 +++++++++++-- 1 file changed, 11 insertions(+), 2 deletions(-) diff --git a/src/libraries/System.Formats.Tar/tests/TarFile/TarFile.ExtractToDirectory.File.Tests.cs b/src/libraries/System.Formats.Tar/tests/TarFile/TarFile.ExtractToDirectory.File.Tests.cs index d6483b8444b1c6..0ac04584ce96a3 100644 --- a/src/libraries/System.Formats.Tar/tests/TarFile/TarFile.ExtractToDirectory.File.Tests.cs +++ b/src/libraries/System.Formats.Tar/tests/TarFile/TarFile.ExtractToDirectory.File.Tests.cs @@ -445,8 +445,17 @@ public void ExtractToDirectory_RejectsChainedSymlinkDirectoryTraversal_WithNeste if (OperatingSystem.IsWindows()) { - // Windows only creates file symlinks and trying to process a directory symlink will throw UnauthorizedAccessException instead of IOException - Assert.Throws(() => TarFile.ExtractToDirectory(tarPath, destDir, overwriteFiles: true)); + // Windows always creates file symlinks (FileInfo.CreateAsSymbolicLink), so entry "a/b" becomes a + // *file* symlink whose target (".") is a *directory*. Processing the nested entries forces the + // extractor to resolve/descend through that type-mismatched reparse point, which Windows rejects, + // but the surfaced exception depends on the OS build: + // - Some builds throw UnauthorizedAccessException while resolving the link (FileInfo.ResolveLinkTarget + // during the traversal-safety walk in FilePathEscapesDirectory). + // - Others resolve the link successfully, then fail creating a directory where the file symlink + // already exists, throwing IOException ("a file or directory with the same name already exists"). + // Either way the archive is rejected and nothing escapes (verified below), so accept both. + Exception ex = Assert.ThrowsAny(() => TarFile.ExtractToDirectory(tarPath, destDir, overwriteFiles: true)); + Assert.True(ex is IOException or UnauthorizedAccessException, $"Unexpected exception type: {ex}"); } else { From b66f12c2e2b678a7d6b1912c5b95b2af4ce797fe Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Wed, 22 Jul 2026 15:11:16 +0200 Subject: [PATCH 07/17] [release/9.0-staging] Update dependencies from dotnet/arcade (#131179) This pull request updates the following dependencies [marker]: <> (Begin:943c2154-7e47-4fed-bb40-3e772747daf7) ## From https://github.com/dotnet/arcade - **Subscription**: [943c2154-7e47-4fed-bb40-3e772747daf7](https://maestro.dot.net/subscriptions?search=943c2154-7e47-4fed-bb40-3e772747daf7) - **Build**: [20260721.3](https://dev.azure.com/dnceng/internal/_build/results?buildId=3027753) ([323718](https://maestro.dot.net/channel/5175/github:dotnet:arcade/build/323718)) - **Date Produced**: July 21, 2026 9:29:02 AM UTC - **Commit**: [cbbdb81eb86e96536be289b03d96b605c47932e1](https://github.com/dotnet/arcade/commit/cbbdb81eb86e96536be289b03d96b605c47932e1) - **Branch**: [release/9.0](https://github.com/dotnet/arcade/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-beta.26366.5 to 9.0.0-beta.26371.3][1] - Microsoft.SourceBuild.Intermediate.arcade - Microsoft.DotNet.Arcade.Sdk - Microsoft.DotNet.Build.Tasks.Archives - Microsoft.DotNet.Build.Tasks.Feed - Microsoft.DotNet.Build.Tasks.Installers - Microsoft.DotNet.Build.Tasks.Packaging - Microsoft.DotNet.Build.Tasks.TargetFramework - Microsoft.DotNet.Build.Tasks.Templating - Microsoft.DotNet.Build.Tasks.Workloads - Microsoft.DotNet.CodeAnalysis - Microsoft.DotNet.GenAPI - Microsoft.DotNet.GenFacades - Microsoft.DotNet.Helix.Sdk - Microsoft.DotNet.PackageTesting - Microsoft.DotNet.RemoteExecutor - Microsoft.DotNet.SharedFramework.Sdk - Microsoft.DotNet.VersionTools.Tasks - Microsoft.DotNet.XliffTasks - Microsoft.DotNet.XUnitExtensions - From [2.9.0-beta.26366.5 to 2.9.0-beta.26371.3][1] - Microsoft.DotNet.XUnitAssert - Microsoft.DotNet.XUnitConsoleRunner [1]: https://github.com/dotnet/arcade/compare/b1448f6afd...cbbdb81eb8 [DependencyUpdate]: <> (End) [marker]: <> (End:943c2154-7e47-4fed-bb40-3e772747daf7) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 84 ++++++++++++++++++++--------------------- eng/Versions.props | 32 ++++++++-------- global.json | 6 +-- 3 files changed, 61 insertions(+), 61 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 5fadfa0108ab3e..779d7e218ad346 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -93,87 +93,87 @@ - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 https://github.com/dotnet/runtime-assets @@ -333,9 +333,9 @@ https://github.com/dotnet/xharness 4da0015e9dd1ed7d3992db7d1eb6878a5ee11ab2 - + https://github.com/dotnet/arcade - b1448f6afdd8d543e6452c293ce99c68c745b200 + cbbdb81eb86e96536be289b03d96b605c47932e1 https://dev.azure.com/dnceng/internal/_git/dotnet-optimization diff --git a/eng/Versions.props b/eng/Versions.props index 3068cc18aa5a27..c16066c525e355 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -84,22 +84,22 @@ 9.0.109 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 2.9.0-beta.26366.5 - 9.0.0-beta.26366.5 - 2.9.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 - 9.0.0-beta.26366.5 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 2.9.0-beta.26371.3 + 9.0.0-beta.26371.3 + 2.9.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 + 9.0.0-beta.26371.3 1.4.0 diff --git a/global.json b/global.json index 703ade28ca725a..b70677fe334c52 100644 --- a/global.json +++ b/global.json @@ -8,9 +8,9 @@ "dotnet": "9.0.116" }, "msbuild-sdks": { - "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26366.5", - "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26366.5", - "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26366.5", + "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26371.3", + "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26371.3", + "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26371.3", "Microsoft.Build.NoTargets": "3.7.0", "Microsoft.Build.Traversal": "3.4.0", "Microsoft.NET.Sdk.IL": "9.0.0-rtm.24511.16" From 87f27a1de7a0a2faf4e00bb0dd5be7b08d58142a Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Wed, 22 Jul 2026 15:15:38 +0200 Subject: [PATCH 08/17] [release/9.0-staging] Update dependencies from dotnet/icu (#131180) This pull request updates the following dependencies [marker]: <> (Begin:5e3f9b88-faad-436c-a580-ac009d20bb33) ## From https://github.com/dotnet/icu - **Subscription**: [5e3f9b88-faad-436c-a580-ac009d20bb33](https://maestro.dot.net/subscriptions?search=5e3f9b88-faad-436c-a580-ac009d20bb33) - **Build**: [20260721.1](https://dev.azure.com/dnceng/internal/_build/results?buildId=3027757) ([323721](https://maestro.dot.net/channel/3883/github:dotnet:icu/build/323721)) - **Date Produced**: July 21, 2026 9:43:09 AM UTC - **Commit**: [a4dc69b0ee1b95a5a937595d89b3d0cd3d092179](https://github.com/dotnet/icu/commit/a4dc69b0ee1b95a5a937595d89b3d0cd3d092179) - **Branch**: [dotnet/release/9.0](https://github.com/dotnet/icu/tree/dotnet/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-rtm.26370.1 to 9.0.0-rtm.26371.1][1] - Microsoft.NETCore.Runtime.ICU.Transport [1]: https://github.com/dotnet/icu/compare/2cd4b2930f...a4dc69b0ee [DependencyUpdate]: <> (End) [marker]: <> (End:5e3f9b88-faad-436c-a580-ac009d20bb33) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 4 ++-- eng/Versions.props | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 779d7e218ad346..d28715bf9b8db8 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -1,9 +1,9 @@ - + https://github.com/dotnet/icu - 2cd4b2930f3e101aeda11d3c4fd0a9a3fc154c9f + a4dc69b0ee1b95a5a937595d89b3d0cd3d092179 https://github.com/dotnet/msquic diff --git a/eng/Versions.props b/eng/Versions.props index c16066c525e355..146491b98bd6f4 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -226,7 +226,7 @@ 9.0.0-rtm.24511.16 - 9.0.0-rtm.26370.1 + 9.0.0-rtm.26371.1 2.5.9 From 183003a60330191c28c3b013b6fbabe803da5320 Mon Sep 17 00:00:00 2001 From: "github-actions[bot]" <41898282+github-actions[bot]@users.noreply.github.com> Date: Tue, 28 Jul 2026 16:02:06 +0200 Subject: [PATCH 09/17] [release/9.0-staging] Reduce EncryptedXml encoded DTD test workload (#131211) Backport of #131091 to release/9.0-staging /cc @mrek-msft @eiriktsarpalis ## Customer Impact - [ ] Customer reported - [x] Found internally [Select one or both of the boxes. Describe how this issue impacts customers, citing the expected and actual behaviors and scope of the issue. If customer-reported, provide the issue number.] ## Regression - [x] Yes - [ ] No Test introduced by internal fix fails. [If yes, specify when the regression was introduced. Provide the PR or commit if known.] ## Testing [How was the fix verified? How was the issue missed previously? What tests were added?] ## Risk Low. Test only change. [High/Medium/Low. Justify the indication by mentioning how risks were measured and addressed.] **IMPORTANT**: If this backport is for a servicing release, please verify that: - For .NET 8 and .NET 9: The PR target branch is `release/X.0-staging`, not `release/X.0`. - For .NET 10+: The PR target branch is `release/X.0` (no `-staging` suffix). ## Package authoring no longer needed in .NET 9 **IMPORTANT**: Starting with .NET 9, you no longer need to edit a NuGet package's csproj to enable building and bump the version. Keep in mind that we still need package authoring in .NET 8 and older versions. Co-authored-by: Eirik Tsarpalis Copilot-Session: 21e761a9-3212-499c-b2b6-28d666f5bebd --- .../tests/EncryptedXmlSample5.xml | 90 ------------------- .../tests/EncryptedXmlTests.cs | 7 +- 2 files changed, 4 insertions(+), 93 deletions(-) diff --git a/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlSample5.xml b/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlSample5.xml index 7f176e58daf0b1..cdbbf4001a8bf0 100644 --- a/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlSample5.xml +++ b/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlSample5.xml @@ -25,96 +25,6 @@ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - diff --git a/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlTests.cs b/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlTests.cs index 2bb5d2557590cf..458a8cf6d5b26a 100644 --- a/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlTests.cs +++ b/src/libraries/System.Security.Cryptography.Xml/tests/EncryptedXmlTests.cs @@ -15,6 +15,7 @@ namespace System.Security.Cryptography.Xml.Tests public static class EncryptedXmlTests { private const string AllowDangerousEncryptedXmlTransformsAppContextSwitch = "System.Security.Cryptography.Xml.AllowDangerousEncryptedXmlTransforms"; + private const int DefaultMaxTransformsPerChain = 20; private const string MaxTransformsPerChainAppContextSwitch = "System.Security.Cryptography.Xml.MaxTransformsPerChain"; private const string MalformedTransformsMessage = "Malformed element Transforms."; @@ -281,9 +282,9 @@ public static void EncryptedXml_LoadDeepFile() [Fact] public static void EncryptedXml_DecryptedEncodedDtd() { - // The payload contains more transforms than the default limit, so - // deserialization of the transform chain should fail. - Assert.True(GetEncodedDtdPayloadTransformCount() > 20); + // Keep the payload just above the default limit so deserialization fails + // without executing an unnecessarily expensive transform chain. + Assert.Equal(DefaultMaxTransformsPerChain + 1, GetEncodedDtdPayloadTransformCount()); EncryptedXml encryptedXml = CreateEncryptedXmlWithEncodedDtdPayload(); CryptographicException ex = Assert.Throws(() => encryptedXml.DecryptDocument()); From e80412876159dbe8fa5d51a8e78126c7dd90d8db Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Fri, 31 Jul 2026 13:48:06 +0200 Subject: [PATCH 10/17] [release/9.0-staging] Update dependencies from dotnet/xharness (#130598) This pull request updates the following dependencies [marker]: <> (Begin:077f423f-1332-4108-a2ea-08dcc66548e6) ## From https://github.com/dotnet/xharness - **Subscription**: [077f423f-1332-4108-a2ea-08dcc66548e6](https://maestro.dot.net/subscriptions?search=077f423f-1332-4108-a2ea-08dcc66548e6) - **Build**: [20260720.1](https://dev.azure.com/dnceng/internal/_build/results?buildId=3027200) ([323616](https://maestro.dot.net/channel/2/github:dotnet:xharness/build/323616)) - **Date Produced**: July 20, 2026 7:00:46 PM UTC - **Commit**: [65e5795252474ebd04e4e872bd4152e86c558209](https://github.com/dotnet/xharness/commit/65e5795252474ebd04e4e872bd4152e86c558209) - **Branch**: [main](https://github.com/dotnet/xharness/tree/main) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [11.0.0-prerelease.26353.1 to 11.0.0-prerelease.26370.1][3] - Microsoft.DotNet.XHarness.CLI - Microsoft.DotNet.XHarness.TestRunners.Common - Microsoft.DotNet.XHarness.TestRunners.Xunit [3]: https://github.com/dotnet/xharness/compare/4da0015e9d...65e5795252 [DependencyUpdate]: <> (End) [marker]: <> (End:077f423f-1332-4108-a2ea-08dcc66548e6) --------- Co-authored-by: dotnet-maestro[bot] Co-authored-by: MichalZ <188900745+mrek-msft@users.noreply.github.com> --- .config/dotnet-tools.json | 2 +- eng/Version.Details.xml | 12 ++++++------ eng/Versions.props | 6 +++--- 3 files changed, 10 insertions(+), 10 deletions(-) diff --git a/.config/dotnet-tools.json b/.config/dotnet-tools.json index 127ab32bbeca5e..78093ce137e080 100644 --- a/.config/dotnet-tools.json +++ b/.config/dotnet-tools.json @@ -15,7 +15,7 @@ ] }, "microsoft.dotnet.xharness.cli": { - "version": "11.0.0-prerelease.26353.1", + "version": "11.0.0-prerelease.26370.1", "commands": [ "xharness" ] diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index d28715bf9b8db8..6915017229b52c 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -321,17 +321,17 @@ https://github.com/dotnet/runtime b030c4dfdfa1bf287f10f96006619a06bc2000ae - + https://github.com/dotnet/xharness - 4da0015e9dd1ed7d3992db7d1eb6878a5ee11ab2 + 65e5795252474ebd04e4e872bd4152e86c558209 - + https://github.com/dotnet/xharness - 4da0015e9dd1ed7d3992db7d1eb6878a5ee11ab2 + 65e5795252474ebd04e4e872bd4152e86c558209 - + https://github.com/dotnet/xharness - 4da0015e9dd1ed7d3992db7d1eb6878a5ee11ab2 + 65e5795252474ebd04e4e872bd4152e86c558209 https://github.com/dotnet/arcade diff --git a/eng/Versions.props b/eng/Versions.props index 146491b98bd6f4..b3ccaa2439da24 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -190,9 +190,9 @@ 1.4.0 17.4.0-preview-20220707-01 - 11.0.0-prerelease.26353.1 - 11.0.0-prerelease.26353.1 - 11.0.0-prerelease.26353.1 + 11.0.0-prerelease.26370.1 + 11.0.0-prerelease.26370.1 + 11.0.0-prerelease.26370.1 9.0.0-alpha.0.26202.3 3.12.0 From 6ef6d95dd6a4437d61d76092968404463057c920 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Fri, 31 Jul 2026 13:53:48 +0200 Subject: [PATCH 11/17] [release/9.0-staging] Update dependencies from dotnet/arcade (#131247) This pull request updates the following dependencies [marker]: <> (Begin:943c2154-7e47-4fed-bb40-3e772747daf7) ## From https://github.com/dotnet/arcade - **Subscription**: [943c2154-7e47-4fed-bb40-3e772747daf7](https://maestro.dot.net/subscriptions?search=943c2154-7e47-4fed-bb40-3e772747daf7) - **Build**: [20260729.3](https://dev.azure.com/dnceng/internal/_build/results?buildId=3034099) ([324857](https://maestro.dot.net/channel/5175/github:dotnet:arcade/build/324857)) - **Date Produced**: July 29, 2026 8:56:32 AM UTC - **Commit**: [2e2298e9cdec79ef907be5246d725c97661a946a](https://github.com/dotnet/arcade/commit/2e2298e9cdec79ef907be5246d725c97661a946a) - **Branch**: [release/9.0](https://github.com/dotnet/arcade/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-beta.26371.3 to 9.0.0-beta.26379.3][3] - Microsoft.SourceBuild.Intermediate.arcade - Microsoft.DotNet.Arcade.Sdk - Microsoft.DotNet.Build.Tasks.Archives - Microsoft.DotNet.Build.Tasks.Feed - Microsoft.DotNet.Build.Tasks.Installers - Microsoft.DotNet.Build.Tasks.Packaging - Microsoft.DotNet.Build.Tasks.TargetFramework - Microsoft.DotNet.Build.Tasks.Templating - Microsoft.DotNet.Build.Tasks.Workloads - Microsoft.DotNet.CodeAnalysis - Microsoft.DotNet.GenAPI - Microsoft.DotNet.GenFacades - Microsoft.DotNet.Helix.Sdk - Microsoft.DotNet.PackageTesting - Microsoft.DotNet.RemoteExecutor - Microsoft.DotNet.SharedFramework.Sdk - Microsoft.DotNet.VersionTools.Tasks - Microsoft.DotNet.XliffTasks - Microsoft.DotNet.XUnitExtensions - From [2.9.0-beta.26371.3 to 2.9.0-beta.26379.3][3] - Microsoft.DotNet.XUnitAssert - Microsoft.DotNet.XUnitConsoleRunner [3]: https://github.com/dotnet/arcade/compare/cbbdb81eb8...2e2298e9cd [DependencyUpdate]: <> (End) [marker]: <> (End:943c2154-7e47-4fed-bb40-3e772747daf7) --------- Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 84 +++++++++---------- eng/Versions.props | 32 +++---- .../core-templates/steps/publish-logs.yml | 1 - global.json | 6 +- 4 files changed, 61 insertions(+), 62 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 6915017229b52c..3d7a29e05dbe92 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -93,87 +93,87 @@ - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a https://github.com/dotnet/runtime-assets @@ -333,9 +333,9 @@ https://github.com/dotnet/xharness 65e5795252474ebd04e4e872bd4152e86c558209 - + https://github.com/dotnet/arcade - cbbdb81eb86e96536be289b03d96b605c47932e1 + 2e2298e9cdec79ef907be5246d725c97661a946a https://dev.azure.com/dnceng/internal/_git/dotnet-optimization diff --git a/eng/Versions.props b/eng/Versions.props index b3ccaa2439da24..7f0067a86d920c 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -84,22 +84,22 @@ 9.0.109 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 2.9.0-beta.26371.3 - 9.0.0-beta.26371.3 - 2.9.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 - 9.0.0-beta.26371.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 2.9.0-beta.26379.3 + 9.0.0-beta.26379.3 + 2.9.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 + 9.0.0-beta.26379.3 1.4.0 diff --git a/eng/common/core-templates/steps/publish-logs.yml b/eng/common/core-templates/steps/publish-logs.yml index 0623ac6e112309..917827999cc946 100644 --- a/eng/common/core-templates/steps/publish-logs.yml +++ b/eng/common/core-templates/steps/publish-logs.yml @@ -30,7 +30,6 @@ steps: -TokensFilePath '$(System.DefaultWorkingDirectory)/eng/BinlogSecretsRedactionFile.txt' '$(publishing-dnceng-devdiv-code-r-build-re)' '$(MaestroAccessToken)' - '$(dn-bot-all-orgs-artifact-feeds-rw)' '$(akams-client-id)' '$(microsoft-symbol-server-pat)' '$(symweb-symbol-server-pat)' diff --git a/global.json b/global.json index b70677fe334c52..17a63a304e0a29 100644 --- a/global.json +++ b/global.json @@ -8,9 +8,9 @@ "dotnet": "9.0.116" }, "msbuild-sdks": { - "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26371.3", - "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26371.3", - "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26371.3", + "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26379.3", + "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26379.3", + "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26379.3", "Microsoft.Build.NoTargets": "3.7.0", "Microsoft.Build.Traversal": "3.4.0", "Microsoft.NET.Sdk.IL": "9.0.0-rtm.24511.16" From 1f500895cf1a077372bed57f30fd2b1864afb000 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Fri, 31 Jul 2026 14:07:13 +0200 Subject: [PATCH 12/17] [release/9.0-staging] Update dependencies from dotnet/icu (#131567) This pull request updates the following dependencies [marker]: <> (Begin:5e3f9b88-faad-436c-a580-ac009d20bb33) ## From https://github.com/dotnet/icu - **Subscription**: [5e3f9b88-faad-436c-a580-ac009d20bb33](https://maestro.dot.net/subscriptions?search=5e3f9b88-faad-436c-a580-ac009d20bb33) - **Build**: [20260729.1](https://dev.azure.com/dnceng/internal/_build/results?buildId=3034206) ([324889](https://maestro.dot.net/channel/3883/github:dotnet:icu/build/324889)) - **Date Produced**: July 29, 2026 12:15:25 PM UTC - **Commit**: [cd95f8c1e617c75e12d8c9d1996dd0aaca9c9533](https://github.com/dotnet/icu/commit/cd95f8c1e617c75e12d8c9d1996dd0aaca9c9533) - **Branch**: [dotnet/release/9.0](https://github.com/dotnet/icu/tree/dotnet/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-rtm.26371.1 to 9.0.0-rtm.26379.1][1] - Microsoft.NETCore.Runtime.ICU.Transport [1]: https://github.com/dotnet/icu/compare/a4dc69b0ee...cd95f8c1e6 [DependencyUpdate]: <> (End) [marker]: <> (End:5e3f9b88-faad-436c-a580-ac009d20bb33) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 4 ++-- eng/Versions.props | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 3d7a29e05dbe92..d0f696180a6c9b 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -1,9 +1,9 @@ - + https://github.com/dotnet/icu - a4dc69b0ee1b95a5a937595d89b3d0cd3d092179 + cd95f8c1e617c75e12d8c9d1996dd0aaca9c9533 https://github.com/dotnet/msquic diff --git a/eng/Versions.props b/eng/Versions.props index 7f0067a86d920c..df893521e63317 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -226,7 +226,7 @@ 9.0.0-rtm.24511.16 - 9.0.0-rtm.26371.1 + 9.0.0-rtm.26379.1 2.5.9 From 74bd918746e8da93d75936bb006bc248f7de7704 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Fri, 31 Jul 2026 14:09:05 +0200 Subject: [PATCH 13/17] [release/9.0-staging] Update dependencies from dotnet/cecil (#131568) This pull request updates the following dependencies [marker]: <> (Begin:b609d3b5-ab6f-473c-9ce1-f266baef16fc) ## From https://github.com/dotnet/cecil - **Subscription**: [b609d3b5-ab6f-473c-9ce1-f266baef16fc](https://maestro.dot.net/subscriptions?search=b609d3b5-ab6f-473c-9ce1-f266baef16fc) - **Build**: [20260729.2](https://dev.azure.com/dnceng/internal/_build/results?buildId=3034204) ([324885](https://maestro.dot.net/channel/3883/github:dotnet:cecil/build/324885)) - **Date Produced**: July 29, 2026 11:36:02 AM UTC - **Commit**: [ba9a32d74b72e8e1e8853d2073e95382d28c6db9](https://github.com/dotnet/cecil/commit/ba9a32d74b72e8e1e8853d2073e95382d28c6db9) - **Branch**: [release/9.0](https://github.com/dotnet/cecil/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [0.11.5-alpha.26370.3 to 0.11.5-alpha.26379.2][1] - Microsoft.SourceBuild.Intermediate.cecil - Microsoft.DotNet.Cecil [1]: https://github.com/dotnet/cecil/compare/5f5467733e...ba9a32d74b [DependencyUpdate]: <> (End) [marker]: <> (End:b609d3b5-ab6f-473c-9ce1-f266baef16fc) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 8 ++++---- eng/Versions.props | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index d0f696180a6c9b..39019c75f6410e 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -55,14 +55,14 @@ 803d8598f98fb4efd94604b32627ee9407f246db - + https://github.com/dotnet/cecil - 5f5467733ed31554098a46a4f5b8d03e1a098847 + ba9a32d74b72e8e1e8853d2073e95382d28c6db9 - + https://github.com/dotnet/cecil - 5f5467733ed31554098a46a4f5b8d03e1a098847 + ba9a32d74b72e8e1e8853d2073e95382d28c6db9 diff --git a/eng/Versions.props b/eng/Versions.props index df893521e63317..9fd615dc62e7e8 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -222,7 +222,7 @@ 9.0.0-preview-20241010.1 - 0.11.5-alpha.26370.3 + 0.11.5-alpha.26379.2 9.0.0-rtm.24511.16 From 65598bbc311461ed56cd58b05a2c07743974af03 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 10:46:33 +0200 Subject: [PATCH 14/17] [release/9.0-staging] Update dependencies from dotnet/runtime-assets (#131849) This pull request updates the following dependencies [marker]: <> (Begin:e06e39ae-771e-498d-7895-08dcbc301dc2) ## From https://github.com/dotnet/runtime-assets - **Subscription**: [e06e39ae-771e-498d-7895-08dcbc301dc2](https://maestro.dot.net/subscriptions?search=e06e39ae-771e-498d-7895-08dcbc301dc2) - **Build**: [20260804.4](https://dev.azure.com/dnceng/internal/_build/results?buildId=3038664) ([325535](https://maestro.dot.net/channel/3883/github:dotnet:runtime-assets/build/325535)) - **Date Produced**: August 4, 2026 9:59:58 AM UTC - **Commit**: [12466630283f5e0fe1869b52184aece70d3967a4](https://github.com/dotnet/runtime-assets/commit/12466630283f5e0fe1869b52184aece70d3967a4) - **Branch**: [release/9.0](https://github.com/dotnet/runtime-assets/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-beta.26330.2 to 9.0.0-beta.26404.4][1] - Microsoft.DotNet.CilStrip.Sources - System.ComponentModel.TypeConverter.TestData - System.Data.Common.TestData - System.Drawing.Common.TestData - System.Formats.Tar.TestData - System.IO.Compression.TestData - System.IO.Packaging.TestData - System.Net.TestData - System.Private.Runtime.UnicodeData - System.Runtime.Numerics.TestData - System.Runtime.TimeZoneData - System.Security.Cryptography.X509Certificates.TestData - System.Text.RegularExpressions.TestData - System.Windows.Extensions.TestData [1]: https://github.com/dotnet/runtime-assets/compare/0255c08156...1246663028 [DependencyUpdate]: <> (End) [marker]: <> (End:e06e39ae-771e-498d-7895-08dcbc301dc2) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 56 ++++++++++++++++++++--------------------- eng/Versions.props | 28 ++++++++++----------- 2 files changed, 42 insertions(+), 42 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 39019c75f6410e..ad2f28ed05069f 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -175,57 +175,57 @@ https://github.com/dotnet/arcade 2e2298e9cdec79ef907be5246d725c97661a946a - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 https://github.com/dotnet/llvm-project @@ -357,9 +357,9 @@ https://github.com/dotnet/hotreload-utils 89bc3f1e2272db405757426e0870e8243b2efdd1 - + https://github.com/dotnet/runtime-assets - 0255c0815603742a138342c524929c078ecf5cf4 + 12466630283f5e0fe1869b52184aece70d3967a4 https://github.com/dotnet/roslyn diff --git a/eng/Versions.props b/eng/Versions.props index 9fd615dc62e7e8..f4ebf5739b7fa9 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -146,20 +146,20 @@ 8.0.0 4.5.4 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 - 9.0.0-beta.26330.2 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 + 9.0.0-beta.26404.4 1.0.0-prerelease.24462.2 1.0.0-prerelease.24462.2 From 2a09bcb75dac65605e750e8d9d0348b15f944035 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 10:51:00 +0200 Subject: [PATCH 15/17] [release/9.0-staging] Update dependencies from dotnet/arcade (#131850) This pull request updates the following dependencies [marker]: <> (Begin:943c2154-7e47-4fed-bb40-3e772747daf7) ## From https://github.com/dotnet/arcade - **Subscription**: [943c2154-7e47-4fed-bb40-3e772747daf7](https://maestro.dot.net/subscriptions?search=943c2154-7e47-4fed-bb40-3e772747daf7) - **Build**: [20260806.11](https://dev.azure.com/dnceng/internal/_build/results?buildId=3041300) ([326116](https://maestro.dot.net/channel/5175/github:dotnet:arcade/build/326116)) - **Date Produced**: August 6, 2026 10:15:13 PM UTC - **Commit**: [f3bffca1f93573c88a7f9b79fac258dff76f6215](https://github.com/dotnet/arcade/commit/f3bffca1f93573c88a7f9b79fac258dff76f6215) - **Branch**: [release/9.0](https://github.com/dotnet/arcade/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-beta.26379.3 to 9.0.0-beta.26406.11][2] - Microsoft.SourceBuild.Intermediate.arcade - Microsoft.DotNet.Arcade.Sdk - Microsoft.DotNet.Build.Tasks.Archives - Microsoft.DotNet.Build.Tasks.Feed - Microsoft.DotNet.Build.Tasks.Installers - Microsoft.DotNet.Build.Tasks.Packaging - Microsoft.DotNet.Build.Tasks.TargetFramework - Microsoft.DotNet.Build.Tasks.Templating - Microsoft.DotNet.Build.Tasks.Workloads - Microsoft.DotNet.CodeAnalysis - Microsoft.DotNet.GenAPI - Microsoft.DotNet.GenFacades - Microsoft.DotNet.Helix.Sdk - Microsoft.DotNet.PackageTesting - Microsoft.DotNet.RemoteExecutor - Microsoft.DotNet.SharedFramework.Sdk - Microsoft.DotNet.VersionTools.Tasks - Microsoft.DotNet.XliffTasks - Microsoft.DotNet.XUnitExtensions - From [2.9.0-beta.26379.3 to 2.9.0-beta.26406.11][2] - Microsoft.DotNet.XUnitAssert - Microsoft.DotNet.XUnitConsoleRunner [2]: https://github.com/dotnet/arcade/compare/2e2298e9cd...f3bffca1f9 [DependencyUpdate]: <> (End) [marker]: <> (End:943c2154-7e47-4fed-bb40-3e772747daf7) --------- Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 84 +++++----- eng/Versions.props | 32 ++-- eng/common/Get-GitHubAppToken.ps1 | 154 ++++++++++++++++++ eng/common/core-templates/job/onelocbuild.yml | 28 +++- .../job/publish-build-assets.yml | 2 - .../core-templates/jobs/codeql-build.yml | 1 - .../post-build/common-variables.yml | 2 - .../steps/get-github-app-token.yml | 79 +++++++++ .../core-templates/steps/publish-logs.yml | 2 - .../steps/get-github-app-token.yml | 7 + .../templates/steps/get-github-app-token.yml | 7 + global.json | 6 +- 12 files changed, 335 insertions(+), 69 deletions(-) create mode 100644 eng/common/Get-GitHubAppToken.ps1 create mode 100644 eng/common/core-templates/steps/get-github-app-token.yml create mode 100644 eng/common/templates-official/steps/get-github-app-token.yml create mode 100644 eng/common/templates/steps/get-github-app-token.yml diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index ad2f28ed05069f..4a7ffd1087f6e1 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -93,87 +93,87 @@ - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 https://github.com/dotnet/runtime-assets @@ -333,9 +333,9 @@ https://github.com/dotnet/xharness 65e5795252474ebd04e4e872bd4152e86c558209 - + https://github.com/dotnet/arcade - 2e2298e9cdec79ef907be5246d725c97661a946a + f3bffca1f93573c88a7f9b79fac258dff76f6215 https://dev.azure.com/dnceng/internal/_git/dotnet-optimization diff --git a/eng/Versions.props b/eng/Versions.props index f4ebf5739b7fa9..e1e480af899ed4 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -84,22 +84,22 @@ 9.0.109 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 2.9.0-beta.26379.3 - 9.0.0-beta.26379.3 - 2.9.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 - 9.0.0-beta.26379.3 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 2.9.0-beta.26406.11 + 9.0.0-beta.26406.11 + 2.9.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 + 9.0.0-beta.26406.11 1.4.0 diff --git a/eng/common/Get-GitHubAppToken.ps1 b/eng/common/Get-GitHubAppToken.ps1 new file mode 100644 index 00000000000000..6b5899d7a29925 --- /dev/null +++ b/eng/common/Get-GitHubAppToken.ps1 @@ -0,0 +1,154 @@ +# Mints a short-lived GitHub App installation access token by signing a JWT +# with a private key stored in Azure Key Vault (RSA, RS256). The signed JWT is +# exchanged with the GitHub API for a token scoped to a single installation. +# +# Requirements: +# - A GitHub App whose private key has been uploaded into Key Vault as an RSA +# key (the PEM converted to a Key Vault *key*, NOT stored as a secret). +# - The caller (the federated Azure service connection used to run this script) +# must have the `Key Vault Crypto User` role (or at minimum the `Sign` +# action) on that key. +# - The App must be installed on the target organization/account +# (`InstallationOwner`) with the permissions/repositories it needs. +# +# Installation tokens (ghs_*) are exempt from the enterprise classic-PAT +# lifetime policy, which is why this replaces the long-lived PAT. + +[CmdletBinding()] +param( + # Name of the Key Vault that holds the GitHub App's RSA signing key. + [Parameter(Mandatory = $true)] + [string] $KeyVaultName, + + # Name of the RSA key inside the Key Vault (the App's private key). + [Parameter(Mandatory = $true)] + [string] $KeyName, + + # The GitHub App's Client ID (the value to put in the `iss` JWT claim). + [Parameter(Mandatory = $true)] + [string] $AppClientId, + + # Login of the organization or user account whose installation we should + # mint the token for (e.g. `dotnet`, `microsoft`). + [Parameter(Mandatory = $true)] + [string] $InstallationOwner, + + # Optional Azure DevOps pipeline variable name to set with the installation + # token (marked as a secret). When not specified, the token is written to + # stdout instead. + [Parameter(Mandatory = $false)] + [string] $OutputVariableName +) + +$ErrorActionPreference = 'Stop' +$PSNativeCommandUseErrorActionPreference = $true + +. $PSScriptRoot\pipeline-logging-functions.ps1 + +function ConvertTo-Base64Url([byte[]] $bytes) { + return [Convert]::ToBase64String($bytes).TrimEnd('=').Replace('+', '-').Replace('/', '_') +} + +# Build JWT header and payload. Use [ordered] hashtables so JSON +# serialization is deterministic. +$jwtHeader = [ordered]@{ + alg = 'RS256' + typ = 'JWT' +} +$now = [System.DateTimeOffset]::UtcNow +$jwtPayload = [ordered]@{ + iat = $now.AddMinutes(-1).ToUnixTimeSeconds() + exp = $now.AddMinutes(5).ToUnixTimeSeconds() + iss = $AppClientId +} + +$headerEncoded = ConvertTo-Base64Url ([System.Text.Encoding]::UTF8.GetBytes(($jwtHeader | ConvertTo-Json -Compress))) +$payloadEncoded = ConvertTo-Base64Url ([System.Text.Encoding]::UTF8.GetBytes(($jwtPayload | ConvertTo-Json -Compress))) +$signingInput = "$headerEncoded.$payloadEncoded" + +# Key Vault `sign` expects the *digest* (base64), not the raw bytes. +$sha256 = [System.Security.Cryptography.SHA256]::Create() +$digestBytes = $sha256.ComputeHash([System.Text.Encoding]::UTF8.GetBytes($signingInput)) +$digestBase64 = [Convert]::ToBase64String($digestBytes) + +Write-Host "Signing JWT with key '$KeyName' in vault '$KeyVaultName'..." +$previousNativeCommandErrorPreference = $PSNativeCommandUseErrorActionPreference +try { + # Azure CLI can emit non-fatal Python warnings to stderr even when signing succeeds. + # Use the exit code to determine success for this invocation. + $PSNativeCommandUseErrorActionPreference = $false + $signatureBase64 = az keyvault key sign ` + --vault-name $KeyVaultName ` + --name $KeyName ` + --algorithm RS256 ` + --digest $digestBase64 ` + --query signature ` + --output tsv ` + --only-show-errors + $signExitCode = $LASTEXITCODE +} +catch { + Write-PipelineTelemetryError -Category 'Build' -Message "Failed to sign the JWT via Key Vault (key '$KeyName', vault '$KeyVaultName'): $_. Verify the service connection identity has the 'Key Vault Crypto User' role (Sign action) on the key." + exit 1 +} +finally { + $PSNativeCommandUseErrorActionPreference = $previousNativeCommandErrorPreference +} +if ($signExitCode -ne 0 -or [string]::IsNullOrWhiteSpace($signatureBase64)) { + Write-PipelineTelemetryError -Category 'Build' -Message "'az keyvault key sign' exited with code $signExitCode for key '$KeyName' in vault '$KeyVaultName'. Verify the service connection identity has the 'Key Vault Crypto User' role (Sign action) on the key." + exit 1 +} +$signatureUrl = $signatureBase64.Trim().TrimEnd('=').Replace('+', '-').Replace('/', '_') +$jwt = "$signingInput.$signatureUrl" + +$headers = @{ + Authorization = "Bearer $jwt" + 'X-GitHub-Api-Version' = '2022-11-28' + Accept = 'application/vnd.github+json' + 'User-Agent' = 'dotnet-arcade-onelocbuild' +} + +Write-Host "Looking up installation for '$InstallationOwner'..." +try { + $installations = @() + $page = 1 + do { + $pageInstallations = @(Invoke-RestMethod ` + -Uri "https://api.github.com/app/installations?per_page=100&page=$page" ` + -Headers $headers ` + -Method Get) + $installations += $pageInstallations + $page++ + } while ($pageInstallations.Count -eq 100) +} +catch { + Write-PipelineTelemetryError -Category 'Build' -Message "Failed to list GitHub App installations: $_. The signed JWT may be invalid or the App's Client ID ('$AppClientId') may be incorrect." + exit 1 +} +$installation = $installations | Where-Object { $_.account.login -ieq $InstallationOwner } | Select-Object -First 1 +if (-not $installation) { + $found = ($installations | ForEach-Object { $_.account.login }) -join ', ' + Write-PipelineTelemetryError -Category 'Build' -Message "No installation found for '$InstallationOwner'. App is installed on: $found" + exit 1 +} + +try { + $tokenResponse = Invoke-RestMethod ` + -Uri "https://api.github.com/app/installations/$($installation.id)/access_tokens" ` + -Headers $headers ` + -Method Post ` + -ContentType 'application/json' +} +catch { + Write-PipelineTelemetryError -Category 'Build' -Message "Failed to mint an installation access token for '$InstallationOwner' (installation $($installation.id)): $_" + exit 1 +} + +Write-Host "Got installation token for '$InstallationOwner' (expires $($tokenResponse.expires_at))." +if ($OutputVariableName) { + Write-Host "Setting pipeline variable '$OutputVariableName'." + Write-Host "##vso[task.setvariable variable=$OutputVariableName;issecret=true]$($tokenResponse.token)" +} +else { + Write-Host $tokenResponse.token -ForegroundColor Green +} diff --git a/eng/common/core-templates/job/onelocbuild.yml b/eng/common/core-templates/job/onelocbuild.yml index 79386ab08638e8..d76ed063ffaa59 100644 --- a/eng/common/core-templates/job/onelocbuild.yml +++ b/eng/common/core-templates/job/onelocbuild.yml @@ -14,6 +14,15 @@ parameters: # exist, and any pipeline that sets this to '' fall back to PAT-based auth via the CeapexPat parameter. CeapexServiceConnection: 'dnceng-onelocbuild-ceapex' + # GitHub App authentication for the OneLoc check-in PR (dnceng/internal only). + # The infrastructure identifiers are centralized here and the App path is enabled by default. + # DevDiv requires its own project-scoped service connection before this path can be enabled there. + UseGitHubAppAuthentication: true + GitHubAppServiceConnection: 'dnceng-oneloc-githubapp' + GitHubAppClientId: 'Iv23lijBU8x3gc9lDOc9' + GitHubAppKeyVaultName: 'EngKeyVault' + GitHubAppKeyName: 'oneloc-localization-app-key' + SourcesDirectory: $(System.DefaultWorkingDirectory) CreatePr: true AutoCompletePr: false @@ -89,6 +98,20 @@ jobs: outputVariableName: 'CeapexEntraToken' condition: ${{ parameters.condition }} + # Mint a short-lived GitHub App installation token for the loc check-in PR (dnceng/internal only). + # All other projects fall back to PAT-based auth, since the app service connection is scoped to dnceng/internal. + - ${{ if and(eq(parameters.RepoType, 'gitHub'), eq(parameters.UseGitHubAppAuthentication, true), eq(variables['System.TeamProject'], 