UNCLASSIFIED

Merge branch 'hardening_manifest' into 'development'

Migrate to hardening_manifest.yaml

See merge request !10
14 jobs for version-bump in 20 minutes and 56 seconds (queued for 18 seconds)
Status Job ID Name Coverage
  .Pre
passed #3106397
ironbank
load scripts

00:00:21

 
  Preflight
passed #3106399
ironbank
folder structure

00:00:21

passed #3106400
ironbank
hardening_manifest

00:00:37

passed #3106398
ironbank
trufflehog

00:00:26

 
  Lint
failed #3106401
ironbank allowed to fail
wl compare lint

00:00:26

 
  Import Artifacts
passed #3106402
ironbank
import artifacts

00:00:29

 
  Scan Artifacts
passed #3106403
ironbank
clamav scan

00:01:31

 
  Build
passed #3106404
ironbank-isolated
build

00:07:16

 
  Scanning
passed #3106405
ironbank
anchore scan

00:03:10

passed #3106406
ironbank
openscap compliance

00:08:14

passed #3106407
ironbank
openscap cve

00:08:54

passed #3106408
ironbank
twistlock scan

00:00:58

 
  Csv Output
passed #3106409
ironbank
csv output

00:00:39

 
  Check Cves
failed #3106410
ironbank allowed to fail
check cves

00:00:36

 
Name Stage Failure
failed
check cves Check Cves
ERROR: Number of non-whitelisted vulnerabilities: 4
ERROR: The following vulnerabilities are not whitelisted:
ERROR: scan_source cve_id package package_path
ERROR: anchore_cve CVE-2020-9546 jackson-databind-2.10.2 /opt/gradle/gradle-6.7.1/lib/plugins/jackson-databind-2.10.2.jar
ERROR: anchore_cve CVE-2020-9547 jackson-databind-2.10.2 /opt/gradle/gradle-6.7.1/lib/plugins/jackson-databind-2.10.2.jar
ERROR: anchore_cve CVE-2020-9548 jackson-databind-2.10.2 /opt/gradle/gradle-6.7.1/lib/plugins/jackson-databind-2.10.2.jar
ERROR: anchore_cve GHSA-288c-cq4h-88gq jackson-databind-2.10.2 /opt/gradle/gradle-6.7.1/lib/plugins/jackson-databind-2.10.2.jar
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1
failed
wl compare lint Lint
Uploading artifacts for failed job
Uploading artifacts...
ci-artifacts/lint/: found 3 matching files and directories

Uploading artifacts as "archive" to coordinator... ok
id=3106401 responseStatus=201 Created token=RZ3w4bMs
Uploading artifacts...
variables.env: found 1 matching files and directories

Uploading artifacts as "dotenv" to coordinator... ok
id=3106401 responseStatus=201 Created token=RZ3w4bMs
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 3