Inedo Community Forums Forums
    • Recent
    • Tags
    • Popular
    • Login

    Welcome to the Inedo Forums! Check out the Forums Guide for help getting started.

    If you are experiencing any issues with the forum software, please visit the Contact Form on our website and let us know!

    Remote NuGet package cached after unlisting

    Scheduled Pinned Locked Moved Support
    2 Posts 2 Posters 5 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Y Offline
      yaakov.smith_7984
      last edited by

      Hi,

      We recently had a case where Visual Studio as well as some internal tooling was recommending that our projects update System.CompnentModel.Composition to version 2010.2.11.1, which looks to have been built in either 2013 or 2018 and has been unlisted for a long time.

      It looks like somehow ProGet cached this version and did not keep track that this package was unlisted by the public Gallery.

      Deleting the cached package from ProGet reset it and now it is recommending 9.0.10 as the highest available version again, which is correct.

      Do you have any ideas how this would have happened and what can be done to prevent it occurring again on the same or other packages in future?

      stevedennisS 1 Reply Last reply Reply Quote 0
      • stevedennisS Offline
        stevedennis inedo-engineer @yaakov.smith_7984
        last edited by

        Hi @yaakov-smith_7984 ,

        This behavior is expected and by design. "Deprecation" and "Unlisted" are server-side metadata (i.e. stored in the remote repository, not the package itself), and once a package is brought into to a different server (i.e. ProGet), it's "disconnected" from the other server.

        That being said, there is a feature in ProGet that can routinely "sync" this server-side metadata:

        • https://docs.inedo.com/docs/proget/sca/howto-deprecated-package-alerts
        • https://docs.inedo.com/docs/proget/sca/policies#oss-metadata-updating-caching

        This feature obviously comes with some performance costs, though you'd really have to enable it to see if that has any impact on operation.

        Another approach is to use a retention policy that deletes cached packages older than 90 days.

        Thanks,
        Steve

        1 Reply Last reply Reply Quote 0

        Hello! It looks like you're interested in this conversation, but you don't have an account yet.

        Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

        With your input, this post could be even better 💗

        Register Login
        • 1 / 1
        • First post
          Last post
        Inedo Website Home • Support Home • Code of Conduct • Forums Guide • Documentation