Uploaded image for project: 'VOLTHA'
  1. VOLTHA
  2. VOL-3353

Activate SCA security tools / scans for VOLTHA software repositories

    XMLWordPrintable

    Details

      Description

      We'd like to arrange with the community that CI/SCA security scan tools are activated on upstream/ONF VOLTHA software repositories so that security requirements are met. 

      Goal:

      all relevant VOLTHA repositories covered by SCA/security tools inside the CI/CD pipeline

      The tools may run with the flag "allow_failure: true" inside the CICD pipeline, meaning developers can push and build changes even though the tools report an issue.

      The recommended list of security tools:

      Affected repositories:

      https://github.com/opencord/voltha-go

      https://github.com/opencord/voltha-openolt-adapter

      https://github.com/opencord/voltha-openonu-adapter

      https://github.com/opencord/ofagent-go

      https://github.com/opencord/kafka-onos

      https://github.com/opencord/sadis

      https://github.com/opencord/olt

        Attachments

          Issue Links

          No reviews matched the request. Check your Options in the drop-down menu of this sections header.

            Activity

              People

              Assignee:
              breathbath Andrey Pozolotin
              Reporter:
              breathbath Andrey Pozolotin
              Watchers:
              5 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Gerrit Reviews

                  There are no open Gerrit changes