Skip to content

Conversation

@conormurray95
Copy link
Contributor

@conormurray95 conormurray95 commented Oct 18, 2022

Changes
To remove a load of vulnerabilities it has been recommended by the security team that we upgrade from ubuntu 18.04 to ubuntu 20.04
To do this I've taken the pushpin dockerfile here - https://github.com/fanout/docker-pushpin/blob/master/Dockerfile and changed it to build on ubuntu 20.04 instead.
Ideally we should build a pushpin 20.04 container that we can reference instead of building it within our dockerfile, however we first need to check that these changes have fixed our vulnerability issues. I've added a ticket to address this tech debt, i tried to add it to the pipeline but was refused permission publishing it to Dockerhub, will look into what I need to get to enable that additional image on there. Ticket for this enhancement here - https://harness.atlassian.net/browse/FFM-4816

@conormurray95 conormurray95 force-pushed the FFM-4654-use-ubuntu-20.04-image branch from eb3bbc0 to 97ccc2e Compare October 18, 2022 11:33
@swarmia
Copy link

swarmia bot commented Oct 18, 2022

✅  Linked to Bug FFM-4654 · [Proxy OS] Upgrade base image Ubantu 18.04

@conormurray95 conormurray95 merged commit de2c8b7 into main Oct 19, 2022
@conormurray95 conormurray95 deleted the FFM-4654-use-ubuntu-20.04-image branch October 25, 2022 21:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants