Uploaded image for project: 'Project Quay'
  1. Project Quay
  2. PROJQUAY-5954

Change default Clair config to ignore unpatched vulns

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Undefined Undefined
    • None
    • quay-v3.9.1
    • quay-operator
    • False
    • Hide

      None

      Show
      None
    • False

      Clair v4.7.1 enables the ingestion of unpatched vulnerabilities from RHEL sources, this leads to a fairly large change for all RHEL vulnerability reports. We decided to turn this off on quay.io and we need to do the same for downstream Quay.

      The config stanza that needs to be added.

      updaters:
        config:
          rhel:
            ignore_unpatched: true
      

       

              jonathankingfc Jonathan King (Inactive)
              jcroslan@redhat.com Joseph Crosland
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                Resolved: