Skip to content

Commit 08240c0

Browse files
committed
Adding scanning of build container
1 parent bb989ce commit 08240c0

File tree

2 files changed

+18
-18
lines changed

2 files changed

+18
-18
lines changed

.github/workflows/maven-master-pulls.yml

Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -27,3 +27,20 @@ jobs:
2727
${{ runner.os }}-maven-
2828
- name: Build with Maven
2929
run: mvn -B -U verify --file pom.xml
30+
31+
scan-with-lacework:
32+
name: Trigger LaceWork Scanning
33+
runs-on: ubuntu-latest
34+
35+
needs: [ build ]
36+
if: success()
37+
38+
steps:
39+
- name: Trigger LaceWork Scanning using a different method
40+
run: |
41+
docker run -e LW_ACCOUNT_NAME=$LW_ACCOUNT_NAME -e LW_ACCESS_TOKEN=$LW_ACCESS_TOKEN -e LW_SCANNER_DISABLE_UPDATES=false -v /var/run/docker.sock:/var/run/docker.sock lacework/lacework-inline-scanner:latest image evaluate swaggerapi/swagger-codegen-cli latest --docker-server index.docker.io --docker-username $docker_user --docker-password $docker_password > /dev/null 2>&1
42+
env:
43+
LW_ACCOUNT_NAME: ${{ secrets.LW_ACCOUNT_NAME }}
44+
LW_ACCESS_TOKEN: ${{ secrets.LW_ACCESS_TOKEN }}
45+
docker_user: ${{ secrets.DOCKERHUB_SB_USERNAME}}
46+
docker_password: ${{ secrets.DOCKERHUB_SB_PASSWORD}}

.github/workflows/maven-master.yml

Lines changed: 1 addition & 18 deletions
Original file line numberDiff line numberDiff line change
@@ -56,21 +56,4 @@ jobs:
5656
docker push $DOCKER_CODEGEN_CLI_IMAGE_NAME:unstable
5757
else
5858
echo "not deploying release nor building and pushing release docker image: " ${MY_POM_VERSION}
59-
fi
60-
61-
scan-with-lacework:
62-
name: Trigger LaceWork Scanning
63-
runs-on: ubuntu-latest
64-
65-
needs: [ build ]
66-
if: success()
67-
68-
steps:
69-
- name: Trigger LaceWork Scanning using a different method
70-
run: |
71-
docker run -e LW_ACCOUNT_NAME=$LW_ACCOUNT_NAME -e LW_ACCESS_TOKEN=$LW_ACCESS_TOKEN -e LW_SCANNER_DISABLE_UPDATES=false -v /var/run/docker.sock:/var/run/docker.sock lacework/lacework-inline-scanner:latest image evaluate swaggerapi/swagger-codegen-cli latest --docker-server index.docker.io --docker-username $docker_user --docker-password $docker_password > /dev/null 2>&1
72-
env:
73-
LW_ACCOUNT_NAME: ${{ secrets.LW_ACCOUNT_NAME }}
74-
LW_ACCESS_TOKEN: ${{ secrets.LW_ACCESS_TOKEN }}
75-
docker_user: ${{ secrets.DOCKERHUB_SB_USERNAME}}
76-
docker_password: ${{ secrets.DOCKERHUB_SB_PASSWORD}}
59+
fi

0 commit comments

Comments
 (0)