ci: fix GCS multipart upload (disable default AWS CLI checksums) (#9568)

Recent AWS CLI versions add default CRC32 integrity checksums on
uploads, which GCS's S3-compatible UploadPart rejects with
SignatureDoesNotMatch. This only affected the larger debug binaries that
go through multipart upload. Opt out via AWS_REQUEST_CHECKSUM_CALCULATION
/ AWS_RESPONSE_CHECKSUM_VALIDATION=when_required.

Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
This commit is contained in:
Andrey Vasnetsov
2026-08-04 11:16:54 +02:00
committed by generall
co-authored by Claude Opus 4.8
parent 046934fe2a
commit 4ff7610c86
+5
View File
@@ -73,6 +73,11 @@ jobs:
AWS_ACCESS_KEY_ID: ${{ secrets.GCS_ACCESS_KEY_ID }}
AWS_SECRET_ACCESS_KEY: ${{ secrets.GCS_SECRET_ACCESS_KEY }}
BRANCH: ${{ inputs.branch || github.ref_name }}
# Recent AWS CLI adds default CRC32 integrity checksums that GCS's
# S3-compatible UploadPart rejects (SignatureDoesNotMatch). Opt out so
# multipart uploads of the larger binaries work.
AWS_REQUEST_CHECKSUM_CALCULATION: when_required
AWS_RESPONSE_CHECKSUM_VALIDATION: when_required
run: |
branch="${BRANCH//\//-}" # replace all / with -
sha="$(git rev-parse HEAD)" # actual commit built from the chosen branch