User Tools

Site Tools


сканер_trivy

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
сканер_trivy [2025/11/11 10:30]
val
сканер_trivy [2026/03/20 06:13] (current)
val
Line 3: Line 3:
   * [[https://​trivy.dev/​|The All-in-One Security Scanner]]   * [[https://​trivy.dev/​|The All-in-One Security Scanner]]
   * [[https://​cisoclub.ru/​skaner-uyazvimostej-docker-kontejnerov-trivy/​]]   * [[https://​cisoclub.ru/​skaner-uyazvimostej-docker-kontejnerov-trivy/​]]
 +
 +  * [[https://​github.com/​aquasecurity/​trivy/​tags]]
  
 <​code>​ <​code>​
-$ wget https://​github.com/​aquasecurity/​trivy/​releases/​download/​v0.67.2/trivy_0.67.2_Linux-64bit.deb+$ docker run --rm aquasec/​trivy image nginx 
 + 
 +$ time docker run --rm -v $HOME/​.cache/:/​root/​.cache/​ aquasec/​trivy image nginx 
 +</​code>​ 
 +  * Docker образ [[Технология Docker#​Приложение python pywebd]] 
 +<​code>​ 
 +$ docker run --rm -v $HOME/​.cache/:/​root/​.cache/​ aquasec/​trivy --insecure image gitlab.corpX.un:​5000/​student/​pywebd 
 + 
 +$ docker run --rm -v $HOME/​.cache/:/​root/​.cache/​ -v /​var/​run/​docker.sock:/​var/​run/​docker.sock aquasec/​trivy image gitlab.corpX.un:​5000/​student/​pywebd 
 + 
 +$ docker run --rm -v $HOME/​.cache/:/​root/​.cache/​ -v /​var/​run/​docker.sock:/​var/​run/​docker.sock aquasec/​trivy image pywebd 
 + 
 +$ docker run --rm -v $HOME/​.cache/:/​root/​.cache/​ \ 
 +  -v /​var/​run/​docker.sock:/​var/​run/​docker.sock \ 
 +  -v $(pwd)/​.trivyignore:/​work/​.trivyignore -w /work/ \ 
 +  aquasec/​trivy --exit-code 1 image pywebd && echo OK || echo Problems 
 +   
 +~/pywebd# cat .trivyignore 
 +</​code><​code>​ 
 +CVE-2026-22184 
 +#​CVE-2026-27171 
 +</​code>​ 
 + 
 +<​code>​ 
 +$ TR_VER=0.69.2 
 + 
 +$ wget https://​github.com/​aquasecurity/​trivy/​releases/​download/​v${TR_VER}/trivy_${TR_VER}_Linux-64bit.deb
  
-# dpkg -i trivy_0.67.2_Linux-64bit.deb+# dpkg -i trivy_${TR_VER}_Linux-64bit.deb
  
 # trivy image pywebd # trivy image pywebd
 </​code>​ </​code>​
сканер_trivy.1762846253.txt.gz · Last modified: 2025/11/11 10:30 by val