From 96286d56f848eaab0c0f7071a3cf8cc9ba4f561e Mon Sep 17 00:00:00 2001 From: shaynafinocchiaro Date: Fri, 19 Apr 2024 10:53:21 -0400 Subject: [PATCH] Update image scanner --- .github/workflows/actions.yaml | 40 +++++++++++++--------------------- 1 file changed, 15 insertions(+), 25 deletions(-) diff --git a/.github/workflows/actions.yaml b/.github/workflows/actions.yaml index 052e3adf..e59459a9 100644 --- a/.github/workflows/actions.yaml +++ b/.github/workflows/actions.yaml @@ -114,37 +114,27 @@ jobs: docker.io/library/sidecar-proxy:${{ env.podman_tag }} docker load -i /tmp/images.tar - name: Scan Proxy Server - uses: Azure/container-scan@v0 + uses: aquasecurity/trivy-action@master with: - image-name: proxy-server:${{ env.podman_tag }} - severity-threshold: HIGH - env: - DOCKLE_HOST: "unix:///var/run/docker.sock" + image-ref: proxy-server:${{ env.podman_tag }} + severity: HIGH - name: Scan Role Service - uses: Azure/container-scan@v0 + uses: aquasecurity/trivy-action@master with: - image-name: role-service:${{ env.podman_tag }} - severity-threshold: HIGH - env: - DOCKLE_HOST: "unix:///var/run/docker.sock" + image-ref: role-service:${{ env.podman_tag }} + severity: HIGH - name: Scan Tenant Service - uses: Azure/container-scan@v0 + uses: aquasecurity/trivy-action@master with: - image-name: tenant-service:${{ env.podman_tag }} - severity-threshold: HIGH - env: - DOCKLE_HOST: "unix:///var/run/docker.sock" + image-ref: tenant-service:${{ env.podman_tag }} + severity: HIGH - name: Scan SideCar Proxy - uses: Azure/container-scan@v0 + uses: aquasecurity/trivy-action@master with: - image-name: sidecar-proxy:${{ env.sidecar_tag }} - severity-threshold: HIGH - env: - DOCKLE_HOST: "unix:///var/run/docker.sock" + image-ref: sidecar-proxy:${{ env.sidecar_tag }} + severity: HIGH - name: Scan Storage Service - uses: Azure/container-scan@v0 + uses: aquasecurity/trivy-action@master with: - image-name: storage-service:${{ env.podman_tag }} - severity-threshold: HIGH - env: - DOCKLE_HOST: "unix:///var/run/docker.sock" + image-ref: storage-service:${{ env.podman_tag }} + severity: HIGH