Commit 39d0c3c6 authored by Dmitriy Safronov's avatar Dmitriy Safronov
Browse files

Update .gitlab-ci.yml file

parent 7e2fe2c8
Loading
Loading
Loading
Loading
Loading
+0 −57
Original line number Diff line number Diff line
@@ -11,60 +11,3 @@ include:
      name: "$DIND_IMAGE"
  interruptible: true
  retry: 2

################################################################################################################

nodejs-scan:
  variables:
    SECURE_BINARIES_ANALYZER_VERSION: "4"

# secrets:
#   variables:
#     SECURE_BINARIES_ANALYZER_VERSION: "5"

# semgrep:
#   variables:
#     SECURE_BINARIES_ANALYZER_VERSION: "4"

pmd-apex:
  only:
    variables:
      - $SECURE_BINARIES_DOWNLOAD_IMAGES == "true" &&
          $SECURE_BINARIES_ANALYZERS =~ /\bpmd-apex\b/

################################################################################################################
################################################################################################################

.download_images_container-scanning:
  extends: .download_images
  variables:
    SECURE_BINARIES_ANALYZERS: container-scanning, container-scanning/grype, container-scanning/trivy

################################################################################################################

container-scanning:
  extends: .download_images_container-scanning
  variables:
    SECURE_BINARIES_ANALYZER_VERSION: "6"
  only:
    variables:
      - $SECURE_BINARIES_DOWNLOAD_IMAGES == "true" &&
          $SECURE_BINARIES_ANALYZERS =~ /\bcontainer-scanning\b/

container-scanning/grype:
  extends: .download_images_container-scanning
  variables:
    SECURE_BINARIES_ANALYZER_VERSION: "6"
  only:
    variables:
      - $SECURE_BINARIES_DOWNLOAD_IMAGES == "true" &&
          $SECURE_BINARIES_ANALYZERS =~ /\bcontainer-scanning\/grype\b/

container-scanning/trivy:
  extends: .download_images_container-scanning
  variables:
    SECURE_BINARIES_ANALYZER_VERSION: "6"
  only:
    variables:
      - $SECURE_BINARIES_DOWNLOAD_IMAGES == "true" &&
          $SECURE_BINARIES_ANALYZERS =~ /\bcontainer-scanning\/trivy\b/