Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support policy violations #269

Merged
merged 6 commits into from
Aug 27, 2024
Merged

Conversation

sephiroth-j
Copy link
Member

This includes a complete set of reports and charts: a new trend chart, a new summary chart and a new report page. But all in the same style as for the vulnerabilities.

jenkins-job-trend
jenkins-build-summary
jenkins-build-policy-violations

The VIEW_POLICY_VIOLATION permission is required to use this function.

Unlike the vulnerabilities, there are no thresholds here. The only choice you have is to follow the defined rules and let a build become unstable on violations of the “WARN” status or let the build fail on violations of the “FAIL” status.

In the future, when Dependency-Track supports project policies (DependencyTrack/dependency-track#2130), marking a build as failed/unstable will probably be limited to project policies. Most certainly, however, the whole threshold feature will be removed as it should be replaced by project policies.

@sephiroth-j sephiroth-j self-assigned this Aug 21, 2024
@sephiroth-j sephiroth-j added this to the v5.1.0 milestone Aug 21, 2024
@sephiroth-j sephiroth-j mentioned this pull request Aug 21, 2024
6 tasks
@sephiroth-j sephiroth-j force-pushed the feature/support-policy-violations branch from 481c967 to bc86b40 Compare August 25, 2024 18:27
@sephiroth-j sephiroth-j marked this pull request as ready for review August 27, 2024 20:42
@sephiroth-j sephiroth-j merged commit 55aec7e into master Aug 27, 2024
18 checks passed
@sephiroth-j sephiroth-j deleted the feature/support-policy-violations branch August 27, 2024 20:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant