From 8b221a7c4a59d9e8b1b4fe498f5c33d53648b576 Mon Sep 17 00:00:00 2001 From: Edoardo Rosa <6991986+notdodo@users.noreply.github.com> Date: Sat, 14 Dec 2024 17:51:00 +0100 Subject: [PATCH] fix wfs --- .github/workflows/go-ci.yml | 10 +++++++++- Dockerfile | 2 +- 2 files changed, 10 insertions(+), 2 deletions(-) diff --git a/.github/workflows/go-ci.yml b/.github/workflows/go-ci.yml index 678ed33..eac2bad 100644 --- a/.github/workflows/go-ci.yml +++ b/.github/workflows/go-ci.yml @@ -22,6 +22,12 @@ concurrency: jobs: sast: uses: notdodo/github-actions/.github/workflows/go-security-scan.yml@go-sec-v0 + with: + egress-policy-allowlist: > + proxy.golang.org:443 + sum.golang.org:443 + objects.githubusercontent.com:443 + storage.googleapis.com:443 build-and-test: uses: notdodo/github-actions/.github/workflows/go-ci.yml@go-ci-v0 @@ -29,12 +35,14 @@ jobs: egress-policy-allowlist: > proxy.golang.org:443 sum.golang.org:443 + objects.githubusercontent.com:443 + storage.googleapis.com:443 build-docker-image: if: ${{ github.event_name == 'pull_request' }} uses: notdodo/github-actions/.github/workflows/docker-build-and-push.yml@docker-build-and-push-v0 with: - image: notdodo/iamm-iamme + image: notdodo/iamme-iamme platforms: linux/amd64 push: false registry: ghcr.io diff --git a/Dockerfile b/Dockerfile index de70a14..0396ac5 100644 --- a/Dockerfile +++ b/Dockerfile @@ -1,4 +1,4 @@ -FROM golang:alpine as app-builder +FROM golang:alpine AS app-builder WORKDIR /go/src/app RUN --mount=type=cache,target=/go/pkg/mod/ \ --mount=type=bind,source=go.sum,target=go.sum \