-
Notifications
You must be signed in to change notification settings - Fork 211
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Custom Policies Bundle insecure #2099
Comments
any substitute to that in the meantime? cannot seem to make it work via helmchart in any way :\ |
@rickymulder sure, sound reasonable |
@chen-keinan Thank you! I tried, but am still facing some issues. |
Thanks for update checking Are you running latest trivy-operator ? |
@chen-keinan believe so, 0.22.1, but I'll check again if there's a newer version. |
Note: the latest version is |
@chen-keinan Hi! took me a little while as i am working in an air-gapped environment, but i managed to deploy it using trivy-operator helm chart v0.23.1 and it seems to be working so far! |
it do use the policies but its not updated on a daily basis its depend on go lib dependency which updated on demand in oppose to trivy-check package which is updated on daily basis so if a new policy is added you should get it within the next day |
I'm offended this was just closed. It's literally so easy. I even wrote the code to apply the option for insecure. I'll push a related MR later today |
@rickymulder I wasn't aware you were working on it. If you had mentioned that you wanted to handle it, I wouldn't have implemented it. I thought it was urgent enough to get it done. The issue was closed as I merged PR #2100, which fixes it. If you want to pick up another issue, feel free to do so. I can provide advice if needed. |
Oh wow I didn't even see the MR! Ha, whoops. |
@Maayanchik I'm working on an air-gapped installation myself and have some issues. Is there a way to get in touch and compare notes? I'm not a github expert so I'm not sure how to do it, and just hoped pinging you here might work. |
Helm Config:
oras copy:
Can we support
insecure
the same as we do for the dbRepository?https://github.com/aquasecurity/trivy-operator/blob/main/deploy/helm/values.yaml#L536
Or better yet, allow us to provide custom CA Bundles for verification?
The text was updated successfully, but these errors were encountered: