Uploaded image for project: 'Camunda Optimize'
  1. Camunda Optimize
  2. OPT-6770

Trigger Trivy check upon merging to master

    • S

      Trivy for docker image scanning: https://github.com/aquasecurity/trivy
      Snyk misses some stuff and there was one occasion where customers found a vulnerability that we hadn't seen. It is worth integrating such a check into our release process for added confidence.
      The Zeebe controller repo has this integrated already. Maybe we can learn/copy something here.
      The trivy check should get triggered when the pipeline does the smoketest for docker when merging to master

       

        This is the controller panel for Smart Panels app

            [OPT-6770] Trigger Trivy check upon merging to master

            Giuliano Rodrigues Lima created issue -
            Giuliano Rodrigues Lima made changes -
            Description Original: |Trivy for docker image scanning: [https://github.com/aquasecurity/trivy]
            Snyk misses some stuff and there was one occasion where customers found a vulnerability that we hadn't seen. It is worth integrating such a check into our release process for added confidence.
            The Zeebe controller repo has this integrated already. Maybe we can learn/copy something here.

            The trivy check should get triggered when the pipeline does the smoketest for docker when merging to master|
            New: Trivy for docker image scanning: [https://github.com/aquasecurity/trivy]
            Snyk misses some stuff and there was one occasion where customers found a vulnerability that we hadn't seen. It is worth integrating such a check into our release process for added confidence.
            The Zeebe controller repo has this integrated already. Maybe we can learn/copy something here.
            The trivy check should get triggered when the pipeline does the smoketest for docker when merging to master

             
            Michal Konopski made changes -
            Assignee New: Michal Konopski [ michal.konopski ]
            Michal Konopski made changes -
            Status Original: Triage [ 10612 ] New: In Development [ 10312 ]
            Michal Konopski made changes -
            Assignee Original: Michal Konopski [ michal.konopski ] New: Omran Abazeed [ omran.abazeed ]
            Status Original: In Development [ 10312 ] New: In Review [ 10212 ]
            Omran Abazeed made changes -
            Assignee Original: Omran Abazeed [ omran.abazeed ] New: Michal Konopski [ michal.konopski ]
            Status Original: In Review [ 10212 ] New: Rework [ 11413 ]
            Michal Konopski made changes -
            Assignee Original: Michal Konopski [ michal.konopski ] New: Joshua Windels [ joshua.windels ]
            Status Original: Rework [ 11413 ] New: In Review [ 10212 ]

            I merged this so we can see if it works for us this way

            Michal Konopski added a comment - I merged this so we can see if it works for us this way
            Michal Konopski made changes -
            Assignee Original: Joshua Windels [ joshua.windels ]
            Resolution New: Done [ 10000 ]
            Status Original: In Review [ 10212 ] New: Done [ 10010 ]
            Omran Abazeed made changes -
            Fix Version/s New: 3.11.0-alpha5 [ 18493 ]

              Unassigned Unassigned
              giuliano.rodrigues-lima Giuliano Rodrigues Lima
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: