Added dependency_scanning jobs.

This commit is contained in:
Quentin Decaunes 2019-03-10 16:24:31 +01:00
parent 5bd6f43802
commit cb98987073

View File

@ -1,8 +1,30 @@
stages: stages:
- check
- install - install
- package - package
- installer - installer
dependency_scanning:
stage: check
only:
- branches@le.storm1er/ryzen-controller
image: docker:stable
variables:
DOCKER_DRIVER: overlay2
allow_failure: true
services:
- docker:stable-dind
script:
- export SP_VERSION=$(echo "$CI_SERVER_VERSION" | sed 's/^\([0-9]*\)\.\([0-9]*\).*/\1-\2-stable/')
- docker run
--env DEP_SCAN_DISABLE_REMOTE_CHECKS="${DEP_SCAN_DISABLE_REMOTE_CHECKS:-false}"
--volume "$PWD:/code"
--volume /var/run/docker.sock:/var/run/docker.sock
"registry.gitlab.com/gitlab-org/security-products/dependency-scanning:$SP_VERSION" /code
artifacts:
reports:
dependency_scanning: gl-dependency-scanning-report.json
node: node:
only: only:
- tags@le.storm1er/ryzen-controller - tags@le.storm1er/ryzen-controller