Skip to content

Commit 5e8327c

Browse files
ccroncavdemeester
authored andcommitted
fix(KONFLUX-3663): upload SAST results to quay.io
Configure the SAST task to upload SARIF results to quay.io for long-term storage Signed-off-by: ccronca <[email protected]>
1 parent b1bb8ba commit 5e8327c

File tree

2 files changed

+12
-2
lines changed

2 files changed

+12
-2
lines changed

.tekton/git-init-pull-request.yaml

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -305,7 +305,7 @@ spec:
305305
- "false"
306306
- name: sast-snyk-check
307307
runAfter:
308-
- clone-repository
308+
- build-container
309309
taskRef:
310310
params:
311311
- name: name
@@ -323,6 +323,11 @@ spec:
323323
workspaces:
324324
- name: workspace
325325
workspace: workspace
326+
params:
327+
- name: image-digest
328+
value: $(tasks.build-container.results.IMAGE_DIGEST)
329+
- name: image-url
330+
value: $(tasks.build-container.results.IMAGE_URL)
326331
- name: clamav-scan
327332
params:
328333
- name: image-digest

.tekton/git-init-push.yaml

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -302,7 +302,7 @@ spec:
302302
- "false"
303303
- name: sast-snyk-check
304304
runAfter:
305-
- clone-repository
305+
- build-container
306306
taskRef:
307307
params:
308308
- name: name
@@ -320,6 +320,11 @@ spec:
320320
workspaces:
321321
- name: workspace
322322
workspace: workspace
323+
params:
324+
- name: image-digest
325+
value: $(tasks.build-container.results.IMAGE_DIGEST)
326+
- name: image-url
327+
value: $(tasks.build-container.results.IMAGE_URL)
323328
- name: clamav-scan
324329
params:
325330
- name: image-digest

0 commit comments

Comments
 (0)