'internal')) }}: + - template: /eng/common/core-templates/steps/get-github-app-token.yml + parameters: + is1ESPipeline: ${{ parameters.is1ESPipeline }} + azureSubscription: ${{ parameters.GitHubAppServiceConnection }} + keyVaultName: ${{ parameters.GitHubAppKeyVaultName }} + keyName: ${{ parameters.GitHubAppKeyName }} + appClientId: ${{ parameters.GitHubAppClientId }} + installationOwner: ${{ parameters.GitHubOrg }} + outputVariableName: 'GitHubAppInstallationToken' + condition: ${{ parameters.condition }} + - task: OneLocBuild@2 displayName: OneLocBuild env: @@ -111,7 +134,10 @@ jobs: patVariable: ${{ parameters.CeapexPat }} ${{ if eq(parameters.RepoType, 'gitHub') }}: repoType: ${{ parameters.RepoType }} - gitHubPatVariable: "${{ parameters.GithubPat }}" + ${{ if and(eq(parameters.UseGitHubAppAuthentication, true), eq(variables['System.TeamProject'], 'internal')) }}: + gitHubPatVariable: "$(GitHubAppInstallationToken)" + ${{ if or(eq(parameters.UseGitHubAppAuthentication, false), ne(variables['System.TeamProject'], 'internal')) }}: + gitHubPatVariable: "${{ parameters.GithubPat }}" ${{ if ne(parameters.MirrorRepo, '') }}: isMirrorRepoSelected: true gitHubOrganization: ${{ parameters.GitHubOrg }} diff --git a/eng/common/core-templates/job/publish-build-assets.yml b/eng/common/core-templates/job/publish-build-assets.yml index 3cb20fb5041fed..5a0343f9738816 100644 --- a/eng/common/core-templates/job/publish-build-assets.yml +++ b/eng/common/core-templates/job/publish-build-assets.yml @@ -52,8 +52,6 @@ jobs: parameters: is1ESPipeline: ${{ parameters.is1ESPipeline }} - ${{ if and(eq(parameters.runAsPublic, 'false'), ne(variables['System.TeamProject'], 'public'), notin(variables['Build.Reason'], 'PullRequest')) }}: - - group: Publish-Build-Assets - - group: AzureDevOps-Artifact-Feeds-Pats - name: runCodesignValidationInjection value: false # unconditional - needed for logs publishing (redactor tool version) diff --git a/eng/common/core-templates/jobs/codeql-build.yml b/eng/common/core-templates/jobs/codeql-build.yml index 4571a7864df6bf..87c2c4c2096c7f 100644 --- a/eng/common/core-templates/jobs/codeql-build.yml +++ b/eng/common/core-templates/jobs/codeql-build.yml @@ -19,7 +19,6 @@ jobs: enableTelemetry: true variables: - - group: Publish-Build-Assets # The Guardian version specified in 'eng/common/sdl/packages.config'. This value must be kept in # sync with the packages.config file. - name: DefaultGuardianVersion diff --git a/eng/common/core-templates/post-build/common-variables.yml b/eng/common/core-templates/post-build/common-variables.yml index d5627a994ae58f..3413a9a573e5b4 100644 --- a/eng/common/core-templates/post-build/common-variables.yml +++ b/eng/common/core-templates/post-build/common-variables.yml @@ -1,6 +1,4 @@ variables: - - group: Publish-Build-Assets - # Whether the build is internal or not - name: IsInternalBuild value: ${{ and(ne(variables['System.TeamProject'], 'public'), contains(variables['Build.SourceBranch'], 'internal')) }} diff --git a/eng/common/core-templates/steps/get-github-app-token.yml b/eng/common/core-templates/steps/get-github-app-token.yml new file mode 100644 index 00000000000000..6d42a48d3c3671 --- /dev/null +++ b/eng/common/core-templates/steps/get-github-app-token.yml @@ -0,0 +1,79 @@ +# Mints a short-lived GitHub App installation access token by signing a JWT +# with a private key stored in Azure Key Vault (RSA, RS256). The JWT is +# exchanged with the GitHub API for a token scoped to a single installation. +# +# Requirements (per GitHub App you want to authenticate as): +# - A GitHub App with its private key uploaded into Key Vault as an RSA key +# (PEM converted to a key, NOT stored as a secret). +# - The Azure service connection passed via `azureSubscription` must be +# granted the `Key Vault Crypto User` role (or at minimum `Sign` action) +# on that key. +# - The App must be installed on the target organization/account +# (`installationOwner`) with the permissions/repositories you need. +# +# Output: a secret pipeline variable named ${{ parameters.outputVariableName }} +# containing the installation access token. Token lifetime is ~1 hour and is +# automatically scrubbed from logs. Installation tokens are exempt from the +# enterprise classic-PAT lifetime policy. + +parameters: +# Azure DevOps service connection (federated) that can call +# `az keyvault key sign` on the App's signing key. +- name: azureSubscription + type: string + +# Name of the Key Vault that holds the GitHub App's RSA signing key. +- name: keyVaultName + type: string + +# Name of the RSA key inside the Key Vault (the App's private key). +- name: keyName + type: string + +# The GitHub App's Client ID (the value to put in the `iss` JWT claim). +# Prefer this over the numeric App ID; GitHub accepts either, but Client ID +# is the documented form going forward. +- name: appClientId + type: string + +# Login of the organization or user account whose installation we should +# mint the token for (e.g. `dotnet`, `microsoft`). +- name: installationOwner + type: string + +# Name of the pipeline variable that will receive the installation token. +- name: outputVariableName + type: string + +- name: is1ESPipeline + type: boolean + +- name: stepName + type: string + default: getGitHubAppInstallationToken + +- name: condition + type: string + default: '' + +- name: displayName + type: string + default: Get GitHub App installation token + +steps: +- task: AzureCLI@2 + displayName: ${{ parameters.displayName }} + name: ${{ parameters.stepName }} + ${{ if ne(parameters.condition, '') }}: + condition: ${{ parameters.condition }} + inputs: + azureSubscription: ${{ parameters.azureSubscription }} + scriptType: pscore + scriptLocation: inlineScript + inlineScript: | + & "$(System.DefaultWorkingDirectory)/eng/common/Get-GitHubAppToken.ps1" ` + -KeyVaultName '${{ parameters.keyVaultName }}' ` + -KeyName '${{ parameters.keyName }}' ` + -AppClientId '${{ parameters.appClientId }}' ` + -InstallationOwner '${{ parameters.installationOwner }}' ` + -OutputVariableName '${{ parameters.outputVariableName }}' diff --git a/eng/common/core-templates/steps/publish-logs.yml b/eng/common/core-templates/steps/publish-logs.yml index 