Skip to content

Commit a257765

Browse files
author
Jessica Lai
committed
Add: Add a job to build and push SBOM with trivy
1 parent 1f37183 commit a257765

1 file changed

Lines changed: 13 additions & 0 deletions

File tree

.github/workflows/push.yml

Lines changed: 13 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -94,3 +94,16 @@ jobs:
9494
repository: "greenbone/automatix"
9595
workflow: "push.yml"
9696
inputs: '{"service": "${{ matrix.service }}", "image-url": "${{ matrix.image-url }}", "digest": "${{ matrix.digest }}", "version": "${{ matrix.version }}"}'
97+
98+
generate-and-push-sbom-trivy:
99+
needs: push-postgres
100+
if: ${{ needs.push-postgres.outputs.matrix }}
101+
runs-on:
102+
- self-hosted-generic-vm-amd64
103+
steps:
104+
- name: Scan image in a private registry
105+
uses: greenbone/workflows/.github/workflows/generate-and-push-sbom-with-trivy-3rd-gen.yml@main
106+
with:
107+
image-url: "${{ vars.GREENBONE_REGISTRY}}/opensight/opensight-postgres:${{ matrix.version }}"
108+
output-file-name: 'opensight-postgres.${{ matrix.version }}.sbom.json'
109+
artifact-url: "${{ vars.GREENBONE_REGISTRY }}/opensight-dev/opensight-postgres-sbom:${{ matrix.version }}"

0 commit comments

Comments
 (0)