anchore / anchore-engine

A service that analyzes docker images and scans for vulnerabilities
Apache License 2.0
1.59k stars 272 forks source link

Using anchore to scan Rocky Linux Images #1299

Open silvio201 opened 3 years ago

silvio201 commented 3 years ago

Hello,

Im trying to use anchore engine to scan selfmade docker images. The scanning works fine with older CentOS images, but our company recently started using Rocky Linux as the base OS for our containers. Since Rocky Linux is based on RHEL 8, is there any possiblity to use the CVEs from RHEL in order to scan our images for Vulnerabilities?.

Im looking forward to your response.

Btodhunter commented 3 years ago

@silvio201 great question! I believe we're currently working on a solution for rocky linux, however I'm going to transfer this issue over to the anchore-engine project as the folks maintaining that project will be able to provide a better answer for you.

srbala commented 3 years ago

@Btodhunter Adding AlmaLinux support would be nice along with Rocky Linux support, both are in the same family. Would prefer separate issue for AlmaLinux?

https://github.com/anchore/grype/search?q=almalinux&type=issues

zhill commented 2 years ago

Hi @srbala support for Rocky Linux is coming in the upcoming 1.1.0 release.

silvio201 commented 2 years ago

Thats great, thanks for keeping us uptodate

srbala commented 2 years ago

@zhill thanks for the note. @Btodhunter @nightfurys Please review and let me know any more changes required, looking forward for full Almalinux support too. https://github.com/anchore/syft/pull/652 https://github.com/anchore/grype/pull/514 https://github.com/anchore/grype-db/pull/40 https://github.com/anchore/anchore-engine/pull/1326