From 355a8075ed318b1b819679d27d372cb222b29999 Mon Sep 17 00:00:00 2001 From: Andreas Beuge Date: Thu, 16 Jan 2025 17:51:51 +0100 Subject: [PATCH 1/2] fix: temporary fix for backend deployment --- .github/workflows/kubernetes.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/kubernetes.yaml b/.github/workflows/kubernetes.yaml index 67560e5..12fd249 100644 --- a/.github/workflows/kubernetes.yaml +++ b/.github/workflows/kubernetes.yaml @@ -446,7 +446,7 @@ jobs: docker push -a ${{ steps.login-ecr.outputs.registry }}/${{ github.event.deployment.payload.name }}-${{ matrix.containerfile_targets }} commit: - needs: [initialize] + needs: [initialize, image-build-ecr-single] environment: ${{ github.event.deployment.payload.env }} runs-on: ${{ inputs.runner }} steps: From 37f46f4b239716cc1b132f7538f12b668ed1de98 Mon Sep 17 00:00:00 2001 From: Andreas Beuge Date: Thu, 16 Jan 2025 18:21:49 +0100 Subject: [PATCH 2/2] fix: temporary disable container scan for image-build-ecr-single --- .github/workflows/kubernetes.yaml | 18 +++++++++--------- 1 file changed, 9 insertions(+), 9 deletions(-) diff --git a/.github/workflows/kubernetes.yaml b/.github/workflows/kubernetes.yaml index 12fd249..52646ac 100644 --- a/.github/workflows/kubernetes.yaml +++ b/.github/workflows/kubernetes.yaml @@ -294,15 +294,15 @@ jobs: ${{ steps.login-ecr.outputs.registry }}/${{ github.event.deployment.payload.name }}:latest ${{ steps.login-ecr.outputs.registry }}/${{ github.event.deployment.payload.name }}:${{ needs.initialize.outputs.version }} ${{ steps.login-ecr.outputs.registry }}/${{ github.event.deployment.payload.name }}:${{ github.sha }} - - name: Scan for vulnerabilities - if: inputs.repository_kind == 'ecr' - uses: crazy-max/ghaction-container-scan@v3 - with: - image: ${{ steps.login-ecr.outputs.registry }}/${{ github.event.deployment.payload.name }}:latest - dockerfile: Containerfile - severity: ${{ env.IMAGE_SCAN_SEVERITY }} - severity_threshold: ${{ env.IMAGE_SCAN_SEVERITY_THRESHOLD }} - annotations: ${{ env.IMAGE_SCAN_ANNOTATIONS }} +# - name: Scan for vulnerabilities +# if: inputs.repository_kind == 'ecr' +# uses: crazy-max/ghaction-container-scan@v3 +# with: +# image: ${{ steps.login-ecr.outputs.registry }}/${{ github.event.deployment.payload.name }}:latest +# dockerfile: Containerfile +# severity: ${{ env.IMAGE_SCAN_SEVERITY }} +# severity_threshold: ${{ env.IMAGE_SCAN_SEVERITY_THRESHOLD }} +# annotations: ${{ env.IMAGE_SCAN_ANNOTATIONS }} - name: Push image to ECR if: inputs.repository_kind == 'ecr' run: |