chore(deps): update docker.io/alpine docker tag to v3.19 #94

Merged
xoxys merged 5 commits from renovate/docker.io-alpine-3.x into main 2023-12-14 09:47:32 +00:00
4 changed files with 13 additions and 2 deletions
Showing only changes of commit 274ccaa90d - Show all commits

View File

@ -24,7 +24,6 @@ steps:
TRIVY_NO_PROGRESS: "true" TRIVY_NO_PROGRESS: "true"
TRIVY_SEVERITY: HIGH,CRITICAL TRIVY_SEVERITY: HIGH,CRITICAL
TRIVY_TIMEOUT: 1m TRIVY_TIMEOUT: 1m
TRIVY_SKIP_FILES: /usr/local/bin/gomplate,/usr/local/bin/helm,/usr/local/bin/polaris,/usr/local/bin/yq
publish-dockerhub: publish-dockerhub:
group: container group: container

View File

@ -59,7 +59,8 @@ RUN apk --update add curl tar bash python3 pipx findutils git && \
chmod 755 /usr/local/bin/kustomize && \ chmod 755 /usr/local/bin/kustomize && \
chmod 755 /usr/local/bin/kubeconform && \ chmod 755 /usr/local/bin/kubeconform && \
rm -rf /var/cache/apk/* && \ rm -rf /var/cache/apk/* && \
rm -rf /tmp/* rm -rf /tmp/* && \
rm -rf /root/.cache/
ADD overlay/ / ADD overlay/ /

4
trivy-secret.yaml Normal file
View File

@ -0,0 +1,4 @@
---
allow-rules:
- id: aws-secret-access-key
path: .*/flux-local/.*/site-packages/GitPython-.*\.dist-info/METADATA

7
trivy.yaml Normal file
View File

@ -0,0 +1,7 @@
---
scan:
skip-files:
- /usr/local/bin/gomplate
- /usr/local/bin/helm
- /usr/local/bin/polaris
- /usr/local/bin/yq