From bda7420f355f1797caebc2f9924fc2c7d8f2854a Mon Sep 17 00:00:00 2001 From: Szilard Parrag Date: Mon, 11 Nov 2024 13:33:31 +0100 Subject: [PATCH] chore(CI): Use AWS ECR location for trivy DBs Signed-off-by: Szilard Parrag --- .github/workflows/artifacts.yaml | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/.github/workflows/artifacts.yaml b/.github/workflows/artifacts.yaml index 02a024f..8486fc3 100644 --- a/.github/workflows/artifacts.yaml +++ b/.github/workflows/artifacts.yaml @@ -135,6 +135,9 @@ jobs: - name: Run Trivy vulnerability scanner uses: aquasecurity/trivy-action@915b19bbe73b92a6cf82a1bc12b087c9a19a5fe2 # 0.28.0 + env: + TRIVY_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db:2 + TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db:1 with: input: image format: sarif @@ -224,6 +227,9 @@ jobs: - name: Run Trivy vulnerability scanner uses: aquasecurity/trivy-action@915b19bbe73b92a6cf82a1bc12b087c9a19a5fe2 # 0.28.0 + env: + TRIVY_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db:2 + TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db:1 with: scan-type: config scan-ref: charts/${{ steps.chart-name.outputs.value }}