Commit Graph

10965 Commits

Author SHA1 Message Date
Shengwen YU
6e72fda4c6
[Cherry-pick] fix: upgrade trivy version to v0.35.0 and trivy-adapter version to v0.30.3 (#17980)
fix: upgrade trivy version to v0.35.0 and trivy-adapter version to v0.30.3

Signed-off-by: Shengwen Yu <yshengwen@vmware.com>

Signed-off-by: Shengwen Yu <yshengwen@vmware.com>
2022-12-13 18:25:31 +08:00
Yang Jiao
19940b6b66
[cherry-pick]Update portal-base and nginx-base Dockerfile.base (#17442) (#17973)
Update portal-base and nginx-base Dockerfile.base (#17442)

Installing nginx 1.22 creates the nginx group and nginx user, so instead
of creating them again, modify them.

Signed-off-by: Yang Jiao <jiaoya@vmware.com>

Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-12-13 11:27:55 +08:00
Yang Jiao
1b8bc14b7f
Bump up version to v2.4.4 (#17971)
Signed-off-by: Yang Jiao <jiaoya@vmware.com>

Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-12-12 16:53:30 +08:00
MinerYang
1778735353
bump up golang 1.17.13 for release-2.4.0 (#17921)
bump up golang 1.17.13 for release-2.4.0

Signed-off-by: yminer <yminer@vmware.com>
2022-12-07 09:55:04 +08:00
Yang Jiao
16f0f69f97
[cherry-pick]Fix setup gcloud error (#17850)
Fix setup gcloud error

ubuntu-latest was upgraded from ubuntu-20.04 to ubuntu-22.04, the python version of ubuntu-22.04 is 3.10, but gcloud does not support python 3.10, so ubuntu is fixed to version 20.04

Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-11-25 11:11:39 +08:00
Shijun Sun
a75a96bb56
Update UI-UT cases (#17854)
1. Update test cases for AuditLogComponent and RecentLogComponent

Signed-off-by: AllForNothing <sshijun@vmware.com>

Signed-off-by: AllForNothing <sshijun@vmware.com>
2022-11-24 19:05:12 +08:00
Yang Jiao
85ef1409cb
Refresh base images (#17284)
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-08-01 11:12:30 +08:00
Chenyu Zhang
884e70e74d
upgrade: bump up beego to 1.12.11 (#17281)
Signed-off-by: chlins <chenyuzh@vmware.com>
2022-07-30 23:31:53 +08:00
Wang Yan
30eaf1cc7c
[cherry-pick] fix robot update issue (#17260)
Signed-off-by: Wang Yan <wangyan@vmware.com>
2022-07-29 15:40:55 +08:00
Chenyu Zhang
3897471486
fix: update process of webhook and preheat policy (#17243)
1. Update the preheat policy API hander and DAO Get method.
2. Update the webhook policy and webhook job API handler.

Signed-off-by: chlins <chenyuzh@vmware.com>
2022-07-27 01:12:02 +08:00
Wang Yan
9cbdb8cca1
[cherry-pick] Fix scan log mismatch issue (#17241)
Fix scan log mismatch issue

1, add check in label
2, check robot account update
3, validate scan log

Signed-off-by: Wang Yan <wangyan@vmware.com>

Co-authored-by: stonezdj(Daojun Zhang) <stonezdj@gmail.com>
2022-07-27 01:11:43 +08:00
stonezdj(Daojun Zhang)
38cc18471d
Add check when updating immutable tag (#17239)
Add check to the immutable tag update

Signed-off-by: stonezdj <stonezdj@gmail.com>
2022-07-27 01:11:26 +08:00
stonezdj(Daojun Zhang)
eff9118591
Fix the update of retention policy (#17238)
Signed-off-by: stonezdj <stonezdj@gmail.com>

