Update scan.yml (#15)

This commit is contained in:
Neil Hanlon 2022-03-29 09:40:09 -04:00 committed by GitHub
parent 2f63107a60
commit 0d2689e8be
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 8 additions and 7 deletions

View File

@ -14,13 +14,17 @@ jobs:
steps:
- name: Checkout code
uses: actions/checkout@v2
- name: Create public folder
run: |
mkdir -p public/
- name: Run Trivy vulnerability scanner
uses: aquasecurity/trivy-action@master
with:
image-ref: 'docker.io/rockylinux/rockylinux:8'
format: 'sarif'
output: 'trivy-results.sarif'
output: 'public/trivy-results.sarif'
exit-code: '1'
ignore-unfixed: true
vuln-type: 'os,library'
@ -30,11 +34,8 @@ jobs:
uses: github/codeql-action/upload-sarif@v1
if: always()
with:
sarif_file: 'trivy-results.sarif'
- name: Create public folder
run: |
mkdir -p public/
sarif_file: 'public/trivy-results.sarif'
- name: Run Trivy vulnerability scanner
uses: aquasecurity/trivy-action@master
@ -42,7 +43,7 @@ jobs:
with:
image-ref: 'docker.io/rockylinux/rockylinux:8'
format: 'template'
template: '@contrib/html.tpl'
template: '@/contrib/html.tpl'
output: 'public/index.html'
exit-code: '1'
ignore-unfixed: true