917827999cc946..f460b24eb95807 100644 --- a/eng/common/core-templates/steps/publish-logs.yml +++ b/eng/common/core-templates/steps/publish-logs.yml @@ -28,9 +28,7 @@ steps: arguments: -InputPath '$(System.DefaultWorkingDirectory)/PostBuildLogs' -BinlogToolVersion ${{parameters.BinlogToolVersion}} -TokensFilePath '$(System.DefaultWorkingDirectory)/eng/BinlogSecretsRedactionFile.txt' - '$(publishing-dnceng-devdiv-code-r-build-re)' '$(MaestroAccessToken)' - '$(akams-client-id)' '$(microsoft-symbol-server-pat)' '$(symweb-symbol-server-pat)' '$(dn-bot-all-orgs-build-rw-code-rw)' diff --git a/eng/common/templates-official/steps/get-github-app-token.yml b/eng/common/templates-official/steps/get-github-app-token.yml new file mode 100644 index 00000000000000..c89f3641a4dbe0 --- /dev/null +++ b/eng/common/templates-official/steps/get-github-app-token.yml @@ -0,0 +1,7 @@ +steps: +- template: /eng/common/core-templates/steps/get-github-app-token.yml + parameters: + is1ESPipeline: true + + ${{ each parameter in parameters }}: + ${{ parameter.key }}: ${{ parameter.value }} diff --git a/eng/common/templates/steps/get-github-app-token.yml b/eng/common/templates/steps/get-github-app-token.yml new file mode 100644 index 00000000000000..79e182c64167af --- /dev/null +++ b/eng/common/templates/steps/get-github-app-token.yml @@ -0,0 +1,7 @@ +steps: +- template: /eng/common/core-templates/steps/get-github-app-token.yml + parameters: + is1ESPipeline: false + + ${{ each parameter in parameters }}: + ${{ parameter.key }}: ${{ parameter.value }} diff --git a/global.json b/global.json index 17a63a304e0a29..e7cd9ab1fc9480 100644 --- a/global.json +++ b/global.json @@ -8,9 +8,9 @@ "dotnet": "9.0.116" }, "msbuild-sdks": { - "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26379.3", - "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26379.3", - "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26379.3", + "Microsoft.DotNet.Arcade.Sdk": "9.0.0-beta.26406.11", + "Microsoft.DotNet.Helix.Sdk": "9.0.0-beta.26406.11", + "Microsoft.DotNet.SharedFramework.Sdk": "9.0.0-beta.26406.11", "Microsoft.Build.NoTargets": "3.7.0", "Microsoft.Build.Traversal": "3.4.0", "Microsoft.NET.Sdk.IL": "9.0.0-rtm.24511.16" From b686d2ed5375852cb4d25305207f8cadaa776f6f Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 11:19:20 +0200 Subject: [PATCH 16/17] [release/9.0-staging] Update dependencies from dotnet/icu (#131852) This pull request updates the following dependencies [marker]: <> (Begin:5e3f9b88-faad-436c-a580-ac009d20bb33) ## From https://github.com/dotnet/icu - **Subscription**: [5e3f9b88-faad-436c-a580-ac009d20bb33](https://maestro.dot.net/subscriptions?search=5e3f9b88-faad-436c-a580-ac009d20bb33) - **Build**: [20260807.5](https://dev.azure.com/dnceng/internal/_build/results?buildId=3041889) ([326219](https://maestro.dot.net/channel/3883/github:dotnet:icu/build/326219)) - **Date Produced**: August 7, 2026 5:22:57 PM UTC - **Commit**: [9adc45770f79d8d0161ac8972a0036e36bd48ded](https://github.com/dotnet/icu/commit/9adc45770f79d8d0161ac8972a0036e36bd48ded) - **Branch**: [dotnet/release/9.0](https://github.com/dotnet/icu/tree/dotnet/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [9.0.0-rtm.26379.1 to 9.0.0-rtm.26407.5][3] - Microsoft.NETCore.Runtime.ICU.Transport [3]: https://github.com/dotnet/icu/compare/cd95f8c1e6...9adc45770f [DependencyUpdate]: <> (End) [marker]: <> (End:5e3f9b88-faad-436c-a580-ac009d20bb33) --------- Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 4 ++-- eng/Versions.props | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 4a7ffd1087f6e1..8ba9f875ef8298 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -1,9 +1,9 @@ - + https://github.com/dotnet/icu - cd95f8c1e617c75e12d8c9d1996dd0aaca9c9533 + 9adc45770f79d8d0161ac8972a0036e36bd48ded https://github.com/dotnet/msquic diff --git a/eng/Versions.props b/eng/Versions.props index e1e480af899ed4..e9d5cd4c4d28ab 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -226,7 +226,7 @@ 9.0.0-rtm.24511.16 - 9.0.0-rtm.26379.1 + 9.0.0-rtm.26407.5 2.5.9 From 00bca610f722ece5ee196de362480a4c2393a1f2 Mon Sep 17 00:00:00 2001 From: "dotnet-maestro[bot]" <42748379+dotnet-maestro[bot]@users.noreply.github.com> Date: Mon, 10 Aug 2026 11:20:35 +0200 Subject: [PATCH 17/17] [release/9.0-staging] Update dependencies from dotnet/cecil (#131853) This pull request updates the following dependencies [marker]: <> (Begin:b609d3b5-ab6f-473c-9ce1-f266baef16fc) ## From https://github.com/dotnet/cecil - **Subscription**: [b609d3b5-ab6f-473c-9ce1-f266baef16fc](https://maestro.dot.net/subscriptions?search=b609d3b5-ab6f-473c-9ce1-f266baef16fc) - **Build**: [20260804.3](https://dev.azure.com/dnceng/internal/_build/results?buildId=3038649) ([325531](https://maestro.dot.net/channel/3883/github:dotnet:cecil/build/325531)) - **Date Produced**: August 4, 2026 9:50:40 AM UTC - **Commit**: [eebca361032c2a1ded7be6244b91b757d54be02a](https://github.com/dotnet/cecil/commit/eebca361032c2a1ded7be6244b91b757d54be02a) - **Branch**: [release/9.0](https://github.com/dotnet/cecil/tree/release/9.0) [DependencyUpdate]: <> (Begin) - **Dependency Updates**: - From [0.11.5-alpha.26379.2 to 0.11.5-alpha.26404.3][1] - Microsoft.SourceBuild.Intermediate.cecil - Microsoft.DotNet.Cecil [1]: https://github.com/dotnet/cecil/compare/ba9a32d74b...eebca36103 [DependencyUpdate]: <> (End) [marker]: <> (End:b609d3b5-ab6f-473c-9ce1-f266baef16fc) Co-authored-by: dotnet-maestro[bot] --- eng/Version.Details.xml | 8 ++++---- eng/Versions.props | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/eng/Version.Details.xml b/eng/Version.Details.xml index 8ba9f875ef8298..cbdee5a34ddbba 100644 --- a/eng/Version.Details.xml +++ b/eng/Version.Details.xml @@ -55,14 +55,14 @@ 803d8598f98fb4efd94604b32627ee9407f246db - + https://github.com/dotnet/cecil - ba9a32d74b72e8e1e8853d2073e95382d28c6db9 + eebca361032c2a1ded7be6244b91b757d54be02a - + https://github.com/dotnet/cecil - ba9a32d74b72e8e1e8853d2073e95382d28c6db9 + eebca361032c2a1ded7be6244b91b757d54be02a diff --git a/eng/Versions.props b/eng/Versions.props index e9d5cd4c4d28ab..8cbf6137bba287 100644 --- a/eng/Versions.props +++ b/eng/Versions.props @@ -222,7 +222,7 @@ 9.0.0-preview-20241010.1 - 0.11.5-alpha.26379.2 + 0.11.5-alpha.26404.3 9.0.0-rtm.24511.16