From c5cf561c1ee8fa84cf4b491e9399a355b28aa1fc Mon Sep 17 00:00:00 2001 From: colin Date: Sat, 20 Jan 2024 21:23:49 +0000 Subject: [PATCH] Update docker/trivy/start.sh --- docker/trivy/start.sh | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) diff --git a/docker/trivy/start.sh b/docker/trivy/start.sh index 29235a1..ecf18c6 100644 --- a/docker/trivy/start.sh +++ b/docker/trivy/start.sh @@ -1,10 +1,16 @@ #!/bin/sh TIMEOUT=${TIMEOUT:-120m} -SCANNERS=("vuln" "config" "secret") IGNORE_UNFIXED=${IGNORE_UNFIXED:-false} LOW_PRIORITY=${LOW_PRIORITY:-true} +# Use SCANNERS_ENV if provided, otherwise default to vuln, config, secret +if [ -n "$SCANNERS_ENV" ]; then + IFS=',' read -r -a SCANNERS <<< "$SCANNERS_ENV" +else + SCANNERS=("vuln" "config" "secret") +fi + run_scan() { for SCANNER in "${SCANNERS[@]}"; do CURRENT_LOG="/log/trivy_scan_${SCANNER}.log"