Skip to content

Commit 0ba698d

Browse files
authored
Merge pull request #12214 from swagger-api/add_scanning
Adding scanning of built container
2 parents de33c6f + e77aca8 commit 0ba698d

File tree

3 files changed

+19
-2
lines changed

3 files changed

+19
-2
lines changed

.github/workflows/docker-release-3.0.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -72,4 +72,4 @@ jobs:
7272
docker tag $DOCKER_GENERATOR_ROOT_FULL_IMAGE_NAME:${{ env.TAG }} $DOCKER_GENERATOR_FULL_IMAGE_NAME:${{ env.TAG }}-root
7373
docker push $DOCKER_GENERATOR_FULL_IMAGE_NAME:$${{ env.TAG }}-root
7474
env:
75-
TAG: ${{ github.event.inputs.tag }}
75+
TAG: ${{ github.event.inputs.tag }}

.github/workflows/maven-master-pulls.yml

Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -27,3 +27,20 @@ jobs:
2727
${{ runner.os }}-maven-
2828
- name: Build with Maven
2929
run: mvn -B -U verify --file pom.xml
30+
31+
scan-with-lacework:
32+
name: Trigger LaceWork Scanning
33+
runs-on: ubuntu-latest
34+
35+
needs: [ build ]
36+
if: success()
37+
38+
steps:
39+
- name: Trigger LaceWork Scanning using a different method
40+
run: |
41+
docker run -e LW_ACCOUNT_NAME=$LW_ACCOUNT_NAME -e LW_ACCESS_TOKEN=$LW_ACCESS_TOKEN -e LW_SCANNER_SAVE_RESULTS=true -e LW_SCANNER_DISABLE_UPDATES=false -v /var/run/docker.sock:/var/run/docker.sock lacework/lacework-inline-scanner:latest image evaluate swaggerapi/swagger-codegen-cli latest --docker-server index.docker.io --docker-username $docker_user --docker-password $docker_password > /dev/null 2>&1
42+
env:
43+
LW_ACCOUNT_NAME: ${{ secrets.LW_ACCOUNT_NAME }}
44+
LW_ACCESS_TOKEN: ${{ secrets.LW_ACCESS_TOKEN }}
45+
docker_user: ${{ secrets.DOCKERHUB_SB_USERNAME}}
46+
docker_password: ${{ secrets.DOCKERHUB_SB_PASSWORD}}

.github/workflows/maven-master.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -56,4 +56,4 @@ jobs:
5656
docker push $DOCKER_CODEGEN_CLI_IMAGE_NAME:unstable
5757
else
5858
echo "not deploying release nor building and pushing release docker image: " ${MY_POM_VERSION}
59-
fi
59+
fi

0 commit comments

Comments
 (0)