Loading .gitlab-ci.yml +3 −2 Original line number Diff line number Diff line Loading @@ -45,6 +45,7 @@ container-scanning: image: docker:stable variables: DOCKER_DRIVER: overlay2 IMAGE_NAME: ${CI_REGISTRY_IMAGE}/connector-supplier allow_failure: true services: - docker:stable-dind Loading @@ -55,14 +56,14 @@ container-scanning: - docker run -p 6060:6060 --link db:postgres -d --name clair arminc/clair-local-scan:v2.0.1 - apk add -U wget ca-certificates - docker login -u gitlab-ci-token -p ${CI_JOB_TOKEN} ${CI_REGISTRY} - docker pull ${CI_REGISTRY_IMAGE}:${CI_COMMIT_SHA} - docker pull ${IMAGE_NAME}:${CI_COMMIT_SHA} - wget https://github.com/arminc/clair-scanner/releases/download/v8/clair-scanner_linux_amd64 - mv clair-scanner_linux_amd64 clair-scanner - chmod +x clair-scanner - touch clair-whitelist.yml - > ./clair-scanner -c http://docker:6060 --ip $(hostname -i) -r gl-sast-container-report.json -l clair.log -w clair-whitelist.yml ${CI_REGISTRY_IMAGE}:${CI_COMMIT_SHA} || true -w clair-whitelist.yml ${IMAGE_NAME}:${CI_COMMIT_SHA} || true artifacts: paths: [gl-sast-container-report.json] Loading Loading
.gitlab-ci.yml +3 −2 Original line number Diff line number Diff line Loading @@ -45,6 +45,7 @@ container-scanning: image: docker:stable variables: DOCKER_DRIVER: overlay2 IMAGE_NAME: ${CI_REGISTRY_IMAGE}/connector-supplier allow_failure: true services: - docker:stable-dind Loading @@ -55,14 +56,14 @@ container-scanning: - docker run -p 6060:6060 --link db:postgres -d --name clair arminc/clair-local-scan:v2.0.1 - apk add -U wget ca-certificates - docker login -u gitlab-ci-token -p ${CI_JOB_TOKEN} ${CI_REGISTRY} - docker pull ${CI_REGISTRY_IMAGE}:${CI_COMMIT_SHA} - docker pull ${IMAGE_NAME}:${CI_COMMIT_SHA} - wget https://github.com/arminc/clair-scanner/releases/download/v8/clair-scanner_linux_amd64 - mv clair-scanner_linux_amd64 clair-scanner - chmod +x clair-scanner - touch clair-whitelist.yml - > ./clair-scanner -c http://docker:6060 --ip $(hostname -i) -r gl-sast-container-report.json -l clair.log -w clair-whitelist.yml ${CI_REGISTRY_IMAGE}:${CI_COMMIT_SHA} || true -w clair-whitelist.yml ${IMAGE_NAME}:${CI_COMMIT_SHA} || true artifacts: paths: [gl-sast-container-report.json] Loading