Attention Iron Bank Customers: On March 27, 2025, we are moving SBOM artifacts from the Anchore Scan job to the Build job to streamline the container hardening pipeline. If you currently download SBOMs from the Anchore Scan job, you can still get them from the Build job and from other sources, including IBFE and image attestations.
Whilst looking at our Twistlock heatmap for Gitlab, I noticed that the MinIO version was REALLY old. I looked at the values in the chart and discovered that the version of MinIO was over 18 months old. There are newer versions of the container being shipped in Big Bang, but the values.yaml needs to be updated with the newest version (currently Select RELEASE.2024-02-09T21-25-16Z)
We cannot update the minio package beyond this image version as then the gitlab provided scripts which init and setup the bucket in minio will fail as they are coded for older versions. We could open an issue upstream to see about getting the api endpoints and manifests updated there but it would be a lot of effort for our team to update these out of band when minio isn't encouraged for production deployments of gitlab.
@ppryde this issue has been inactive for 30 days and is being labelled as stale. If this issue is still required please take action by removing the stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as delete-me. If no action is taken this issue will be auto closed in 60 days.
@ppryde this issue has been inactive for 60 days and is being labelled as marked-for-auto-close. If this issue is still required please take action by removing the stale and marked-for-auto-close labels and commenting with an update, status, or justification. If this issue is not required please close it or label it as delete-me. If no action is taken this issue will be auto closed in 30 days.