UNCLASSIFIED

Merge branch 'olga-jira-collerctor' into 'development'

update hardening_manifest

See merge request !15
19 jobs for development in 12 minutes and 26 seconds (queued for 14 minutes and 14 seconds)
Status Job ID Name Coverage
  .Pre
passed #2609119
ironbank
load scripts

00:00:07

 
  Preflight
passed #2609120
ironbank
folder structure

00:00:05

passed #2609121
ironbank
hardening_manifest

00:00:10

 
  Lint
passed #2609122
ironbank
wl compare lint

00:00:10

 
  Finding Compare
failed #2609123
ironbank allowed to fail
vat compare

00:00:07

 
  Import Artifacts
passed #2609124
ironbank
import artifacts

00:00:47

 
  Scan Artifacts
passed #2609125
ironbank
clamav scan

00:02:48

 
  Build
passed #2609126
ironbank-isolated
build

00:01:25

 
  Scanning
passed #2609130
ironbank
anchore scan

00:01:49

passed #2609127
ironbank
openscap compliance

00:00:49

passed #2609128
ironbank
openscap cve

00:04:02

passed #2609129
ironbank
twistlock scan

00:00:20

 
  Csv Output
passed #2609131
ironbank
csv output

00:00:46

 
  Check Cves
failed #2609132
ironbank allowed to fail
check cves

00:00:15

 
  Documentation
passed #2609133
ironbank
sign image

00:00:24

passed #2609134
ironbank
sign manifest

00:00:19

passed #2609135
ironbank
write json documentation

00:00:18

 
  Publish
passed #2609136
ironbank
upload to s3

00:01:09

 
  Vat
passed #2609137
ironbank
vat

00:00:08

 
Name Stage Failure
failed
check cves Check Cves
ERROR: twistlock_cve                 CVE-2021-25329                apache tomcat_tomcat-embed-core-8.5.57    None                          
ERROR: twistlock_cve CVE-2020-25649 com.fasterxml.jackson.core_jackson-databind-2.10.3 None
ERROR: twistlock_cve CVE-2020-8908 com.google.guava_guava-29.0-jre None
ERROR: twistlock_cve CVE-2020-13956 org.apache.httpcomponents_httpclient-4.5.9 None
ERROR: twistlock_cve CVE-2020-10693 org.hibernate_hibernate-validator-5.4.2.Final None
ERROR: twistlock_cve CVE-2017-18640 org.yaml_snakeyaml-1.17 None
ERROR: twistlock_cve CVE-2020-5421 spring-core_spring-core-4.3.25 None
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1
failed
vat compare Finding Compare
Findings from direct query not in api
('41cb7cdf04850e33a11f80c42bf660b3', 'anchore_comp', "Dockerfile directive 'HEALTHCHECK' not found, matching condition 'not_exists' check\n Gate: dockerfile\n Trigger: instruction\n Policy ID: DoDDockerfileChecks", None, None)
('cbff271f45d32e78dcc1979dbca9c14d', 'anchore_comp', 'User root found as effective user, which is explicity not allowed\n Gate: dockerfile\n Trigger: effective_user\n Policy ID: DoDEffectiveUserChecks', None, None)
Uploading artifacts for failed job
Uploading artifacts...
ci-artifacts/compare/: found 2 matching files and directories

Uploading artifacts as "archive" to coordinator... ok
id=2609123 responseStatus=201 Created token=amfi-qrZ
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 4