Remove sast image var

This commit is contained in:
Fabio Pitino 2023-05-03 11:26:29 +01:00
parent 642cd120ca
commit fdefb524c5

View file

@ -35,9 +35,7 @@ spec:
brakeman-sast: brakeman-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/brakeman:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/brakeman:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -51,9 +49,7 @@ brakeman-sast:
flawfinder-sast: flawfinder-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/flawfinder:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/flawfinder:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -71,9 +67,7 @@ flawfinder-sast:
kubesec-sast: kubesec-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/kubesec:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/kubesec:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -84,9 +78,7 @@ kubesec-sast:
.mobsf-sast: .mobsf-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/mobsf:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/mobsf:$[[ inputs.image_tag ]]"
mobsf-android-sast: mobsf-android-sast:
extends: .mobsf-sast extends: .mobsf-sast
@ -117,9 +109,7 @@ mobsf-ios-sast:
nodejs-scan-sast: nodejs-scan-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/nodejs-scan:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/nodejs-scan:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -132,9 +122,7 @@ nodejs-scan-sast:
phpcs-security-audit-sast: phpcs-security-audit-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/phpcs-security-audit:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/phpcs-security-audit:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -147,9 +135,7 @@ phpcs-security-audit-sast:
pmd-apex-sast: pmd-apex-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/pmd-apex:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/pmd-apex:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -162,9 +148,7 @@ pmd-apex-sast:
security-code-scan-sast: security-code-scan-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/security-code-scan:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/security-code-scan:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -178,10 +162,9 @@ security-code-scan-sast:
semgrep-sast: semgrep-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/semgrep:$[[ inputs.image_tag ]]$[[ inputs.image_suffix ]]"
variables: variables:
SEARCH_MAX_DEPTH: 20 SEARCH_MAX_DEPTH: 20
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/semgrep:$[[ inputs.image_tag ]]$[[ inputs.image_suffix ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -205,9 +188,7 @@ semgrep-sast:
sobelow-sast: sobelow-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/sobelow:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/sobelow:$[[ inputs.image_tag ]]"
rules: rules:
- if: $SAST_DISABLED - if: $SAST_DISABLED
when: never when: never
@ -220,9 +201,7 @@ sobelow-sast:
spotbugs-sast: spotbugs-sast:
extends: .sast-analyzer extends: .sast-analyzer
image: image:
name: "$SAST_ANALYZER_IMAGE" name: "$[[ inputs.image_prefix ]]/spotbugs:$[[ inputs.image_tag ]]"
variables:
SAST_ANALYZER_IMAGE: "$[[ inputs.image_prefix ]]/spotbugs:$[[ inputs.image_tag ]]"
rules: rules:
- if: '"$[[ inputs.excluded_analyzers ]]" =~ /spotbugs/' - if: '"$[[ inputs.excluded_analyzers ]]" =~ /spotbugs/'
when: never when: never