From d54d251e3a3456624db776b793c2c8bb1c598259 Mon Sep 17 00:00:00 2001 From: Ben Larabie Date: Tue, 3 Dec 2024 11:21:07 -0500 Subject: [PATCH] adding docker sbom back --- .github/workflows/docker.yaml | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) diff --git a/.github/workflows/docker.yaml b/.github/workflows/docker.yaml index a6f8ceae9..71358535a 100644 --- a/.github/workflows/docker.yaml +++ b/.github/workflows/docker.yaml @@ -108,15 +108,15 @@ jobs: env: TOKEN: ${{ steps.notify-pr-bot.outputs.token }} - #- name: Docker generate SBOM - # uses: cds-snc/security-tools/.github/actions/generate-sbom@34794baf2af592913bb5b51d8df4f8d0acc49b6f # v3.2.0 - # env: - # TRIVY_DB_REPOSITORY: ${{ vars.TRIVY_DB_REPOSITORY }} - # with: - # docker_image: "${{ env.DOCKER_SLUG }}:latest" - # dockerfile_path: "ci/Dockerfile" - # sbom_name: "notification-admin" - # token: "${{ secrets.GITHUB_TOKEN }}" + - name: Docker generate SBOM + uses: cds-snc/security-tools/.github/actions/generate-sbom@34794baf2af592913bb5b51d8df4f8d0acc49b6f # v3.2.0 + env: + TRIVY_DB_REPOSITORY: ${{ vars.TRIVY_DB_REPOSITORY }} + with: + docker_image: "${{ env.DOCKER_SLUG }}:latest" + dockerfile_path: "ci/Dockerfile" + sbom_name: "notification-admin" + token: "${{ secrets.GITHUB_TOKEN }}" - name: Notify Slack channel if this job failed if: ${{ failure() }}