FAQ
| This is a
LIVE
service |
Changelog
Skip to content
GitLab
Explore
Sign in
Primary navigation
Search or go to…
Project
G
GCP Cloud Run app
Manage
Activity
Members
Labels
Plan
Issues
Issue boards
Milestones
Iterations
Wiki
Requirements
Code
Merge requests
Repository
Branches
Commits
Tags
Repository graph
Compare revisions
Snippets
Locked files
Build
Pipelines
Jobs
Pipeline schedules
Test cases
Artifacts
Deploy
Releases
Package Registry
Container Registry
Model registry
Operate
Environments
Terraform modules
Monitor
Incidents
Service Desk
Analyze
Value stream analytics
Contributor analytics
CI/CD analytics
Repository analytics
Code review analytics
Issue analytics
Insights
Model experiments
Help
Help
Support
GitLab documentation
Compare GitLab plans
Community forum
Contribute to GitLab
Provide feedback
Terms and privacy
Keyboard shortcuts
?
Snippets
Groups
Projects
Show more breadcrumbs
Information Services
DevOps
Infrastructure
Terraform Modules
GCP Cloud Run app
Commits
6dfec854
Commit
6dfec854
authored
1 year ago
by
Ryan Kowalewski
Browse files
Options
Downloads
Patches
Plain Diff
ci: ignore kics-scan checks for test resources
parent
495295db
No related branches found
Branches containing commit
No related tags found
Tags containing commit
Loading
Checking pipeline status
Changes
3
Pipelines
1
Hide whitespace changes
Inline
Side-by-side
Showing
3 changed files
docker-compose.yml
+8
-0
8 additions, 0 deletions
docker-compose.yml
static_egress_ip.tf
+1
-0
1 addition, 0 deletions
static_egress_ip.tf
tests/setup/main.tf
+4
-0
4 additions, 0 deletions
tests/setup/main.tf
with
13 additions
and
0 deletions
docker-compose.yml
+
8
−
0
View file @
6dfec854
# This docker-compose file is only used for running integration tests and generating docs. As such we're making some
# allowances with regards to ignoring kics-scan checks.
# kics-scan ignore
name
:
gcp-cloud-run-app-testing
services
:
...
...
@@ -11,9 +15,13 @@ services:
volumes
:
-
.:/workdir:rw
-
~/.config/gcloud/application_default_credentials.json:/root/.config/gcloud/application_default_credentials.json:ro
cap_drop
:
-
"
ALL"
terraform-docs
:
image
:
quay.io/terraform-docs/terraform-docs:0.17.0
entrypoint
:
[
"
."
]
working_dir
:
/workdir
volumes
:
-
.:/workdir:rw
cap_drop
:
-
"
ALL"
This diff is collapsed.
Click to expand it.
static_egress_ip.tf
+
1
−
0
View file @
6dfec854
...
...
@@ -3,6 +3,7 @@
# https://cloud.google.com/run/docs/configuring/static-outbound-ip
# trivy:ignore:AVD-GCP-0029
# kics-scan disable=40430747-442d-450a-a34f-dc57149f4609
resource
"google_compute_subnetwork"
"vpc_connector"
{
count
=
local
.
create_vpc_connector
?
1
:
0
...
...
This diff is collapsed.
Click to expand it.
tests/setup/main.tf
+
4
−
0
View file @
6dfec854
# These are test resources which are destroyed after each test run. Therefore, we are disabling kics-scan on the whole
# file.
# kics-scan ignore
resource
"random_id"
"name"
{
byte_length
=
2
# "rapp" represents Cloud Run App and is required to ensure any resources created by this repo's tests are easily
...
...
This diff is collapsed.
Click to expand it.
Preview
0%
Loading
Try again
or
attach a new file
.
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Save comment
Cancel
Please
register
or
sign in
to comment