From cccb64d991e04efc841941200e67e4dad16c3cec Mon Sep 17 00:00:00 2001 From: Christophe Jauffret Date: Wed, 7 Feb 2024 19:58:11 +0100 Subject: [PATCH] switch to new blackduck action --- .github/workflows/synopsys-schedule.yaml | 4 ++-- .github/workflows/synopsys.yaml | 14 ++++++++------ 2 files changed, 10 insertions(+), 8 deletions(-) diff --git a/.github/workflows/synopsys-schedule.yaml b/.github/workflows/synopsys-schedule.yaml index e5d6620..ed1eaa6 100644 --- a/.github/workflows/synopsys-schedule.yaml +++ b/.github/workflows/synopsys-schedule.yaml @@ -1,4 +1,4 @@ -name: Black Duck Intelligent Policy Check +name: Black Duck Daily Policy Check on: schedule: - cron: "0 0 * * *" @@ -25,7 +25,7 @@ jobs: run: make build - name: Black Duck Full Scan - uses: synopsys-sig/synopsys-action@v1.5.0 + uses: synopsys-sig/synopsys-action@v1.7.0 with: blackduck_url: ${{ secrets.BLACKDUCK_URL }} blackduck_apiToken: ${{ secrets.BLACKDUCK_API_TOKEN }} diff --git a/.github/workflows/synopsys.yaml b/.github/workflows/synopsys.yaml index d60978e..a7f657e 100644 --- a/.github/workflows/synopsys.yaml +++ b/.github/workflows/synopsys.yaml @@ -19,7 +19,7 @@ jobs: uses: actions/checkout@v4 - name: Setup Go - uses: actions/setup-go@v4 + uses: actions/setup-go@v5 with: go-version: "^1.19" @@ -28,20 +28,22 @@ jobs: - name: Black Duck Full Scan if: ${{ github.event_name != 'pull_request' }} - uses: synopsys-sig/synopsys-action@v1.5.0 + uses: synopsys-sig/synopsys-action@v1.7.0 with: blackduck_url: ${{ secrets.BLACKDUCK_URL }} - blackduck_apiToken: ${{ secrets.BLACKDUCK_API_TOKEN }} + blackduck_token: ${{ secrets.BLACKDUCK_API_TOKEN }} github_token: ${{ secrets.GITHUB_TOKEN }} blackduck_scan_full: true blackduck_scan_failure_severities: 'BLOCKER,CRITICAL' - name: Black Duck PR Scan if: ${{ github.event_name == 'pull_request' }} - uses: synopsys-sig/synopsys-action@v1.5.0 + uses: synopsys-sig/synopsys-action@v1.7.0 + env: + DETECT_PROJECT_VERSION_NAME: ${{ github.base_ref }} with: blackduck_url: ${{ secrets.BLACKDUCK_URL }} - blackduck_apiToken: ${{ secrets.BLACKDUCK_API_TOKEN }} + blackduck_token: ${{ secrets.BLACKDUCK_API_TOKEN }} github_token: ${{ secrets.GITHUB_TOKEN }} blackduck_scan_full: false - blackduck_automation_prcomment: true \ No newline at end of file + blackduck_prComment_enabled: true \ No newline at end of file