Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
feat: Add augmentation and enrichment to keycloak pipeline (#29)
* feat: adding cyclonedx augmentation to keycloak Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * feat: adding augmentation to phase 1 keycloak Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * adding sbomasm download to the workflow Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * fix: update trivy parallel to 4, to match number of cpus in github runners Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * fixing parlay tar issue Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * fixing parlay tar issue Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * only validating enriched SBOMs Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * fixing link Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * minor spelling Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * Update phase_1/keycloak/README.md Co-authored-by: Tieg Zaharia <tieg.zaharia@gmail.com> * Update phase_1/keycloak/README.md Co-authored-by: Tieg Zaharia <tieg.zaharia@gmail.com> * Update .github/workflows/phase_1_keycloak.yml Co-authored-by: Tieg Zaharia <tieg.zaharia@gmail.com> * switching parallel back to 0 to autodetect number of cores. Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * updates based on PR comments Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * Update phase_1/keycloak/README.md Co-authored-by: Douglas Dennis <douglasdennisjr@gmail.com> * removed noop author option from SPDX Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * Adding the --append option to SPDX augmentation to ensure the tool information is not overridden Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * saving copies of enriched sbom as final to make it clear Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> * switching back to offline scanning due to workflows taking longer than 1 hour to run Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> --------- Signed-off-by: Ian Dunbar-Hall <ian.dunbar-hall@lmco.com> Co-authored-by: Tieg Zaharia <tieg.zaharia@gmail.com> Co-authored-by: Douglas Dennis <douglasdennisjr@gmail.com>
- Loading branch information