From 4a0e0ec209e191823c0f656a32219a3fe24e7c50 Mon Sep 17 00:00:00 2001 From: mueller-ma Date: Sat, 4 Nov 2023 11:57:46 +0100 Subject: [PATCH] Only allow docker hub as registry Signed-off-by: mueller-ma --- .github/workflows/build-images.yml | 1 + hadolint.yml | 3 +++ 2 files changed, 4 insertions(+) create mode 100644 hadolint.yml diff --git a/.github/workflows/build-images.yml b/.github/workflows/build-images.yml index 165c24a4..9a7b6a94 100644 --- a/.github/workflows/build-images.yml +++ b/.github/workflows/build-images.yml @@ -25,6 +25,7 @@ jobs: uses: hadolint/hadolint-action@v3.1.0 with: dockerfile: ${{ matrix.distribution }}/Dockerfile + config: "hadolint.yml" - name: Set up Docker Buildx uses: docker/setup-buildx-action@v2 diff --git a/hadolint.yml b/hadolint.yml new file mode 100644 index 00000000..58c68454 --- /dev/null +++ b/hadolint.yml @@ -0,0 +1,3 @@ +--- +trustedRegistries: + - docker.io