Add TRIVY_TIMEOUT variable to container scanning CI/CD variables
What does this MR do and why?
There was an MR to add a new variable to control the timeout value for Trivy: gitlab-org/security-products/analyzers/container-scanning!3017 (comment 1879622390)
According to the note above, the MR was closed because there already exists an env variable in Trivy that can be used to adjust the timeout: TRIVY_TIMEOUT
.
This came up while we were working on a zendesk ticket - internal
MR acceptance checklist
Please evaluate this MR against the MR acceptance checklist. It helps you analyze changes to reduce risks in quality, performance, reliability, security, and maintainability.
Screenshots or screen recordings
Screenshots are required for UI changes, and strongly recommended for all other merge requests.
Before | After |
---|---|
How to set up and validate locally
Numbered steps to set up and validate the change are strongly suggested.