From 0bbb030e74baf3fb47c32bcbcf9d626472b3b059 Mon Sep 17 00:00:00 2001 From: Jack Farley Date: Fri, 22 Oct 2021 17:02:04 +1300 Subject: [PATCH] Add trivy test to docker build action --- .github/workflows/docker-hub.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/workflows/docker-hub.yml b/.github/workflows/docker-hub.yml index 20eadde5..3817131f 100644 --- a/.github/workflows/docker-hub.yml +++ b/.github/workflows/docker-hub.yml @@ -17,6 +17,7 @@ jobs: export VERSION=$(echo $GITHUB_REF | sed -re 's/^.*\/([0-9a-zA-Z._-]+)$/\1/') test "$VERSION" != "$GITHUB_REF" docker build --file docker/Dockerfile --tag $DOCKER_USER/armadietto:$VERSION . + docker run --rm -v /var/run/docker.sock:/var/run/docker.sock -v cache:/root/.cache/ aquasec/trivy $DOCKER_USER/armadietto:$VERSION docker login -u $DOCKER_USER -p $DOCKER_TOKEN docker push $DOCKER_USER/armadietto:$VERSION docker tag $DOCKER_USER/armadietto:$VERSION $DOCKER_USER/armadietto