diff --git a/ci/gitlab-ci.yml b/ci/gitlab-ci.yml index 3a01f27fc6fd222cd82c7dfeb6388789780e9327..648c3d3cad0e5ab765867c51f9d75254705473ac 100644 --- a/ci/gitlab-ci.yml +++ b/ci/gitlab-ci.yml @@ -5,23 +5,24 @@ - mkdir --mode 700 -p ~/.ssh - echo "$UBERSPACE_KNOWN_HOST" >> ~/.ssh/known_hosts +include: + - project: 'fit-connect/pipeline' + ref: main + file: 'trivy.gitlab-ci.yml' + cache: paths: - node_modules/ stages: - - test + - lint - build - deploy -.trivy:filesystem: - stage: test - image: - name: $DOCKER_PULL_REGISTRY/aquasec/trivy:latest - entrypoint: [""] - script: - - trivy filesystem --security-checks vuln,config --severity HIGH,CRITICAL --exit-code 1 . - - trivy filesystem --security-checks vuln,config --severity UNKNOWN,LOW,MEDIUM . +trivy-filesystem: + extends: .trivy-filesystem + variables: + DOCKER_REGISTRY_READ: $DOCKER_PULL_REGISTRY build: stage: build