File tree 2 files changed +9
-3
lines changed
2 files changed +9
-3
lines changed Original file line number Diff line number Diff line change @@ -204,7 +204,7 @@ jobs:
204
204
path : ./tmp
205
205
- run : docker load --input ./tmp/image*.tar
206
206
- run : mkdir -p "./clair/${DOCKER_IMAGE}"
207
- - run : make scan-vulnerability
207
+ - run : make ci- scan-vulnerability
208
208
scan-vulnerability-http :
209
209
name : Scan nginx ${{ matrix.nginx }} for vulnerabilities
210
210
needs :
@@ -233,7 +233,7 @@ jobs:
233
233
shell : bash
234
234
- run : mkdir -p "./clair/${DOCKER_IMAGE}"
235
235
shell : bash
236
- - run : make scan-vulnerability
236
+ - run : make ci- scan-vulnerability
237
237
shell : bash
238
238
scan-vulnerability-prometheus-exporter-file :
239
239
name : Scan HTTP prometheus-exporter-file for vulnerabilities
@@ -258,7 +258,7 @@ jobs:
258
258
path : ./tmp
259
259
- run : docker load --input ./tmp/image*.tar
260
260
- run : mkdir -p "./clair/${DOCKER_IMAGE}"
261
- - run : make scan-vulnerability
261
+ - run : make ci- scan-vulnerability
262
262
test-php :
263
263
name : Functionaly test PHP ${{ matrix.php }} for ${{ matrix.type }} on Alpine ${{ matrix.alpine }}
264
264
needs :
Original file line number Diff line number Diff line change @@ -110,3 +110,9 @@ scan-vulnerability:
110
110
mkdir -p ./tmp/clair/usabillabv
111
111
cat ./tmp/build-* .tags | xargs -I % sh -c ' clair-scanner --ip 172.17.0.1 -r "./tmp/clair/%.json" -l ./tmp/clair/clair.log % || echo "% is vulnerable"'
112
112
docker-compose -f test/security/docker-compose.yml -p clair-ci down
113
+
114
+ ci-scan-vulnerability :
115
+ docker-compose -f test/security/docker-compose.yml -p clair-ci up -d
116
+ RETRIES=0 && while ! wget -T 10 -q -O /dev/null http://localhost:6060/v1/namespaces ; do sleep 1 ; echo -n " ." ; if [ $$ {RETRIES} -eq 10 ] ; then echo " Timeout, aborting." ; exit 1 ; fi ; RETRIES=$$ (( $$ {RETRIES}+ 1 )) ; done
117
+ mkdir -p ./tmp/clair/usabillabv
118
+ cat ./tmp/build-* .tags | xargs -I % sh -c ' clair-scanner --ip 172.17.0.1 -r "./tmp/clair/%.json" -l ./tmp/clair/clair.log %'
You can’t perform that action at this time.
0 commit comments