Co-authored-by: Wang Yan <wangyan@vmware.com>
2022-07-27 01:11:02 +08:00
Shengwen YU
d91706b5fd
[Cherry-Pick] fix: bump trivy version to v0.29.2 and bump trivyadapter version to v0.30.0 (#17240)
[Cherry-Pick] fix: bump trivy version to v0.29.2 and bump trivyadapter version to v0.30.0 (#17072)

fix: bump trivy version to v0.29.2 and bump trivyadapter version to v0.30.0

Signed-off-by: Shengwen Yu <yshengwen@vmware.com>
2022-07-26 09:40:44 +08:00
Yang Jiao
b3aad8238f
Bump up version to v2.4.3 (#17236)
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-07-25 17:42:52 +08:00
Shengwen YU
219e930db7
chore(deps): bump Trivy adapter from v0.26.0 to v0.28.0 (#16729) (#16835)
Trivy replaced the --version flag with version subcommand.

Resolves: #16554
Resolves: #16555

Signed-off-by: Daniel Pacak <pacak.daniel@gmail.com>

Co-authored-by: Daniel Pacak <pacak.daniel@gmail.com>
2022-05-11 10:28:09 +08:00
Chenyu Zhang
d1daed2d8a
Merge pull request #16603 from chlins/release-2.4.0/fix-project-creation-validation
[cherry-pick] fix: validate project metadata public value
2022-03-30 13:44:17 +08:00
chlins
3eaa62726e fix: validate project metadata public value
Signed-off-by: chlins <chenyuzh@vmware.com>
2022-03-29 15:18:25 +08:00
Yang Jiao
44ae875e33
Merge pull request #16590 from YangJiao0817/add-install-dateutil-modulev2.4
Add python-dateutil module in api e2e image
2022-03-25 18:11:20 +08:00
Yang Jiao
48008490a8 Add python-dateutil module in api e2e image
Because swagger_client adds dependency on python-dateutil module

Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-03-25 08:01:29 +00:00
Yang Jiao
d7b331fb67
Merge pull request #16573 from YangJiao0817/update-setup-gcloud-2.4
[cherry-pick]Modify setup-gcloud from master to v0
2022-03-23 15:27:08 +08:00
Yang Jiao
15b4bea0f3 Modify setup-gcloud from master to v0
Adjust it because upstream made it, For more information, please see: https://github.com/google-github-actions/setup-gcloud/issues/539

Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-03-23 06:29:43 +00:00
Yang Jiao
ef2e2e568e
Merge pull request #16520 from YangJiao0817/refresh-base2.4-3.25
Refresh base images
2022-03-15 11:21:34 +08:00
Yang Jiao
c39e73326e Refresh base images
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-03-15 01:46:04 +00:00
Wang Yan
db900b56e2
add transaction for artifact delete (#16512)
Add transaction for artifact deletion, given API has the transaction when to call artifact controller but other object may not, for example jobservice job.
Here, force add the tx to ensure all the things can be rolled back.

Signed-off-by: Wang Yan <wangyan@vmware.com>
2022-03-11 21:42:06 +08:00
Yang Jiao
00350cef3e
Merge pull request #16500 from YangJiao0817/update_trivy_testcase_2.4
[cherry-pick]Update trivy test case
2022-03-10 16:05:47 +08:00
Yang Jiao
149ba509cb Update trivy test case
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-03-10 02:38:26 +00:00
Yang Jiao
7e0f6176b6
Merge pull request #16484 from YangJiao0817/trivy-upgrade2v0.24.2-2.4
[cherry-pick]Bump TRIVYVERSION to v0.24.2 and bump TRIVYADAPTERVERSION to v0.26.0
2022-03-08 16:13:00 +08:00
Yang Jiao
99d247c03e Bump TRIVYVERSION to v0.24.2 and bump TRIVYADAPTERVERSION to v0.26.0
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-03-08 05:51:22 +00:00
stonezdj(Daojun Zhang)
13d2c9acab
Merge pull request #16447 from stonezdj/2.4_trace_login_failure
(cherry-pick) Add IP and agent in trace for failed login
2022-03-03 10:27:30 +08:00
stonezdj
9d5dc012aa Add IP and agent in trace for failed login
Fixes #16423

Signed-off-by: stonezdj <stonezdj@gmail.com>
2022-03-02 15:41:45 +08:00
MinerYang
a5393468de
bump up Go version to 1.17.7 for release-2.4.0 (#16417)
Signed-off-by: yminer <yminer@vmmware.com>

Co-authored-by: yminer <yminer@vmmware.com>
2022-02-25 17:24:53 +08:00
Yang Jiao
2b7d267269
Merge pull request #16407 from YangJiao0817/refresh-base224
Refresh base images
2022-02-24 12:16:39 +08:00
Yang Jiao
7c2fa19ffc Refresh base images
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-02-24 03:13:29 +00:00
Yang Jiao
ffe06492ce
Merge pull request #16395 from YangJiao0817/remove-print
Remove print in python test case
2022-02-21 13:54:16 +08:00
Chenyu Zhang
f6e5048c60
Merge pull request #16383 from chlins/release-2.4/codeql-alerts
[cherry-pick] fix go codeql alerts
2022-02-17 16:12:14 +08:00
Yang Jiao
f0267923fd Remove print in python test case
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-02-17 07:23:30 +00:00
chlins
f85e9736c6 fix: trim linebreaks for log parameters
Signed-off-by: chlins <chenyuzh@vmware.com>
2022-02-17 14:44:32 +08:00
chlins
5222a4af70 fix: fix codeql alerts
Signed-off-by: chlins <chenyuzh@vmware.com>
2022-02-17 14:44:11 +08:00
Yang Jiao
7b7b51be3c
Merge pull request #16358 from YangJiao0817/refresh-base-images2.4-214
Refresh base images
2022-02-14 14:03:37 +08:00
Yang Jiao
f00dae0da2 Refresh base images
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-02-14 01:28:11 +00:00
Shengwen YU
529300f15e
feat: add failure-tolerance for gc (#16344)
Signed-off-by: Shengwen Yu <yshengwen@vmware.com>

Co-authored-by: Shengwen Yu <yshengwen@vmware.com>
2022-02-11 12:04:15 +08:00
孙世军
5061c7ef18
Modify CVSS3 column for cve datagrid (#16299)
Signed-off-by: AllForNothing <sshijun@vmware.com>
2022-01-28 11:46:39 +08:00
Yang Jiao
527595a2ee
Merge pull request #16305 from YangJiao0817/specify-pg-version-13in2.4
[cherry-pick]Specify postgresql version to 13
2022-01-27 17:41:23 +08:00
Yang Jiao
e3bd7c8a7e Specify postgresql version to 13
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-01-27 08:26:20 +00:00
Yang Jiao
f0ae8a7e6e
Merge pull request #16281 from YangJiao0817/dump-version-to-2.4.2
Bump up version to 2.4.2
2022-01-25 14:22:31 +08:00
Yang Jiao
803464024f Bump up version to 2.4.2
Signed-off-by: Yang Jiao <jiaoya@vmware.com>
2022-01-25 13:07:09 +08:00
He Weiwei
4ec1d07c6f
Remove old version scan reports of trivy (#16262)
Signed-off-by: He Weiwei <hweiwei@vmware.com>
2022-01-25 11:10:04 +08:00
stonezdj(Daojun Zhang)
210921cd81
Merge pull request #16268 from stonezdj/2.4_duplicate_ldap_groupname
(cherry-pick) Group members lose access to push or see projects on Harbor
2022-01-25 10:16:34 +08:00
stonezdj
234bb0e35e Group members lose access to push or see projects on Harbor
Handle the case if there is duplicate user group name when onboard ldap user group
   Continue to attach groups when it fail on one item
   Fixes #16220

Signed-off-by: stonezdj <stonezdj@gmail.com>
2022-01-24 13:22:01 +08:00