Skip to content
This repository has been archived by the owner on Sep 18, 2024. It is now read-only.

Commit

Permalink
.github/workflows: Add CI dockle scan
Browse files Browse the repository at this point in the history
Signed-off-by: Timo Reichl <[email protected]>
  • Loading branch information
Timo Reichl committed Jul 10, 2022
1 parent a1042d9 commit baf87db
Show file tree
Hide file tree
Showing 2 changed files with 252 additions and 0 deletions.
126 changes: 126 additions & 0 deletions .github/workflows/docker-build.yml
Original file line number Diff line number Diff line change
Expand Up @@ -42,6 +42,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - base
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:base"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - hlds
uses: aquasecurity/[email protected]
with:
Expand All @@ -50,6 +57,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - hlds
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:hlds"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - srcds
uses: aquasecurity/[email protected]
with:
Expand All @@ -58,6 +72,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - srcds
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:srcds"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/hlmp
uses: aquasecurity/[email protected]
with:
Expand All @@ -66,6 +87,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/hlmp
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:hlmp"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/cs
uses: aquasecurity/[email protected]
with:
Expand All @@ -74,6 +102,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/cs
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:cs"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/czero
uses: aquasecurity/[email protected]
with:
Expand All @@ -82,6 +117,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/czero
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:czero"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/dod
uses: aquasecurity/[email protected]
with:
Expand All @@ -90,6 +132,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/dod
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:dod"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/dmc
uses: aquasecurity/[email protected]
with:
Expand All @@ -98,6 +147,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/dmc
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:dmc"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/op4
uses: aquasecurity/[email protected]
with:
Expand All @@ -106,6 +162,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/op4
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:op4"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/hlds/tfc
uses: aquasecurity/[email protected]
with:
Expand All @@ -114,6 +177,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/hlds/tfc
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:tfc"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/bms
uses: aquasecurity/[email protected]
with:
Expand All @@ -122,6 +192,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/bms
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:bms"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/css
uses: aquasecurity/[email protected]
with:
Expand All @@ -130,6 +207,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/css
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:css"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/csgo
uses: aquasecurity/[email protected]
with:
Expand All @@ -138,6 +222,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/csgo
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:csgo"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/dods
uses: aquasecurity/[email protected]
with:
Expand All @@ -146,6 +237,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/dods
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:dods"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/gm
uses: aquasecurity/[email protected]
with:
Expand All @@ -154,6 +252,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/gm
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:gm"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/hl2mp
uses: aquasecurity/[email protected]
with:
Expand All @@ -162,6 +267,13 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/hl2mp
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:hl2mp"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/l4d
uses: aquasecurity/[email protected]
with:
Expand All @@ -170,10 +282,24 @@ jobs:
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/l4d
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:l4d"
exit-code: '1'
dockle-version: '0.4.5'

- name: Trivy CVE scan - games/srcds/l4d2
uses: aquasecurity/[email protected]
with:
image-ref: "${{ env.REGISTRY_IMAGE }}:l4d2"
format: 'table'
exit-code: '1'
severity: 'CRITICAL,HIGH,MEDIUM,LOW'

- name: Dockle scan - games/srcds/l4d2
uses: erzz/[email protected]
with:
image: "${{ env.REGISTRY_IMAGE }}:l4d2"
exit-code: '1'
dockle-version: '0.4.5'
Loading

0 comments on commit baf87db

Please sign in to comment.