Skip to content

Possible to docker push while xray has block unscanned artifacts? #910

Description

@cdobinsky

Hey, currently we have a docker repo which has a policy to block download of unscanned artifacts.
If we use the jfrog-cli to get build information in our ci and push a docker image which has vulnerabilities, it fails to get the build information afterwards because it is getting blocked due to the xray policy.
Therefore when we publish the build information the pushed image is not shown in the published modules of the build and also if we scan the build with xray it won't fail the CI since there is nothing to scan.

We could disable block of unscanned artifacts then it works just fine but is there also a way to have block unscanned artifacts enabled and still get the build information?

Version
JFrog CLI version: 1.41.2
JFrog CLI operating system: Linux
Artifactory Version: CommercialX license 7.11.2 rev 71102900
Xray Version: 3.12

Metadata

Metadata

Assignees

No one assigned

    Labels

    questionFurther information is requested

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions