From dc7ead2ec4ebdf99d57994f0de49adfd1e1c9fcf Mon Sep 17 00:00:00 2001 From: syafiqparadisam Date: Mon, 2 Sep 2024 12:13:26 +0700 Subject: [PATCH] fix trivy.yaml ci cd --- .github/workflows/cicd.yml | 4 ++-- trivy.yaml | 4 +++- 2 files changed, 5 insertions(+), 3 deletions(-) diff --git a/.github/workflows/cicd.yml b/.github/workflows/cicd.yml index ee6eab6..014aa8d 100644 --- a/.github/workflows/cicd.yml +++ b/.github/workflows/cicd.yml @@ -51,7 +51,7 @@ jobs: - name: Set up Docker Buildx uses: docker/setup-buildx-action@v3 - - name: Deploy frontend app to dockerhub + - name: Build frontend app to dockerhub env: DOCKER_CONTENT_TRUST: 1 uses: docker/build-push-action@v5 @@ -64,7 +64,7 @@ jobs: "VITE_PUBLIC_KEY=${{secrets.VITE_PUBLIC_KEY}}" "VITE_TEMPLATE_ID=${{secrets.VITE_TEMPLATE_ID}}" - - name: Run Trivy vulnerability scanner in fs mode + - name: Run Trivy vulnerability scanner docker container uses: aquasecurity/trivy-action@0.20.0 with: scan-type: 'image' diff --git a/trivy.yaml b/trivy.yaml index 67399de..071dbd2 100644 --- a/trivy.yaml +++ b/trivy.yaml @@ -2,4 +2,6 @@ format: table exit-code: 1 severity: CRITICAL ignore-unfixed: false -vuln-type: 'os, library' \ No newline at end of file +vuln-type: + - os + - library \ No newline at end of file